Google Professional Machine Learning Engineer exam dumps

Google Professional Machine Learning Engineer practice question 158 of 522

Professional Machine Learning Engineer. Professional level, Google Cloud. Free question with the correct answer and a full explanation.

Google Professional Machine Learning Engineer Question 158

Select 3Google Cloud Platform

You are a Machine Learning Engineer tasked with implementing a secure workflow for your team in Vertex AI Workbench. Your team uses Jupyter-based notebooks to process sensitive customer data. Which of the following actions should you take to ensure security best practices in this environment?

  1. A

    Enable Private IPs for the notebook instances to prevent public internet access.

  2. B

    Use IAM roles and permissions to grant the minimum required access to team members.

  3. C

    Disable notebook instance auto-upgrades to maintain system stability.

  4. D

    Enforce encryption at rest for all storage associated with the notebook instance.

  5. E

    Allow unrestricted network access to simplify collaboration between team members.

Show answer and explanation

Correct answers: A, B, D

Explanation

To apply security best practices in Vertex AI Workbench, you should prioritize minimizing exposure to the public internet, enforcing strong access controls, and ensuring data is encrypted at rest. These actions help safeguard sensitive data and reduce the risk of unauthorized access or data breaches. Disabling auto-upgrades and allowing unrestricted network access undermine security and should be avoided.

  • A. Correct.

    Enabling Private IPs ensures that the notebook instances are not exposed to the public internet, reducing the risk of unauthorized access.

  • B. Correct.

    Using IAM roles and permissions to grant the minimum required access follows the principle of least privilege, minimizing the potential attack surface.

  • C. Incorrect.

    Disabling notebook instance auto-upgrades is not a best practice. Regular updates are essential to patch potential security vulnerabilities.

  • D. Correct.

    Enforcing encryption at rest ensures that any data stored in the notebook instance or associated storage is protected from unauthorized access.

  • E. Incorrect.

    Allowing unrestricted network access is not a security best practice. Network access should be restricted to only the necessary endpoints to minimize exposure.

Timed practice exam

Take a Google Professional Machine Learning Engineer practice test under exam conditions

60 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam