Professional Cloud Security Engineer
Prepare and test your skills
Prepare and test your skills
Worked example. The correct answer is already marked and every option is explained below, so there is nothing to select here. To answer questions yourself, start the free trial.
A financial enterprise is designing an authorization model in Google Cloud to meet strict compliance mandates for privileged activity logging, emergency break-glass procedures, and separation of duties across production environments.
The security architecture team has defined the following requirements:
Which authorization strategy should the security engineer implement to satisfy these requirements?
Privileged Access Manager (PAM) is a Google Cloud service designed to implement just-in-time (JIT), time-bound privilege elevation with integrated approval workflows, justification enforcement, and comprehensive audit trails.
approval from a select set of principals is optional), allowing authorized SREs to request and immediately activate emergency access while still requiring an operational justification for post-incident auditability.Keep the momentum going with these hand-picked practice scenarios
Want more questions like this?
Get a free certification question every week.