Trang chủ Professional Data Engineer 313 / 343
Quay lại bộ đề
Question #313 Topic 1
Your company uses separate Google Cloud projects for development, staging, and production. Developers need edit access in the development project, read-only access in the staging project, and no access in the production project. You need an effective and manageable solution to assign and enforce these permissions according to Google-recommended practices. What should you do?
A
Create separate VPC Service Controls perimeters for each project and use access levels.
B
Grant individual developers specific IAM roles directly on each project.
C
Configure firewall rules within each project’s VPC to block traffic from unauthorized developer machines.
D
Create Google Groups for access levels, assign developers to groups, and grant the groups the appropriate IAM roles on each project.