nerdexam
GoogleGoogle

PROFESSIONAL-CLOUD-SECURITY-ENGINEER · Question #204

PROFESSIONAL-CLOUD-SECURITY-ENGINEER Question #204: Real Exam Question with Answer & Explanation

Sign in or unlock PROFESSIONAL-CLOUD-SECURITY-ENGINEER to reveal the answer and full explanation for question #204. The question stem and answer options stay visible for context.

Submitted by andreas_gr· Apr 18, 2026Configuring access within a cloud solution environment

Question

You have a highly sensitive BigQuery workload that contains personally identifiable information (PII) that you want to ensure is not accessible from the internet. To prevent data exfiltration, only requests from authorized IP addresses are allowed to query your BigQuery tables. What should you do?

Options

  • AUse service perimeter and create an access level based on the authorized source IP address as
  • BUse Google Cloud Armor security policies defining an allowlist of authorized IP addresses at the
  • CUse the Restrict Resource Service Usage organization policy constraint along with Cloud Data
  • DUse the Restrict allowed Google Cloud APIs and services organization policy constraint along

Unlock PROFESSIONAL-CLOUD-SECURITY-ENGINEER to see the answer

You've previewed enough free PROFESSIONAL-CLOUD-SECURITY-ENGINEER questions. Unlock PROFESSIONAL-CLOUD-SECURITY-ENGINEER for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#VPC Service Controls#Data Exfiltration Prevention#BigQuery Security#IP Access Control
Full PROFESSIONAL-CLOUD-SECURITY-ENGINEER PracticeBrowse All PROFESSIONAL-CLOUD-SECURITY-ENGINEER Questions