Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

GIAC Exam GCFR Topic 1 Question 13 Discussion

Actual exam question for GIAC's GCFR exam
Question #: 13
Topic #: 1
[All GCFR Questions]

An attacker successfully downloaded sensitive data from a misconfigured GCP bucket. Appropriate logging was not enabled. Where can an analyst find the rough time and quantity of the data downloaded?

Show Suggested Answer Hide Answer
Suggested Answer: B

Contribute your Thoughts:

Yoko
9 days ago
I'm not sure, but I think it could also be in Security Command Center.
upvoted 0 times
...
Allene
10 days ago
A) Billing Section? Really? What are we, accountants? This is a security issue, not a finance one. Cloud Logging is the obvious choice.
upvoted 0 times
...
Nichelle
13 days ago
D) Security Command Center sounds fancy, but I doubt it'll have the specifics we need here. Gotta stick with the basics - Cloud Logging is where it's at.
upvoted 0 times
...
Lasandra
17 days ago
I agree with Mike, Cloud Logging should have the rough time and quantity of data downloaded.
upvoted 0 times
...
Carin
19 days ago
C) Cloud Logging is the way to go! That's where you'll find the details on the data download. Gotta love those logs, they're the bread and butter of any good security investigation.
upvoted 0 times
...
Mike
20 days ago
I think the analyst can find that information in Cloud Logging.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77