Intrigued by the art of cloud architecture? Discover how to design, develop, and manage robust, secure, scalable, and dynamic solutions on Google Cloud as you prepare for the Professional Cloud Architect exam!
Prepare and test your skills
Prepare and test your skills
Worked example. The correct answer is already marked and every option is explained below, so there is nothing to select here. To answer questions yourself, start the free trial.
An enterprise is designing a secure cloud architecture on Google Cloud across multiple projects. The architecture utilizes a Shared VPC where compute workloads deployed in a service project interact with managed Google Cloud APIs. The security team establishes the following requirements:
Which solution should you implement?
VPC Service Controls establishes an isolation perimeter around Google Cloud resources to prevent unauthorized access and mitigate data exfiltration risks. Access Context Manager allows administrators to define fine-grained, context-aware access levels based on attributes such as client IP subnets, device policy, and user identity, which can then be bound directly to VPC Service Controls service perimeters.
This solution natively addresses both cross-project networking constraints in Shared VPC deployments and the operational requirement of console management from verified enterprise networks without weakening perimeter isolation.
Keep the momentum going with these hand-picked practice scenarios
Want more questions like this?
Get a free certification question every week.