nerdexam
Google

PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER · Question #89

PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER Question #89: Real Exam Question with Answer & Explanation

Sign in or unlock PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER to reveal the answer and full explanation for question #89. The question stem and answer options stay visible for context.

Question

Your company requires PCI DSS v4.0 compliance for its cardholder data environment (CDE) in Google Cloud. You use a Security Command Center (SCC) security posture deployment based on the PCI DSS v4.0 template to monitor for configuration drift. This posture generates a finding indicating that a Compute Engine VM within the CDE scope has been configured with an external IP address. You need to take an immediate action to remediate the compliance drift identified by this specific SCC posture finding. What should you do?

Options

  • AEnable and enforce the constraints/compute.vmExternalIpAccess organization policy constraint at
  • BReconfigure the network interface settings for the VM to explicitly remove the assigned external
  • CRemove the CDE-specific tag from the VM to exclude the tag from this particular PCI DSS
  • DNavigate to the underlying Security Health Analytics (SHA) finding for PUBLIC_IP_ADDRESS on

Unlock PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER to see the answer

You've previewed enough free PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER questions. Unlock PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER Practice
Your company requires PCI DSS v4.0 compliance for its cardholder... | PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER Q#89 Answer | NerdExam