Professional Cloud Security Engineer
Prepare and test your skills
Prepare and test your skills
Worked example. The correct answer is already marked and every option is explained below, so there is nothing to select here. To answer questions yourself, start the free trial.
A security engineer is evaluating IAM access across an organization's resource hierarchy structured as follows:
Finance-Deptfin-analytics-prod (child of Finance-Dept)fin-audit-logs (located inside fin-analytics-prod)The following IAM allow policies are currently configured:
Finance-Dept Folder level, the principal auditor@example.com is granted the Storage Admin (roles/storage.admin) role.fin-analytics-prod Project level, auditor@example.com is granted the Storage Object Viewer (roles/storage.objectViewer) role.fin-audit-logs Bucket level, a local administrator attempts to restrict access by granting auditor@example.com only the Storage Object Creator (roles/storage.objectCreator) role.What is the effective permission state of auditor@example.com on the fin-audit-logs bucket, and why?
Keep the momentum going with these hand-picked practice scenarios
Want more questions like this?
Get a free certification question every week.