List of questions
Related questions
Question 164 - Professional Cloud Architect discussion
Your company has sensitive data in Cloud Storage buckets. Data analysts have Identity Access Management (IAM) permissions to read the buckets. You want to prevent data analysts from retrieving the data in the buckets from outside the office network. What should you do?
A.
1. Create a VPC Service Controls perimeter that includes the projects with the buckets.
B.
Create an access level with the CIDR of the office network.
C.
1. Create a firewall rule for all instances in the Virtual Private Cloud (VPC) network for source range.
D.
Use the Classless Inter-domain Routing (CIDR) of the office network.
E.
1. Create a Cloud Function to remove IAM permissions from the buckets, and another Cloud Function to add IAM permissions to the buckets.
F.
Schedule the Cloud Functions with Cloud Scheduler to add permissions at the start of business and remove permissions at the end of business.
G.
1. Create a Cloud VPN to the office network.
H.
Configure Private Google Access for on-premises hosts.
Your answer:
0 comments
Sorted by
Leave a comment first