Big Halloween Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Google Cloud Certified - Professional Security Operations Engineer (PSOE) Exam Security-Operations-Engineer Question # 8 Topic 1 Discussion

Google Cloud Certified - Professional Security Operations Engineer (PSOE) Exam Security-Operations-Engineer Question # 8 Topic 1 Discussion

Security-Operations-Engineer Exam Topic 1 Question 8 Discussion:
Question #: 8
Topic #: 1

Your organization has mission-critical production Compute Engine VMs that you monitor daily. While performing a UDM search in Google Security Operations (SecOps), you discover several outbound network connections from one of the production VMs to an unfamiliar external IP address occurring over the last 48 hours. You need to use Google SecOps to quickly gather more context and assess the reputation of the external IP address. What should you do?


A.

Search for the external IP address in the Alerts & IoCs page in Google SecOps.


B.

Perform a UDM search to identify the specific user account that was logged into the production VM when the connections occurred.


C.

Examine the Google SecOps Asset view details for the production VM.


D.

Create a new detection rule to alert on future traffic from the external IP address.


Get Premium Security-Operations-Engineer Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.