nerdexam
Google

PROFESSIONAL-CLOUD-SECURITY-ENGINEER · Question #296

You are creating a secure network architecture. You must fully isolate development and production environments, and prevent any network traffic between the two environments. The network team…

The correct answer is D. Create one Virtual Private Cloud (VPC) network per environment. Create one additional VPC for. VPC Service Controls help protect data and manage access but do not provide the same level of network isolation as creating separate VPCs. Service Controls are more about data access and security policies rather than network segmentation.

Submitted by miguelv· Apr 18, 2026Configuring network security

Question

You are creating a secure network architecture. You must fully isolate development and production environments, and prevent any network traffic between the two environments. The network team requires that there is only one central entry point to the cloud network from the on- premises environment. What should you do?

Options

  • ACreate one Virtual Private Cloud (VPC) network per environment. Add the on-premises entry
  • BCreate one shared Virtual Private Cloud (VPC) network and use it as the entry point to the cloud
  • CCreate one Virtual Private Cloud (VPC) network per environment. Create a VPC Service Controls
  • DCreate one Virtual Private Cloud (VPC) network per environment. Create one additional VPC for

How the community answered

(30 responses)
  • A
    7% (2)
  • B
    17% (5)
  • C
    3% (1)
  • D
    73% (22)

Explanation

VPC Service Controls help protect data and manage access but do not provide the same level of network isolation as creating separate VPCs. Service Controls are more about data access and security policies rather than network segmentation.

Topics

#VPC Network Design#Network Isolation#Hybrid Connectivity#Hub-and-Spoke Network

Community Discussion

No community discussion yet for this question.

Full PROFESSIONAL-CLOUD-SECURITY-ENGINEER Practice