Google
PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER · Question #12
PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER Question #12: Real Exam Question with Answer & Explanation
Sign in or unlock PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER to reveal the answer and full explanation for question #12. The question stem and answer options stay visible for context.
Question
Your organization uses Security Command Center (SCC) and relies on Compute Engine instances to run business-critical workloads. SCC has flagged a particular instance for exhibiting a high volume of outbound network connections to geographically diverse and unknown IP addresses. You need to determine whether the instance has been compromised by malware. What should you do?
Options
- AExamine the IAM roles assigned to the service account that are associated with the instance.
- BReview the Google Cloud Service Health dashboard to identify any ongoing Google Cloud
- CDisable and re-enable the instances' network interface and determine whether the unusual
- DAnalyze Event Threat Detection findings. Review the events and the outbound network
Unlock PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER to see the answer
You've previewed enough free PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER questions. Unlock PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.