Question 92 of 318
Single answerYou are part of a security team that wants to ensure that a Cloud Storage bucket in Project A can only be readable from Project B. You also want to ensure that data in the Cloud Storage bucket cannot be accessed from or copied to Cloud Storage buckets outside the network, even if the user has the correct credentials.
What should you do?
What should you do?
✓AEnable VPC Service Controls, create a perimeter with Project A and B, and include Cloud Storage service.
BEnable Domain Restricted Sharing Organization Policy and Bucket Policy Only on the Cloud Storage bucket.
CEnable Private Access in Project A and B networks with strict firewall rules to allow communication between the networks.
DEnable VPC Peering between Project A and B networks with strict firewall rules to allow communication between the networks.
✓
Correct Answer: A
Enable VPC Service Controls, create a perimeter with Project A and B, and include Cloud Storage service.
▥
Explanation
The correct answer is highlighted above. Review the wording carefully, then use the next question to continue building your understanding of Google certification topics.