← Back to catalogue
Certification preparation

Professional Cloud Security Engineer: controls and evidence

Prepare for Professional Cloud Security Engineer with eight lessons, 50 questions, and eight cases on identity, perimeters, data, detection, and governance.

Google CloudAvailable
Google CloudPCSE8 lessons
Exam of 50–60 items in 120 minutes, English and Japanese. Currently linked guide has no confirmed edition date; inspection on 2026-09-30 is not a release date. Approximate weights 25/22/23/19/11. Numerical passing threshold unconfirmed. Independent preparation.

Objectives and progression

Eight lessons with guided application, 50 questions, and eight original cases. Internal assessment of 32 decisions in 60 minutes. Fictional banking examples cover authorization, data exposure, recovery, auditing, and governance requirements. Initial coverage without executable labs or exhaustive treatment of directories, DNS, NGFW, or every product objective. Current Google-linked guide inspected 2026-09-30; edition date not stated. Five approximate weights: 25/22/23/19/11. Exam of 50–60 items in 120 minutes, in English and Japanese. A public numerical passing threshold is unconfirmed.

Audience: Security and platform engineers and APS professionals designing, operating, and investigating Google Cloud controls.

Prerequisites: Networking, IAM, cloud, container, and data-management experience. No formal certification prerequisite; practical Google Cloud experience recommended.

370 estimated study minutes

  • Distinguish people, workloads, and temporary grants with traceable identity.
  • Explain effective access using grants, denials, and scope.
  • Distinguish ingress control, service context, and rule observation.
  • Evaluate data and transport boundaries with representative evidence.
  • Design the cryptographic lifecycle without losing recovery capability.
  • Preserve data utility without confusing transformation, authorization, and blocking.
  • Build accessible evidence and connect findings to verifiable actions.
  • Translate requirements into controls and evidence with explicit limits.

Modules

  1. Federation and temporary access
  2. IAM, deny, and inheritance
  3. IAP, WAF, and perimeters
  4. Connectivity and perimeter migration
  5. Keys, recovery, and data in use
  6. Minimization, secrets, and AI
  7. Auditing, detection, and response
  8. Assurances, residency, and responsibilities

Continue learning

Google Cloud

References and version

Current linked guide; edition date unconfirmed (2026-09-30 inspection)

What you will explore

0 / 8

Learning is also trying.

Original explained questions, flashcards, and scenarios to apply the concepts.

Practice
This module covers foundations. It is not a complete certification course or a full simulation of the official exam.

Exam domains

Configuring access25%
Securing communications and establishing boundary protection22%
Ensuring data protection23%
Managing operations19%
Supporting compliance requirements11%