New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Google Professional Cloud Security Engineer Exam - Topic 4 Question 109 Discussion

Actual exam question for Google's Professional Cloud Security Engineer exam
Question #: 109
Topic #: 4
[All Professional Cloud Security Engineer Questions]

You are using Security Command Center (SCC) to protect your workloads and receive alerts for suspected security breaches at your company You need to detect cryptocurrency mining software Which SCC service should you use?

Show Suggested Answer Hide Answer
Suggested Answer: D

The goal is to detect cryptocurrency mining software using Security Command Center (SCC)

Security Command Center Threat Detection Services: SCC Premium and Enterprise tiers offer various specialized threat detection services

Virtual Machine Threat Detection (VMTD): This service is explicitly designed to scan virtual machines (Compute Engine instances and GKE nodes) for specific threats, including cryptocurrency mining software It operates at the hypervisor level, performing deep scans of VM memory and disksExtract Reference: 'Virtual Machine Threat Detection (VMTD) helps you detect potential threats, such as cryptocurrency mining and malware, within your Compute Engine instances and GKE nodes' (Google Cloud Documentation: 'Virtual Machine Threat Detection overview | Security Command Center' - https://cloudgooglecom/security-command-center/docs/concepts-vm-threat-detection-overview)

Extract Reference: 'This service scans virtual machines to detect potentially malicious applications, such as cryptocurrency mining software, kernel-mode rootkits, and malware running in compromised cloud environments' (Google Cloud Documentation: 'Virtual Machine Threat Detection overview | Security Command Center' - https://cloudgooglecom/security-command-center/docs/concepts-vm-threat-detection-overview)

Let's evaluate the other options:

A Web Security Scanner: This service scans for common web application vulnerabilities like XSS, Flash injection, and mixed content It is not designed to detect runtime threats like cryptocurrency mining software

B Container Threat Detection: While Container Threat Detection (CTD) also detects cryptocurrency mining, it specifically focuses on runtime threats within GKE containers The question asks for detection of 'cryptocurrency mining software' generally, and VMs are a common target for such activity (and GKE nodes are VMs) VMTD provides a more general detection across Compute Engine VMs and GKE nodes for this specific type of threat If the context explicitly mentioned containers or Cloud Run, CTD would be the more specific answer However, for a general detection of 'software' on 'workloads', and given that VMTD explicitly lists 'cryptocurrency mining software' for VMs, it is the most direct and broadly applicable answer among the choices

C Rapid Vulnerability Detection: This service actively scans internet-exposed assets for network vulnerabilities and misconfigurations It focuses on finding known vulnerabilities, not detecting active malicious processes like cryptocurrency mining


Contribute your Thoughts:

0/2000 characters
Dexter
9 hours ago
A little surprised that people still mine crypto on company servers!
upvoted 0 times
...
Lamonica
6 days ago
I think D) Virtual Machine Threat Detection could work too.
upvoted 0 times
...
Casie
11 days ago
Definitely B) Container Threat Detection. Gotta keep those crypto-hungry containers in check!
upvoted 0 times
...
Dulce
16 days ago
Haha, I bet the crypto miners are trying to mine Bitcoin on the company's servers. B) is the way to go!
upvoted 0 times
...
Pa
21 days ago
C) Rapid Vulnerability Detection could also be useful to find any vulnerabilities that might be exploited by crypto miners.
upvoted 0 times
...
Linwood
26 days ago
I'd go with D) Virtual Machine Threat Detection. Crypto miners often target virtual machines.
upvoted 0 times
...
Bronwyn
1 month ago
I feel like A) Web Security Scanner is more focused on web apps, so it probably isn't the right choice for this scenario.
upvoted 0 times
...
Sage
1 month ago
I remember practicing a question about SCC services, and I feel like D) Virtual Machine Threat Detection could also be relevant here.
upvoted 0 times
...
Casie
1 month ago
I think it might be B) Container Threat Detection, but I'm not entirely sure if that's the right one for detecting mining software.
upvoted 0 times
...
Cecilia
2 months ago
I'm a bit torn between B and D. I feel like Virtual Machine Threat Detection could also be a good option, since crypto miners might try to hide in VMs. But Container Threat Detection does seem more targeted for this use case.
upvoted 0 times
...
Jestine
2 months ago
I'm pretty confident B) Container Threat Detection is the way to go. That service is specifically designed to monitor containers for suspicious activity like crypto mining.
upvoted 0 times
...
Helga
2 months ago
Okay, let me think this through. We're looking for a way to detect crypto mining software, so I'm leaning towards either B) Container Threat Detection or D) Virtual Machine Threat Detection. Those seem most likely to catch that kind of malicious activity.
upvoted 0 times
...
Emilio
2 months ago
B) Container Threat Detection seems like the right choice to detect cryptocurrency mining software.
upvoted 0 times
...
Junita
2 months ago
B) Container Threat Detection is the right choice for that.
upvoted 0 times
...
Lorriane
2 months ago
I think B) Container Threat Detection is the best choice.
upvoted 0 times
...
Von
3 months ago
Definitely B! It’s specifically designed for that.
upvoted 0 times
...
Mariann
3 months ago
I’m a bit confused; I thought Rapid Vulnerability Detection was more about identifying vulnerabilities rather than specific threats like mining software.
upvoted 0 times
...
Bronwyn
3 months ago
Hmm, I'm not sure. I'm a bit confused - do we have any information on what type of workloads are being used here? That might help narrow it down.
upvoted 0 times
...
Laine
3 months ago
I think I'd go with B) Container Threat Detection. That seems like the most relevant service for detecting crypto mining software.
upvoted 0 times
...

Save Cancel