nerdexam
GoogleGoogle

PROFESSIONAL-CLOUD-SECURITY-ENGINEER · Question #27

PROFESSIONAL-CLOUD-SECURITY-ENGINEER Question #27: Real Exam Question with Answer & Explanation

Sign in or unlock PROFESSIONAL-CLOUD-SECURITY-ENGINEER to reveal the answer and full explanation for question #27. The question stem and answer options stay visible for context.

Submitted by naveen.iyer· Apr 18, 2026Ensuring data protection

Question

You are part of a security team that wants to ensure that a Cloud Storage bucket in Project A can only be readable from Project B. You also want to ensure that data in the Cloud Storage bucket cannot be accessed from or copied to Cloud Storage buckets outside the network, even if the user has the correct credentials. What should you do?

Options

  • AEnable VPC Service Controls, create a perimeter with Project A and B, and include Cloud
  • BEnable Domain Restricted Sharing Organization Policy and Bucket Policy Only on the Cloud
  • CEnable Private Access in Project A and B networks with strict firewall rules to allow
  • DEnable VPC Peering between Project A and B networks with strict firewall rules to allow

Unlock PROFESSIONAL-CLOUD-SECURITY-ENGINEER to see the answer

You've previewed enough free PROFESSIONAL-CLOUD-SECURITY-ENGINEER questions. Unlock PROFESSIONAL-CLOUD-SECURITY-ENGINEER for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#VPC Service Controls#Data Exfiltration Prevention#Cloud Storage Security#Security Perimeters
Full PROFESSIONAL-CLOUD-SECURITY-ENGINEER PracticeBrowse All PROFESSIONAL-CLOUD-SECURITY-ENGINEER Questions