Pre-Summer Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: validbest

Exam Professional-Cloud-Security-Engineer All Questions
Exam Professional-Cloud-Security-Engineer All Questions

View all questions & answers for the Professional-Cloud-Security-Engineer exam

Google Cloud Certified Professional-Cloud-Security-Engineer Question # 81 Topic 9 Discussion

Professional-Cloud-Security-Engineer Exam Topic 9 Question 81 Discussion:
Question #: 81
Topic #: 9

You are a member of your company's security team. You have been asked to reduce your Linux bastion host external attack surface by removing all public IP addresses. Site Reliability Engineers (SREs) require access to the bastion host from public locations so they can access the internal VPC while off-site. How should you enable this access?


A.

Implement Cloud VPN for the region where the bastion host lives.


B.

Implement OS Login with 2-step verification for the bastion host.


C.

Implement Identity-Aware Proxy TCP forwarding for the bastion host.


D.

Implement Google Cloud Armor in front of the bastion host.


Get Premium Professional-Cloud-Security-Engineer Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.