Google
PROFESSIONAL-CLOUD-SECURITY-ENGINEER · Question #24
You are the security admin of your company. Your development team creates multiple GCP projects under the "implementation" folder for several dev, staging, and production workloads. You want to…
The correct answer is C. Use an infrastructure-as-code software tool to set up a single service perimeter and to deploy a. Communication between the project is necessary tied to VPC, but you need to include all projects under implementation folder in a single VPCSC.
Submitted by asante_acc· Apr 18, 2026Ensuring data protection
Question
You are the security admin of your company. Your development team creates multiple GCP projects under the "implementation" folder for several dev, staging, and production workloads. You want to prevent data exfiltration by malicious insiders or compromised code by setting up a security perimeter. However, you do not want to restrict communication between the projects. What should you do?
Options
- AUse a Shared VPC to enable communication between all projects, and use firewall rules to
- BCreate access levels in Access Context Manager to prevent data exfiltration, and use a shared
- CUse an infrastructure-as-code software tool to set up a single service perimeter and to deploy a
- DUse an infrastructure-as-code software tool to set up three different service perimeters for dev,
How the community answered
(22 responses)- A5% (1)
- B9% (2)
- C82% (18)
- D5% (1)
Explanation
Communication between the project is necessary tied to VPC, but you need to include all projects under implementation folder in a single VPCSC.
Topics
#VPC Service Controls#Data Exfiltration#Security Perimeters#Cross-Project Communication
Community Discussion
No community discussion yet for this question.