nerdexam
Google

PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER · Question #80

You are configuring role-based data access controls for two groups of users in Google Security Operations (SecOps). Group A requires access to all data, and Group B requires access to all data…

The correct answer is D. Create a new data access scope in the Google SecOps SIEM settings to allow access to all data E. Create a new data access scope in the Google SecOps SIEM settings to allow access to all data. Create a data access scope in SecOps SIEM to allow Group A access to all data, and assign it via IAM. This ensures Group A has full visibility. Create a data access scope that allows Group B to access all data except the "restricted" namespace, and assign it via IAM. Data…

Data Access Controls and Role-Based Access

Question

You are configuring role-based data access controls for two groups of users in Google Security Operations (SecOps). Group A requires access to all data, and Group B requires access to all data except data from the "restricted" namespace. You need to configure access for these two groups. What should you do? (Choose two.)

Options

  • ACreate a custom label with a UDM query to include all labels for Group A. Assign this data label to
  • BCreate a custom label with a UDM query to include all data except the "restricted" namespace
  • CCreate a new data access scope to allow access to the "restricted" namespace data for Group A.
  • DCreate a new data access scope in the Google SecOps SIEM settings to allow access to all data
  • ECreate a new data access scope in the Google SecOps SIEM settings to allow access to all data

How the community answered

(36 responses)
  • A
    17% (6)
  • B
    8% (3)
  • C
    3% (1)
  • D
    72% (26)

Explanation

Create a data access scope in SecOps SIEM to allow Group A access to all data, and assign it via IAM. This ensures Group A has full visibility. Create a data access scope that allows Group B to access all data except the "restricted" namespace, and assign it via IAM. Data access scopes in SecOps control what data each group can view, enabling precise role-based access control.

Topics

#data access scope#RBAC#namespace restrictions#Google SecOps SIEM

Community Discussion

No community discussion yet for this question.

Full PROFESSIONAL-SECURITY-OPERATIONS-ENGINEER Practice