Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Exam Professional-Cloud-Security-Engineer All Questions
Exam Professional-Cloud-Security-Engineer All Questions

View all questions & answers for the Professional-Cloud-Security-Engineer exam

Google Cloud Certified Professional-Cloud-Security-Engineer Question # 53 Topic 6 Discussion

Professional-Cloud-Security-Engineer Exam Topic 6 Question 53 Discussion:
Question #: 53
Topic #: 6

You need to enforce a security policy in your Google Cloud organization that prevents users from exposing objects in their buckets externally. There are currently no buckets in your organization. Which solution should you implement proactively to achieve this goal with the least operational overhead?


A.

Create an hourly cron job to run a Cloud Function that finds public buckets and makes them private.


B.

Enable the constraints/storage.publicAccessPrevention constraint at the organization level.


C.

Enable the constraints/storage.uniformBucketLevelAccess constraint at the organization level.


D.

Create a VPC Service Controls perimeter that protects the storage.googleapis.com service in your projects that contains buckets. Add any new project that contains a bucket to the perimeter.


Get Premium Professional-Cloud-Security-Engineer Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.