Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Google Professional Security Operations Engineer Exam - Topic 3 Question 19 Discussion

You manage a large fleet of Compute Engine instances. Security Command Center (SCC) has generated a large number of CONFIDENTIAL_COMPUTING_DISABLED findings. You need to quickly tune these findings.What should you do?
C) Create a mute rule for the finding.
A) Manually mark the findings as inactive.
B) Disable Event Threat Detection (ETD)
D) Disable the Security Health Analytics detector (SHA).

Google Professional Security Operations Engineer Exam - Topic 3 Question 19 Discussion

Actual exam question for Google's Professional Security Operations Engineer exam
Question #: 19
Topic #: 3
[All Professional Security Operations Engineer Questions]

You manage a large fleet of Compute Engine instances. Security Command Center (SCC) has generated a large number of CONFIDENTIAL_COMPUTING_DISABLED findings. You need to quickly tune these findings.

What should you do?

Show Suggested Answer Hide Answer
Suggested Answer: C

Contribute your Thoughts:

0/2000 characters
Carma
3 days ago
I thought disabling SHA would be the right move, but maybe not.
upvoted 0 times
...
Shaunna
8 days ago
Wait, disabling ETD? That sounds risky.
upvoted 0 times
...
Chandra
14 days ago
Mute rules are definitely the way to go!
upvoted 0 times
...
Ligia
19 days ago
I disagree, A seems more straightforward.
upvoted 0 times
...
Alex
24 days ago
C is the best option to quickly tune findings.
upvoted 0 times
...
Mollie
29 days ago
I’m torn between creating a mute rule and disabling the Security Health Analytics detector. I need to recall which one is more effective for tuning findings.
upvoted 0 times
...
Margurite
1 month ago
Disabling Event Threat Detection sounds risky; I feel like that could expose us to more threats.
upvoted 0 times
...
Judy
1 month ago
I remember we practiced a similar question, and I think manually marking findings as inactive could lead to missing important alerts later.
upvoted 0 times
...
Quiana
1 month ago
I think creating a mute rule for the finding might be the best option, but I'm not entirely sure how that works in practice.
upvoted 0 times
...

Save Cancel