nerdexam
Google

PROFESSIONAL-CLOUD-SECURITY-ENGINEER · Question #46

A customer needs to rely on their existing user directory with the requirements of native authentication against it when developing for Google Cloud Platform (GCP). They want to leverage their…

The correct answer is B. Configure Cloud Identity as a SAML 2.0 Service Provider, using the customer's User Directory as. A is not correct because client wants to continue using their existing directory. B is correct because it lets client use their current user directory as source of truth and to be authenticated against while using Cloud identity as their SAML broker. C is not correct because it…

Submitted by obi.ng· Apr 18, 2026Configuring access within a cloud solution environment

Question

A customer needs to rely on their existing user directory with the requirements of native authentication against it when developing for Google Cloud Platform (GCP). They want to leverage their existing tooling and functionality to gather insight on user activity from a familiar interface. Which action should you take to meet the customer's requirements?

Options

  • AProvision users into Cloud Identity using Just-in-Time SAML 2.0 user provisioning with the
  • BConfigure Cloud Identity as a SAML 2.0 Service Provider, using the customer's User Directory as
  • CConfigure and enforce 2-Step Verification in Cloud Identity for all Super Admins.
  • DConfigure a third-party IdP (Octa or Ping Federate) to manage authentication.

How the community answered

(25 responses)
  • A
    4% (1)
  • B
    84% (21)
  • C
    8% (2)
  • D
    4% (1)

Explanation

A is not correct because client wants to continue using their existing directory. B is correct because it lets client use their current user directory as source of truth and to be authenticated against while using Cloud identity as their SAML broker. C is not correct because it adds a protection to super admin account but doesn't address the use D is not correct because it proposes a non-native solution and doesn't address the use case. https://cloud.google.com/blog/products/identity-security/using-your-existing-identity-management- system-with-google-cloud-platform https://support.google.com/a/answer/60224

Topics

#Identity Federation#SAML 2.0#Cloud Identity#Hybrid Identity

Community Discussion

No community discussion yet for this question.

Full PROFESSIONAL-CLOUD-SECURITY-ENGINEER Practice