PROFESSIONAL-CLOUD-SECURITY-ENGINEER · Question #261
PROFESSIONAL-CLOUD-SECURITY-ENGINEER Question #261: Real Exam Question with Answer & Explanation
Sign in or unlock PROFESSIONAL-CLOUD-SECURITY-ENGINEER to reveal the answer and full explanation for question #261. The question stem and answer options stay visible for context.
Question
You are developing a new application that uses exclusively Compute Engine VMs. Once a day, this application will execute five different batch jobs. Each of the batch jobs requires a dedicated set of permissions on Google Cloud resources outside of your application. You need to design a secure access concept for the batch jobs that adheres to the least-privilege principle. What should you do?
Options
- A1. Create a general service account "g-sa" to orchestrate the batch jobs.
- B1. Create a general service account "g-sa" to execute the batch jobs.
- C1. Create a workload identity pool and configure workload identity pool providers for each batch
- D1. Create a general service account "g-sa" to orchestrate the batch jobs.
Unlock PROFESSIONAL-CLOUD-SECURITY-ENGINEER to see the answer
You've previewed enough free PROFESSIONAL-CLOUD-SECURITY-ENGINEER questions. Unlock PROFESSIONAL-CLOUD-SECURITY-ENGINEER for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.