ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 155 - Professional Cloud Security Engineer discussion

Report
Export

You want to make sure that your organization's Cloud Storage buckets cannot have data publicly available to the internet. You want to enforce this across all Cloud Storage buckets. What should you do?

A.
Remove Owner roles from end users, and configure Cloud Data Loss Prevention.
Answers
A.
Remove Owner roles from end users, and configure Cloud Data Loss Prevention.
B.
Remove Owner roles from end users, and enforce domain restricted sharing in an organization policy.
Answers
B.
Remove Owner roles from end users, and enforce domain restricted sharing in an organization policy.
C.
Configure uniform bucket-level access, and enforce domain restricted sharing in an organization policy.
Answers
C.
Configure uniform bucket-level access, and enforce domain restricted sharing in an organization policy.
D.
Remove *.setIamPolicy permissions from all roles, and enforce domain restricted sharing in an organization policy.
Answers
D.
Remove *.setIamPolicy permissions from all roles, and enforce domain restricted sharing in an organization policy.
Suggested answer: C

Explanation:

- Uniform bucket-level access: https://cloud.google.com/storage/docs/uniform-bucket-level-access#should-you-use

- Domain Restricted Sharing: https://cloud.google.com/resource-manager/docs/organization-policy/restricting-domains#public_data_sharing

asked 18/09/2024
Hayat Hassan
44 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first