Google Professional Data Engineer exam dumps

Google Professional Data Engineer practice question 16 of 279

Professional Data Engineer. Professional level, Google Cloud. Free question with the correct answer and a full explanation.

Google Professional Data Engineer Question 16

Select 4Google Cloud Platform

Your organization processes sensitive customer data, including personally identifiable information (PII). You are tasked with designing a data pipeline on Google Cloud to ensure compliance with GDPR (General Data Protection Regulation). Which of the following actions should you implement to meet legal and regulatory compliance requirements?

  1. A

    Use Cloud Data Loss Prevention (DLP) to identify and redact PII before storing data.

  2. B

    Ensure all data is encrypted both in transit and at rest using Cloud Key Management Service (KMS).

  3. C

    Store all customer data in a multi-region bucket to maximize availability, regardless of the data's geographic origin.

  4. D

    Implement role-based access control (RBAC) using Cloud Identity and Access Management (IAM) to restrict data access.

  5. E

    Set up audit logs in Cloud Logging to monitor and track access to sensitive data.

Show answer and explanation

Correct answers: A, B, D, E

Explanation

GDPR compliance requires organizations to protect sensitive customer data through measures such as encryption, access controls, data residency considerations, and monitoring. By using Cloud Data Loss Prevention (DLP), encryption, IAM-based RBAC, and audit logs, you ensure compliance with GDPR's legal and regulatory requirements. However, storing data without considering its geographic origin can violate GDPR's data residency and localization mandates.

  • A. Correct.

    Using Cloud Data Loss Prevention (DLP) to identify and redact sensitive PII ensures that sensitive data is handled in accordance with GDPR requirements. This is a key step in achieving compliance.

  • B. Correct.

    Encrypting data both in transit and at rest helps protect sensitive information and aligns with GDPR's emphasis on data security.

  • C. Incorrect.

    While availability is important, storing all customer data in a multi-region bucket without considering data residency requirements could violate GDPR, which mandates that certain data must remain within specific geographic regions.

  • D. Correct.

    Role-based access control (RBAC) restricts access to sensitive data to only authorized personnel, reducing the risk of unauthorized access and ensuring compliance with GDPR.

  • E. Correct.

    Setting up audit logs allows you to track and monitor access to sensitive data, which is a requirement for demonstrating compliance with GDPR's accountability principles.

Timed practice exam

Take a Google Professional Data Engineer practice test under exam conditions

60 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam