Google Cloud Professional Cloud Security Engineer Practice Test

176 preguntas disponibles

Gana confianza para Google Cloud Professional Cloud Security Engineer. Practica los conceptos, comprende las respuestas y refuerza tus conocimientos pregunta a pregunta.

Probar una pregunta
Prueba 5 preguntas gratis
No necesitas cuenta. Una cuenta gratuita incluye 20 preguntas de este examen.
Examen de certificación
60 Preguntas del examen
2 horas Límite de Tiempo
Professional Nivel
Tu práctica
176 Preguntas de práctica
2 horas 56 minutos Tiempo de Práctica
Prueba 5 preguntas gratis
No necesitas cuenta. Una cuenta gratuita incluye 20 preguntas de este examen.
El banco 176 Preguntas de práctica verificadas con los objetivos oficiales.
Explora los temas del examen
Google Cloud176 preguntas de prácticaBanco actualizado el 2026-07-24
Temario verificadoVerificado con Google Cloud official objectivesMetadatos verificados 2026-06-09Cómo verificamos

Descripción y detalles del examen

The Google Cloud Professional Cloud Security Engineer certification validates advanced technical skills in designing, implementing, and managing security controls and governance frameworks within the Google Cloud Platform (GCP) ecosystem. This credential demonstrates a professional's ability to secure infrastructure, applications, data, and operations using Google Cloud's native security tools and services. Certified engineers are proficient in configuring identity and access management (IAM), network security architectures, data protection mechanisms, and security operations (SecOps) workflows. The certification is recognized globally as a benchmark for cloud security expertise, signaling to employers a deep, practical understanding of the shared responsibility model, threat mitigation, and compliance automation in a cloud-native context. Earning this certification positions you as a critical asset for organizations undergoing digital transformation, where securing cloud workloads is paramount to business continuity and risk management.

Preguntas de Muestra

Elige una respuesta y consulta la explicación para ver cómo funciona la práctica.

Configuring access

During a security review of a GKE cluster, an auditor finds that all pods are running as the Compute Engine default service account, which has `roles/editor` at the project level. The security team wants to remediate this using the principle of least privilege without service account keys. Which approach should they implement?

Securing communications and establishing boundary protection

A Cloud Run service needs to connect to a Cloud SQL instance that has only a private IP (no public IP). By default, Cloud Run functions/services run in a Google-managed network without access to customer VPCs. What must be configured to allow the Cloud Run service to reach the Cloud SQL private IP?

Configuring access

A large enterprise has granted `roles/bigquery.dataEditor` to a broad Google Group for data pipeline work. A compliance audit identifies that one subgroup -" contractors in group `[email protected]` -" must never be able to delete BigQuery datasets, even if they inherit that role through the group. The security team considers using an IAM Deny Policy. What is true about how IAM Deny Policies interact with allow policies in this scenario?

Ensuring data protection

A GKE Standard cluster runs pods that process cardholder data. The auditor asks for node boot integrity, workload identity without keys, and encryption of Kubernetes secrets at the application layer with a customer-managed key. Which combination addresses all three?

Ensuring data protection

A security team enables automatic key rotation with a 90-day rotation period on a Cloud KMS key used for CMEK encryption of a Cloud Storage bucket. A compliance officer asks: "After the key rotates, will previously stored objects need to be re-encrypted with the new key version?" What is the correct answer?

Oportunidades profesionales y salario

Salario medio: $129,180mercado de EE. UU.– Information Security Analysts

Fuente: BLS Occupational Employment and Wage Statistics, May 2025 -- Information Security Analysts (SOC 15-1212), US national. Occupation median, not a certification salary. (2025)

Information Security Analysts

Los rangos son cifras del mercado de EE. UU. salvo que se muestre un rango local.

Qué temas cubre este examen

Usa las ponderaciones publicadas de los dominios para planificar tu estudio. Los resultados de práctica no predicen tu puntuación en el examen de certificación.

01Configuring access

25%

02Ensuring data protection

23%

03Securing communications and establishing boundary protection

22%

04Managing operations

19%

05Supporting compliance requirements

11%

Detalles del Examen PCSE | $200 USD | 2 horas

Código del Examen PCSE
Proveedor Google Cloud
Costo del Examen $200 USD
Límite de Tiempo 2 horas
Preguntas del examen 60
Tipos de PreguntasAún no disponible en este idioma
Política de Repetición 14-day waiting period after first failed attempt. 60-day waiting period after second failed attempt. 1-year waiting period after third failed attempt within 12 months.
Formato del Examen Linear
Supervisión en Línea Disponible
Disponible En
EnglishJapanese

Preguntas Frecuentes

¿Cuáles son los requisitos previos principales para intentar esta certificación?

¿Cómo difiere esta certificación del Google Cloud Professional Cloud Architect?

¿Cuál es el formato del examen y cómo se califica?

¿Cuáles son los servicios clave de Google Cloud que debo dominar para el examen?

¿Cuánto tiempo es válida la certificación y qué se requiere para la recertificación?