PROFESSIONAL-CLOUD-SECURITY-ENGINEER · Question #333
PROFESSIONAL-CLOUD-SECURITY-ENGINEER Question #333: Real Exam Question with Answer & Explanation
Sign in or unlock PROFESSIONAL-CLOUD-SECURITY-ENGINEER to reveal the answer and full explanation for question #333. The question stem and answer options stay visible for context.
Question
Your Google Cloud organization is subdivided into three folders: production, development, and networking, Networking resources for the organization are centrally managed in the networking folder. You discovered that projects in the production folder are attaching to Shared VPCs that are outside of the networking folder which could become a data exfiltration risk. You must resolve the production folder issue without impacting the development folder. You need to use the most efficient and least disruptive approach. What should you do?
Options
- AEnable the Restrict Shared VPC Host Projects organization policy on the production folder.
- BEnable the Restrict Shared VPC Host Projects organization policy on the networking folder only.
- CEnable the Restrict Shared VPC Host Projects organization policy at the project level for each of
- DEnable the Restrict Shared VPC Host Projects organization policy at the organization level.
Unlock PROFESSIONAL-CLOUD-SECURITY-ENGINEER to see the answer
You've previewed enough free PROFESSIONAL-CLOUD-SECURITY-ENGINEER questions. Unlock PROFESSIONAL-CLOUD-SECURITY-ENGINEER for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.