ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 35 - Professional Cloud Security Engineer discussion

Report
Export

You are a member of the security team at an organization. Your team has a single GCP project with credit card payment processing systems alongside web applications and data processing systems. You want to reduce the scope of systems subject to PCI audit standards.

What should you do?

A.
Use multi-factor authentication for admin access to the web application.
Answers
A.
Use multi-factor authentication for admin access to the web application.
B.
Use only applications certified compliant with PA-DSS.
Answers
B.
Use only applications certified compliant with PA-DSS.
C.
Move the cardholder data environment into a separate GCP project.
Answers
C.
Move the cardholder data environment into a separate GCP project.
D.
Use VPN for all connections between your office and cloud environments.
Answers
D.
Use VPN for all connections between your office and cloud environments.
Suggested answer: C

Explanation:

https://cloud.google.com/solutions/best-practices-vpc-design

'Setting up your payment-processing environment' section in https://cloud.google.com/solutions/pci-dss-compliance-in-gcp.

asked 18/09/2024
André Batista
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first