PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER · Question #8
A business unit in your organization plans to use Vertex AI to develop models within Google Cloud. The security team needs to implement detective and preventative guardrails to ensure that the…
The correct answer is D. Create a posture consisting of predefined and custom organization policies and predefined and. The correct approach is to create a posture in SCC that combines predefined and custom organization policies with predefined and custom Security Health Analytics (SHA) modules, and then scope it to the business unit folder. This ensures both preventative guardrails…
Question
A business unit in your organization plans to use Vertex AI to develop models within Google Cloud. The security team needs to implement detective and preventative guardrails to ensure that the environment meets internal security control requirements. How should you secure this environment?
Options
- AImplement Assured Workloads by creating a folder for the business unit and assigning the
- BImplement preconfigured and custom organization policies to meet the control requirements.
- CCreate a policy bundle representing the control requirements using Rego. Implement these
- DCreate a posture consisting of predefined and custom organization policies and predefined and
How the community answered
(44 responses)- A7% (3)
- B11% (5)
- C5% (2)
- D77% (34)
Explanation
The correct approach is to create a posture in SCC that combines predefined and custom organization policies with predefined and custom Security Health Analytics (SHA) modules, and then scope it to the business unit folder. This ensures both preventative guardrails (organization policies) and detective guardrails (SHA findings) are enforced for the Vertex AI environment, aligning with internal security control requirements.
Topics
Community Discussion
No community discussion yet for this question.