Google
PROFESSIONAL-CLOUD-SECURITY-ENGINEER · Question #296
You are creating a secure network architecture. You must fully isolate development and production environments, and prevent any network traffic between the two environments. The network team…
The correct answer is D. Create one Virtual Private Cloud (VPC) network per environment. Create one additional VPC for. VPC Service Controls help protect data and manage access but do not provide the same level of network isolation as creating separate VPCs. Service Controls are more about data access and security policies rather than network segmentation.
Submitted by miguelv· Apr 18, 2026Configuring network security
Question
You are creating a secure network architecture. You must fully isolate development and production environments, and prevent any network traffic between the two environments. The network team requires that there is only one central entry point to the cloud network from the on- premises environment. What should you do?
Options
- ACreate one Virtual Private Cloud (VPC) network per environment. Add the on-premises entry
- BCreate one shared Virtual Private Cloud (VPC) network and use it as the entry point to the cloud
- CCreate one Virtual Private Cloud (VPC) network per environment. Create a VPC Service Controls
- DCreate one Virtual Private Cloud (VPC) network per environment. Create one additional VPC for
How the community answered
(30 responses)- A7% (2)
- B17% (5)
- C3% (1)
- D73% (22)
Explanation
VPC Service Controls help protect data and manage access but do not provide the same level of network isolation as creating separate VPCs. Service Controls are more about data access and security policies rather than network segmentation.
Topics
#VPC Network Design#Network Isolation#Hybrid Connectivity#Hub-and-Spoke Network
Community Discussion
No community discussion yet for this question.