🔍

Google Cloud Professional Security Operations Engineer PSOE — Question 35

Topic 1 · Question 35 of 38

Topic 1 · Question 35

You are a SOC analyst working a case in Google Security Operations (SecOps). The case contains a file hash that your playbooks have automatically enriched with VirusTotal context and categorized as likely malicious. You need to quickly identify devices and users in your organization who have interacted with this file. What should you do?