Associate Cloud Engineer Exam QuestionsBrowse all questions from this exam

Associate Cloud Engineer Exam - Question 117


An employee was terminated, but their access to Google Cloud was not removed until 2 weeks later. You need to find out if this employee accessed any sensitive customer information after their termination. What should you do?

Show Answer
Correct Answer: BC

To determine if the terminated employee accessed any sensitive customer information after their termination, you should view Data Access audit logs in Cloud Logging and search for the user's email as the principal. Data Access audit logs specifically track API calls that read, modify, or create user-provided resource data, making them the most suitable choice for identifying access to sensitive data.

Discussion

17 comments
Sign in to comment
rsuresh27Option: C
Apr 27, 2022

C is the correct answer. We are trying to find out if any sensitive data was accessed. Data access logs are the only logs that show this. C is the only option that mentions data access logs.

idk_4
Jan 20, 2024

Guys, do you know which answers are the correct answers on this website? The website's answers or the most voted ones? I'm preparing for the exam and I need a quick and certain response. Thank you

BuenaCloudDE
Jul 14, 2024

Should use discussion to find out correct answer. Also usually you can find fine explain for question

bigbenbenOption: C
May 12, 2022

C. https://cloud.google.com/logging/docs/audit#data-access

Cornholio_LMC
Sep 24, 2022

had this question today

sabrinakloudOption: C
Apr 18, 2023

I think option C is correct : Data Access audit logs contain API calls that read the configuration or metadata of resources, as well as user-driven API calls that create, modify, or read user-provided resource data.

Neha_PallaviOption: C
Aug 25, 2023

option C is correct : Data Access audit logs contain API calls that read the configuration or metadata of resources, as well as user-driven API calls that create, modify, or read user-provided resource data. Kindly share the all question (<a href="/cdn-cgi/l/email-protection" class="__cf_email__" data-cfemail="4a202b3c2b29642138233922242b240a2d272b232664292527">[email protected]</a>)able to see only 120 questions

rtnk22Option: A
Apr 26, 2022

Shouldn't the correct option be A here? What does service account have to do here.

amrith501
Apr 28, 2022

It should be C User activity generally come under audit logs

Rutu_98Option: C
May 24, 2022

ANSWER IS C As we want to find out whether the user has accessed the data or not , so Data Acess Logs would be correct option to view that

abirroyOption: C
Aug 7, 2022

View Data Access audit logs in Cloud Logging. Search for the user's email as the principal

cooldude26Option: C
Oct 29, 2023

C. View Data Access audit logs in Cloud Logging. Search for the user's email as the principal. Data Access audit logs provide detailed information about accesses to your Google Cloud resources. By searching for the terminated employee's email address as the principal in the Data Access audit logs, you can track their access to sensitive customer information after their termination. This approach allows you to specifically focus on data access, which is crucial for identifying any unauthorized or suspicious activities related to customer data.

BAofBKOption: C
Nov 6, 2023

The correct answer is C

akshaychavan7Option: C
May 22, 2022

I will go with option C.

mrvergaraOption: A
Jan 6, 2023

https://cloud.google.com/logging/docs/audit. Data Access audit logs are disabled by default

BobbybashOption: C
Feb 14, 2023

C. View Data Access audit logs in Cloud Logging. Search for the user's email as the principal. Data Access audit logs record all activity related to accessing or modifying data, including reading, writing, and deleting operations. By searching for the terminated employee's email as the principal, you can see if they accessed any sensitive customer information after their termination. System Event Logs and Admin Activity logs may not have the details of the data accessed, so Data Access audit logs are the most appropriate option in this scenario.

Captain1212Option: C
Sep 3, 2023

Option C is more correct , as data access logs contain API , from this you can check for it

sanvit
Sep 12, 2023

Kindly share the all question (<a href="/cdn-cgi/l/email-protection" class="__cf_email__" data-cfemail="5f342a2d373a343e29362b3e1f38323e3633713c3032">[email protected]</a>)able to see only 120 questions. I have planned exam in the next week

shubhi_1Option: C
Apr 24, 2024

Option C is more correct