GCP PCA · Question 44 · Domain 3: Designing for Security and Compliance
A financial services company is deploying a highly sensitive application on Compute Engine. To meet PCI-DSS compliance, the architecture must ensure that: 1) VM memory is encrypted in use, 2) The OS boot process is cryptographically verified, and 3) VMs do not have public IP addresses. Which THREE features should you enable? (Select THREE)
Answer options:
Confidential VMs
Shielded VMs
Private Google Access
Cloud Armor
Sole-tenant nodes
Identity-Aware Proxy (IAP)
50 questions · hints · full answers · grading