Security Best Practices in Google Cloud Quiz Answer Coursera
About this Course
This self-paced training course gives participants a broad study of security controls and techniques on Google Cloud. Through recorded lectures, demonstrations, and hands-on labs, participants explore and deploy the components of a secure Google Cloud solution, including Cloud Storage access control technologies, Security Keys, Customer-Supplied Encryption Keys, API access controls, scoping, shielded VMs, encryption, and signed URLs. It also covers securing Kubernetes environments.
This course is part of multiple programs
This course can be applied to multiple Specializations or Professional Certificates programs. Completing this course will count towards your learning in any of the following programs:
- Security in Google Cloud Specialization
- Preparing for Google Cloud Certification: Cloud Security Engineer Professional Certificate
WHAT YOU WILL LEARN
- Apply techniques and best practices to secure Compute Engine
- Apply techniques and best practices to secure cloud data
- Apply techniques and best practices to secure applications
- Apply techniques and best practices to secure Kubernetes
Go to this Course
Week 2)
Practices Quiz Answer
Question 1)
Which of the following TWO statements about Google Cloud service accounts are TRUE?
- Service accounts are a type of identity
- VMs without service accounts cannot run APIs.
- Custom service accounts use “scopes” to control API access.
- Virtual Machine (VM) instances use service accounts to run API requests on your behalf.
Question 2)
Which TWO recommendations below ARE considered to be Compute Engine “best practices?”
- Utilize projects and IAM roles to control access to your VMs.
- Always run critical VMs with default, scope-based service accounts.
- Cloud Interconnect or Cloud VPN can be used to securely extend your data center network into Google Cloud projects.
- Hardened custom images, once added to your Organization’s resources, are then maintained by Google with automatic security patches and other updates.
Question 3)
Which TWO of the following statements is TRUE when discussing the Organization Policy Service?
- Descendants of a targeted resource do not inherit the parent’s Organization Policy.
- Organization Policy Services allow centralized control for how your organization’s resources can be used.
- To define an Organization Policy, you will choose and then define a constraint against either a Google Cloud service or a group of Google Cloud services.

Post a Comment
Post a Comment