PROFESSIONAL-CLOUD-SECURITY-ENGINEER · Question #379
Your company's storage team manages all product images within a specific Google Cloud project. To maintain control, you must isolate access to Cloud Storage for this project, allowing the storage…
The correct answer is C. Use Context-Aware Access Create an access level that defines the required context. Apply it as an. The correct approach is to use Context-Aware Access to define an access level requiring specific contextual conditions - such as using corporate-managed devices. Then, apply this policy as an organization policy at the project level to restrict Cloud Storage access based on…
Question
Options
- AUse Identity and Access Management (IAM) roles at the project level within the storage team's
- BEmploy organization-level firewall rules to block all traffic to Cloud Storage. Create exceptions for
- CUse Context-Aware Access Create an access level that defines the required context. Apply it as an
- DImplement VPC Service Controls by establishing an organization-wide service perimeter with all
How the community answered
(49 responses)- A10% (5)
- B6% (3)
- C80% (39)
- D4% (2)
Explanation
The correct approach is to use Context-Aware Access to define an access level requiring specific contextual conditions - such as using corporate-managed devices. Then, apply this policy as an organization policy at the project level to restrict Cloud Storage access based on that context. This allows the storage team to manage access controls within their project while ensuring that only compliant devices can connect.
Topics
Community Discussion
No community discussion yet for this question.