Security Best Practices in Google Cloud Week 3 Quiz Answer

 Security Best Practices in Google Cloud Week 3 Quiz Answer


Security Best Practices in Google Cloud 
Week 3 Quiz Answer



Question 1)

Which TWO of the following statements are TRUE when discussing Cloud Storage and IAM permissions?


  •  A user needs permission from both IAM or an ACL in order to access a bucket or object.
  •  Access can be granted to Cloud Storage at the organization, folder, project, or bucket levels.
  •  It is possible to remove a permission from a lower level that was granted at a higher level.
  •  Using IAM permissions alone gives you control over your projects and buckets, but does not give control over individual objects.




Question 2)

Which TWO of the following statements are TRUE when discussing storage and BigQuery best practices?


  •  BigQuery data can be adequately secured using the default primitive roles available in Google Cloud.
  •  Do not use any personally identifiable information as object names.
  •  One option to serve content securely to outside users is to use signed URLs.
  •  In most cases, you should use Access Control Lists (ACLs) instead of IAM permissions.




Question 3)

Which TWO of the following statements is TRUE with regards to security in BigQuery and its datasets?


  •  Using IAM, you can grant users granular permissions to BigQuery tables, rows and columns.
  •  A BigQuery Authorized View allows administrators to restrict users to viewing only subsets of a dataset.
  •  It is always better to assign BigQuery roles to individuals as this will help to lower operational overhead.
  •  BigQuery has its own list of assignable IAM roles.


Post a Comment