nerdexam
Google

PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER · Question #121

You work for a telecommunications company that wants to monitor their multi-region 5G network logs in Google Security Operations (SecOps). The logs are currently only available on-premises and are sto

The correct answer is B. Configure feed management to pull data from each log's location, and configure an ingestion label. This ensures that logs from each NAS are properly ingested and uniquely identified in Google SecOps, preventing IP address aliasing and enabling precise monitoring and analysis by region/log source.

Log Ingestion and Data Management

Question

You work for a telecommunications company that wants to monitor their multi-region 5G network logs in Google Security Operations (SecOps). The logs are currently only available on-premises and are stored in a standalone network-attached storage (NAS) located in four different regions. You need to ingest the logs into Google SecOps and tag each NAS as a specific log source to avoid IP address aliasing. What should you do?

Options

  • AConfigure feed management to pull data from each log's location, and configure a namespace for
  • BConfigure feed management to pull data from each log's location, and configure an ingestion label
  • CConfigure a Bindplane agent that collects Syslog from each log's location, and configure a
  • DConfigure a Bindplane agent that collects Syslog from each log's location and configure an

How the community answered

(30 responses)
  • A
    10% (3)
  • B
    73% (22)
  • C
    13% (4)
  • D
    3% (1)

Explanation

This ensures that logs from each NAS are properly ingested and uniquely identified in Google SecOps, preventing IP address aliasing and enabling precise monitoring and analysis by region/log source.

Topics

#log ingestion#feed management#ingestion labels#namespace configuration

Community Discussion

No community discussion yet for this question.

Full PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER Practice