Instiq

4Managing operations

Practice questions →Glossary →
  • 4.1Automating infrastructure and application security

    Understand automating CVE scanning in CI/CD, Binary Authorization to secure GKE/Cloud Run, automating VM/container image creation (hardening, maintenance, VM patch management), and managing policy/drift detection at scale (cloud security posture management [CSPM], custom org policies, custom modules for Security Health Analytics).

  • 4.2Logging, monitoring, and threat detection

    Understand configuring/analyzing network logs (Cloud NGFW, VPC flow logs, Packet Mirroring, Cloud IDS, Log Analytics), an effective logging strategy, incident logging/monitoring/response/remediation, secure access to logs, exporting logs to external security systems, configuring/analyzing Cloud Audit Logs and data access logs, log exports (log sinks, aggregated sinks), and configuring/monitoring Security Command Center.