ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 158 - Professional Cloud Developer discussion

Report
Export

Your company's development teams want to use various open source operating systems in their Docker builds. When images are created in published containers in your company's environment, you need to scan them for Common Vulnerabilities and Exposures (CVEs). The scanning process must not impact software development agility. You want to use managed services where possible. What should you do?

A.
Enable the Vulnerability scanning setting in the Container Registry.
Answers
A.
Enable the Vulnerability scanning setting in the Container Registry.
B.
Create a Cloud Function that is triggered on a code check-in and scan the code for CVEs.
Answers
B.
Create a Cloud Function that is triggered on a code check-in and scan the code for CVEs.
C.
Disallow the use of non-commercially supported base images in your development environment.
Answers
C.
Disallow the use of non-commercially supported base images in your development environment.
D.
Use Cloud Monitoring to review the output of Cloud Build to determine whether a vulnerable version has been used.
Answers
D.
Use Cloud Monitoring to review the output of Cloud Build to determine whether a vulnerable version has been used.
Suggested answer: A

Explanation:

https://cloud.google.com/container-analysis/docs/os-overview

asked 18/09/2024
Blavier Arnaud
43 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first