ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 172 - Professional Cloud Security Engineer discussion

Report
Export

You're developing the incident response plan for your company. You need to define the access strategy that your DevOps team will use when reviewing and investigating a deployment issue in your Google Cloud environment. There are two main requirements:

Least-privilege access must be enforced at all times.

The DevOps team must be able to access the required resources only during the deployment issue.

How should you grant access while following Google-recommended best practices?

A.
Assign the Project Viewer Identity and Access Management (IAM) role to the DevOps team.
Answers
A.
Assign the Project Viewer Identity and Access Management (IAM) role to the DevOps team.
B.
Create a custom IAM role with limited list/view permissions, and assign it to the DevOps team.
Answers
B.
Create a custom IAM role with limited list/view permissions, and assign it to the DevOps team.
C.
Create a service account, and grant it the Project Owner IAM role. Give the Service Account User Role on this service account to the DevOps team.
Answers
C.
Create a service account, and grant it the Project Owner IAM role. Give the Service Account User Role on this service account to the DevOps team.
D.
Create a service account, and grant it limited list/view permissions. Give the Service Account User Role on this service account to the DevOps team.
Answers
D.
Create a service account, and grant it limited list/view permissions. Give the Service Account User Role on this service account to the DevOps team.
Suggested answer: D
asked 18/09/2024
Steven Reyes
37 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first