Professional Cloud Security Engineer
Prepare and test your skills
Prepare and test your skills
Worked example. The correct answer is already marked and every option is explained below, so there is nothing to select here. To answer questions yourself, start the free trial.
An enterprise is refactoring its security architecture on Google Cloud to adhere to the principle of least privilege and strict separation of duties. Currently, developers run automated deployment pipelines and scheduled tasks using their personal corporate user accounts, which requires assigning them broad, standing permissions. Furthermore, developers have generated and downloaded service account JSON keys to authenticate external CI/CD runners, and they occasionally impersonate service accounts directly in production to resolve urgent incidents.
The security engineering team has established the following mandatory requirements:
Which strategy should the security engineer implement to satisfy these requirements?
Keep the momentum going with these hand-picked practice scenarios
Want more questions like this?
Get a free certification question every week.