ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 93 - Professional Cloud Security Engineer discussion

Report
Export

You are part of a security team that wants to ensure that a Cloud Storage bucket in Project A can only be readable from Project B. You also want to ensure that data in the Cloud Storage bucket cannot be accessed from or copied to Cloud Storage buckets outside the network, even if the user has the correct credentials.

What should you do?

A.
Enable VPC Service Controls, create a perimeter with Project A and B, and include Cloud Storage service.
Answers
A.
Enable VPC Service Controls, create a perimeter with Project A and B, and include Cloud Storage service.
B.
Enable Domain Restricted Sharing Organization Policy and Bucket Policy Only on the Cloud Storage bucket.
Answers
B.
Enable Domain Restricted Sharing Organization Policy and Bucket Policy Only on the Cloud Storage bucket.
C.
Enable Private Access in Project A and B networks with strict firewall rules to allow communication between the networks.
Answers
C.
Enable Private Access in Project A and B networks with strict firewall rules to allow communication between the networks.
D.
Enable VPC Peering between Project A and B networks with strict firewall rules to allow communication between the networks.
Answers
D.
Enable VPC Peering between Project A and B networks with strict firewall rules to allow communication between the networks.
Suggested answer: A

Explanation:

https://cloud.google.com/vpc-service-controls/docs/overview#isolate

asked 18/09/2024
Dina Elizabeth Perez de Paz
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first