Professional Cloud Security Engineer
Prepare and test your skills
Prepare and test your skills
Worked example. The correct answer is already marked and every option is explained below, so there is nothing to select here. To answer questions yourself, start the free trial.
An enterprise is deploying an AI agent runtime on Google Cloud that must securely query third-party external tool APIs across the internet. The agent workloads are hosted in a private VPC subnet without external IP addresses.
To control and monitor outbound connections, all agent traffic to external APIs is routed through an Internal Application Load Balancer with internet Network Endpoint Groups (internet NEGs). The external API providers require all incoming API requests to originate from a known, dedicated set of allowlisted public IP addresses.
Which network architecture configuration should the security engineer implement to satisfy these requirements?
Keep the momentum going with these hand-picked practice scenarios
Want more questions like this?
Get a free certification question every week.