🔍

Google Cloud Professional Cloud Architect PCA — Question 248

Topic 1 · Question 248 of 337

Topic 1 · Question 248

You are deploying a highly confidential data processing workload on Google Cloud. Your company’s compliance framework mandates that cryptographic keys used for encrypting data at rest must be generated and stored exclusively within a validated Hardware Security Module (HSM). You want to use a fully integrated Google Cloud managed service to handle the lifecycle and usage of these keys. What should you do?