ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 106 - Professional Cloud Security Engineer discussion

Report
Export

You work for a large organization where each business unit has thousands of users. You need to delegate management of access control permissions to each business unit. You have the following requirements:

Each business unit manages access controls for their own projects.

Each business unit manages access control permissions at scale.

Business units cannot access other business units' projects.

Users lose their access if they move to a different business unit or leave the company.

Users and access control permissions are managed by the on-premises directory service.

What should you do? (Choose two.)

A.
Use VPC Service Controls to create perimeters around each business unit's project.
Answers
A.
Use VPC Service Controls to create perimeters around each business unit's project.
B.
Organize projects in folders, and assign permissions to Google groups at the folder level.
Answers
B.
Organize projects in folders, and assign permissions to Google groups at the folder level.
C.
Group business units based on Organization Units (OUs) and manage permissions based on OUs.
Answers
C.
Group business units based on Organization Units (OUs) and manage permissions based on OUs.
D.
Create a project naming convention, and use Google's IAM Conditions to manage access based on the prefix of project names.
Answers
D.
Create a project naming convention, and use Google's IAM Conditions to manage access based on the prefix of project names.
E.
Use Google Cloud Directory Sync to synchronize users and group memberships in Cloud Identity.
Answers
E.
Use Google Cloud Directory Sync to synchronize users and group memberships in Cloud Identity.
Suggested answer: B, E
asked 18/09/2024
Chan Man Wong
43 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first