🔍

Google Cloud Professional Security Operations Engineer PSOE — Question 11

Topic 1 · Question 11 of 38

Topic 1 · Question 11

Your company recently adopted Security Command Center (SCC) but is not using Google Security Operations (SecOps). Your organization has thousands of active projects. You need to detect anomalous behavior in your Google Cloud environment by windowing and aggregating data over a given time period, based on specific log events or advanced calculations. You also need to provide an interface for analysts to triage the alerts. How should you build this capability?