nerdexam
GoogleGoogle

PROFESSIONAL-CLOUD-DEVELOPER · Question #354

PROFESSIONAL-CLOUD-DEVELOPER Question #354: Real Exam Question with Answer & Explanation

Sign in or unlock PROFESSIONAL-CLOUD-DEVELOPER to reveal the answer and full explanation for question #354. The question stem and answer options stay visible for context.

Managing application access and identity

Question

You are deploying a microservices application to GKE. One microservice needs to download files from a Cloud Storage bucket. You have an IAM service account with the Storage Object Viewer role on the project with the bucket. You need to configure your application to access the Cloud Storage bucket while following Google-recommended practices. What should you do?

Options

  • AAssign the IAM service account to the cluster's node pool. Configure the application to
  • BAssign the IAM service account to the cluster's node pool. Encrypt the IAM service account key
  • CCreate a Kubernetes service account. Create a Kubernetes secret with a base64-encoded IAM
  • DCreate a Kubernetes service account. Use an IAM policy to bind the IAM service account to a

Unlock PROFESSIONAL-CLOUD-DEVELOPER to see the answer

You've previewed enough free PROFESSIONAL-CLOUD-DEVELOPER questions. Unlock PROFESSIONAL-CLOUD-DEVELOPER for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#GKE Security#Workload Identity#IAM#Cloud Storage Integration
Full PROFESSIONAL-CLOUD-DEVELOPER PracticeBrowse All PROFESSIONAL-CLOUD-DEVELOPER Questions