ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 165 - Professional Cloud Security Engineer discussion

Report
Export

You are a security administrator at your company and are responsible for managing access controls (identification, authentication, and authorization) on Google Cloud. Which Google-recommended best practices should you follow when configuring authentication and authorization? (Choose two.)

A.
Use Google default encryption.
Answers
A.
Use Google default encryption.
B.
Manually add users to Google Cloud.
Answers
B.
Manually add users to Google Cloud.
C.
Provision users with basic roles using Google's Identity and Access Management (IAM) service.
Answers
C.
Provision users with basic roles using Google's Identity and Access Management (IAM) service.
D.
Use SSO/SAML integration with Cloud Identity for user authentication and user lifecycle management.
Answers
D.
Use SSO/SAML integration with Cloud Identity for user authentication and user lifecycle management.
E.
Provide granular access with predefined roles.
Answers
E.
Provide granular access with predefined roles.
Suggested answer: D, E

Explanation:

https://cloud.google.com/iam/docs/using-iam-securely#least_privilege Basic roles include thousands of permissions across all Google Cloud services. In production environments, do not grant basic roles unless there is no alternative. Instead, grant the most limited predefined roles or custom roles that meet your needs.

asked 18/09/2024
Carole Pie
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first