professional-cloud-data-engineer
Prepare and test your skills
Prepare and test your skills
Worked example. The correct answer is already marked and every option is explained below, so there is nothing to select here. To answer questions yourself, start the free trial.
A data engineering team is designing an automated ingestion pipeline that processes sensitive transaction files exceeding 50 MB before storing them in Google Cloud. The organization's security policy requires column- and application-layer encryption managed centrally through Cloud Key Management Service (Cloud KMS).
During architectural review, the team observes that the Cloud KMS Encrypt API rejects direct encryption requests exceeding 64 KiB.
Which cryptographic key management strategy should the team implement to encrypt these large payloads securely and efficiently?
Keep the momentum going with these hand-picked practice scenarios
Want more questions like this?
Get a free certification question every week.