Professional Cloud Security Engineer
Prepare and test your skills
Prepare and test your skills
Worked example. The correct answer is already marked and every option is explained below, so there is nothing to select here. To answer questions yourself, start the free trial.
A security engineer is designing an organization policy rollout across an enterprise Google Cloud resource hierarchy consisting of top-level folders for Production, Development, and Public-Facing Web. The rollout must satisfy two primary requirements:
Public-Facing Web folder hosting a public static website.Which strategy should the security engineer implement to achieve these requirements?
This strategy leverages Google Cloud Organization Policy inheritance rules alongside pre-enforcement compliance validation using Policy Simulator to deploy both managed and custom constraints safely at scale.
storage.publicAccessPrevention at the organization root sets a universal security baseline that automatically inherits down through all folders and descendant projects.UPDATE operation attempting to fix one field will fail because another restricted field remains non-compliant, causing an update deadlock.Keep the momentum going with these hand-picked practice scenarios
Want more questions like this?
Get a free certification question every week.