exam questions

Exam Professional Cloud DevOps Engineer All Questions

View all questions & answers for the Professional Cloud DevOps Engineer exam

Exam Professional Cloud DevOps Engineer topic 1 question 169 discussion

Actual exam question from Google's Professional Cloud DevOps Engineer
Question #: 169
Topic #: 1
[All Professional Cloud DevOps Engineer Questions]

Your company runs services on Google Cloud. Each team runs their applications in a dedicated project. New teams and projects are created regularly. Your security team requires that all logs are processed by a security information and event management (SIEM) system. The SIEM ingests logs by using Pub/Sub. You must ensure that all existing and future logs are scanned by the SIEM. What should you do?

  • A. Create an organization-level aggregated sink with a siem log bucket as the destination. Set an inclusion filter to include all logs.
  • B. Create a folder-level aggregated sink with a siem Pub/Sub topic as the destination. Set an inclusion filter to include all logs. Repeat for each folder.
  • C. Create an organization-level aggregated sink with a siem Pub/Sub topic as the destination. Set an inclusion filter to include all logs.
  • D. Create a project-level logging sink with a siem Pub/Sub topic as the destination. Set an inclusion filter to include all logs. Repeat for each project.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
cachopo
1 month, 3 weeks ago
Selected Answer: C
Creating an organization-level aggregated sink with a siem Pub/Sub topic as the destination and setting an inclusion filter to include all logs is the best approach. This will ensure that logs from all existing and future projects within the organization are automatically captured and sent to the SIEM system via Pub/Sub. By setting the sink at the organization level, you ensure that all logs, regardless of which team or project they belong to, are processed by the SIEM without requiring manual configuration for each new project or team.
upvoted 1 times
...
LONGBOW_RA
2 months, 1 week ago
Selected Answer: C
SIEM ingests logs by using Pub/Sub
upvoted 1 times
...
roaming_panda
3 months, 2 weeks ago
Selected Answer: C
since we are using another app/system , so best to use queue solution in between it i.e pubsub so C
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago