exam questions

Exam Cloud Digital Leader All Questions

View all questions & answers for the Cloud Digital Leader exam

Exam Cloud Digital Leader topic 1 question 222 discussion

Actual exam question from Google's Cloud Digital Leader
Question #: 222
Topic #: 1
[All Cloud Digital Leader Questions]

How does the resource hierarchy in Google Cloud help organizations implement security policies?

  • A. Policies can be applied at the folder level and are inherited by projects inside the folder.
  • B. Projects in the resource hierarchy are not affected by security policies.
  • C. Policies can only be applied at the organization level and affect all projects.
  • D. Policies can only be applied to individual projects.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
joshnort
12 hours, 34 minutes ago
Selected Answer: A
A. Policies can be applied at the folder level and are inherited by projects inside the folder. Here's an explanation: In Google Cloud, the resource hierarchy is structured as follows: Organization → Folders → Projects → Resources. This hierarchical structure enables organizations to implement security policies at various levels, and those policies are inherited by resources lower in the hierarchy. Policies (such as Identity and Access Management (IAM) policies, organization policies, etc.) can be applied at the organization level, folder level, or project level. When applied at the folder level, the policies automatically apply to all projects within that folder, simplifying policy management across multiple projects.
upvoted 1 times
joshnort
12 hours, 33 minutes ago
Why the other options are incorrect: B. Projects in the resource hierarchy are not affected by security policies. This is incorrect. Projects can indeed be affected by security policies, especially if the policies are applied at higher levels (organization or folder level) and inherited by projects. C. Policies can only be applied at the organization level and affect all projects. This is incorrect. While policies can be applied at the organization level, they can also be applied at the folder or project level. Policies applied at the organization level can propagate down to all resources, but policies can also be more granularly applied at other levels. D. Policies can only be applied to individual projects. This is incorrect. Policies can be applied at the organization, folder, or project level, and can be inherited by resources at lower levels. Thus, A is the correct answer because it describes the ability to apply policies at the folder level, which are then inherited by the projects inside that folder.
upvoted 1 times
...
...
shanwford
1 month, 2 weeks ago
Selected Answer: A
Take care of the word "only" in C & D - so A is fine.
upvoted 3 times
...
Vivek007
2 months, 2 weeks ago
A: Inheritance in the Resource Hierarchy: In Google Cloud's resource hierarchy, security policies can be applied at various levels, including the organization, folder, and project levels. A key aspect of this hierarchy is the inheritance of policies. When a policy is applied at the folder level, all projects and resources within that folder automatically inherit the policy. This feature simplifies security management by allowing organizations to apply broad policies at higher levels (like folders) and have them cascade down to all contained resources and projects. This hierarchical policy management ensures that all underlying resources comply with the organization's security protocols without the need to configure each project individually.
upvoted 3 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago