Professional Cloud Security Engineer
Prepare and test your skills
Prepare and test your skills
Worked example. The correct answer is already marked and every option is explained below, so there is nothing to select here. To answer questions yourself, start the free trial.
An enterprise security architect is designing a multi-project network topology in Google Cloud using Shared VPC. The organization requires strict separation of duties, resource isolation, and centralized network governance between the central cloud infrastructure team and individual application development teams.
The design must meet the following requirements:
service-project-a must only be able to deploy Compute Engine virtual machines and internal load balancers into an assigned subnet (subnet-app-prod) in us-central1.subnet-management or subnet-app-dev) and must not have permissions to modify host network security policies.Which IAM role delegation strategy should the architect implement?
Keep the momentum going with these hand-picked practice scenarios
Want more questions like this?
Get a free certification question every week.