Google Professional Cloud Security Engineer exam dumps

Google Professional Cloud Security Engineer practice question 13 of 501

Professional Cloud Security Engineer. Expert level, Google Cloud. Free question with the correct answer and a full explanation.

Google Professional Cloud Security Engineer Question 13

Select 3Google Cloud Platform

Your organization’s Google Cloud environment has a single super administrator account that is used to manage sensitive administrative tasks. As a security engineer, you have been tasked with ensuring best practices for managing this critical account. Which of the following actions should you take to secure the super administrator account?

  1. A

    Enable 2-Step Verification (2SV) for the super administrator account.

  2. B

    Grant the super administrator role to additional users for redundancy.

  3. C

    Use the super administrator account only for administrative tasks and create separate accounts for daily activities.

  4. D

    Regularly review the audit logs for activities performed by the super administrator account.

  5. E

    Share the super administrator account credentials securely with a team to ensure availability.

Show answer and explanation

Correct answers: A, C, D

Explanation

Managing a super administrator account requires implementing strong security practices to protect this high-privilege account from unauthorized access and misuse. Enabling 2SV ensures an additional layer of security, while limiting the use of the account to administrative tasks reduces exposure to risk. Reviewing audit logs regularly provides visibility into account activity. Actions such as granting the role to additional users or sharing credentials violate security principles and should be avoided.

  • A. Correct.

    Enabling 2-Step Verification (2SV) is a critical security practice to protect high-privilege accounts such as the super administrator account, as it adds an extra layer of security beyond the password.

  • B. Incorrect.

    Granting the super administrator role to additional users is not recommended because it increases the attack surface and the risk of accidental or malicious misuse.

  • C. Correct.

    It is a best practice to use the super administrator account only for administrative tasks. For daily non-administrative activities, separate accounts with minimal privileges should be used to follow the principle of least privilege.

  • D. Correct.

    Regularly reviewing audit logs for the super administrator account helps detect suspicious activity and ensures accountability for actions performed using this critical account.

  • E. Incorrect.

    Sharing the super administrator account credentials, even securely, violates best practices because it lacks accountability and increases the risk of credential compromise.

Timed practice exam

Take a Google Professional Cloud Security Engineer practice test under exam conditions

60 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam