Practice Exam 1
5 of this form’s 50 questions, drawn from across its domains, free. The explanation on every one of them is free too, at every tier, and always will be.
Question 1 of 5
3-3Ensuring data protectionA team tuning a Model Armor template wants to disable every responsible AI filter for a research workload. Which one stays on regardless?
Question 2 of 5
2-1Securing communications and establishing boundary protectionAn engineer cannot attach a Cloud Armor policy to a backend service. Which load balancing schemes are the supported ones?
Question 3 of 5
4-2Managing operationsA bucket granted to allUsers shows no Data Access entries even though logging was enabled for the service. Why are there no entries?
Question 4 of 5
5-1Supporting compliance requirementsA regulator requires that no Google engineer can reach your production data until someone inside your organization signs off on that specific request. Which service provides that control?
Question 5 of 5
1-4Configuring accessAn organization-level deny rule blocks a permission. A project owner attaches a more permissive deny policy to their own project. What can that project owner do?
0 of 50 completed
The other 45 questions are the rest of this form: same 120 minute clock, same 750 cut score, and the same explanation on every question, which is never behind the wall. Practice Exam 1 of 2 on Cloud Security Engineer.
What this exam covers
- Configuring access13 questions / 25% of the exam
- Securing communications and establishing boundary protection11 questions / 22% of the exam
- Ensuring data protection12 questions / 23% of the exam
- Managing operations9 questions / 19% of the exam
- Supporting compliance requirements5 questions / 11% of the exam
Checking what you already have access to.
Every question is original, written from the published objectives. We never reproduce, paraphrase, or imitate real exam content, and neither should anything else you study from.