exam questions

Exam Professional Cloud Security Engineer All Questions

View all questions & answers for the Professional Cloud Security Engineer exam

Exam Professional Cloud Security Engineer topic 1 question 69 discussion

Actual exam question from Google's Professional Cloud Security Engineer
Question #: 69
Topic #: 1
[All Professional Cloud Security Engineer Questions]

An organization is evaluating the use of Google Cloud Platform (GCP) for certain IT workloads. A well-established directory service is used to manage user identities and lifecycle management. This directory service must continue for the organization to use as the `source of truth` directory for identities.
Which solution meets the organization's requirements?

  • A. Google Cloud Directory Sync (GCDS)
  • B. Cloud Identity
  • C. Security Assertion Markup Language (SAML)
  • D. Pub/Sub
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
desertlotus1211
Highly Voted 3 years, 1 month ago
The answer is A: With Google Cloud Directory Sync (GCDS), you can synchronize the data in your Google Account with your Microsoft Active Directory or LDAP server. GCDS doesn't migrate any content (such as email messages, calendar events, or files) to your Google Account. You use GCDS to synchronize your Google users, groups, and shared contacts to match the information in your LDAP server. The questions says the well established directory service is the 'source of truth' not GCP... So LDAP or AD is the source... GCDS will sync that to match those, not replace them...
upvoted 17 times
AzureDP900
1 year, 5 months ago
Agreed
upvoted 2 times
...
...
subhala
Highly Voted 3 years, 5 months ago
GCDS -? It helps sync up from the source of truth (any IdP like ldap, AD) to Google identity. In this scenario, the question is what can be a good identity service by itself, hence B is the right answer.
upvoted 12 times
desertlotus1211
8 months ago
The question inplies the company has a directory as the soruce of truth and want to maintain that in GCP... GCDS will make sure that occurs too Cloud Identity. It's not askling for a replacement of LDAP/AD.
upvoted 2 times
...
...
ArizonaClassics
Most Recent 7 months, 2 weeks ago
Google Cloud Directory Sync (GCDS): GCDS is a tool used to synchronize your Google Workspace user data with your Microsoft Active Directory or other LDAP servers. This would ensure that Google Workspace has the same user data as your existing directory, but it doesn't act as an identity provider (IDP). BUT C. Security Assertion Markup Language (SAML): SAML is an open standard for exchanging authentication and authorization data between an identity provider (your organization's existing directory service) and a service provider (like GCP). With SAML, GCP can rely on your existing directory service for authentication, and your existing directory remains the "source of truth."
upvoted 2 times
...
PST21
1 year, 4 months ago
Orgn is evaluating GC so cloud Identity is the GC product hence B
upvoted 1 times
...
AwesomeGCP
1 year, 6 months ago
Selected Answer: A
A. Google Cloud Directory Sync (GCDS)
upvoted 4 times
...
cloudprincipal
1 year, 10 months ago
Selected Answer: A
With Google Cloud Directory Sync (GCDS), you can synchronize the data in your Google Account with your Microsoft Active Directory or LDAP server. GCDS doesn't migrate any content (such as email messages, calendar events, or files) to your Google Account. You use GCDS to synchronize your Google users, groups, and shared contacts to match the information in your LDAP server. https://support.google.com/a/answer/106368?hl=en
upvoted 3 times
...
szl0144
1 year, 11 months ago
B should be the answer, GCDS is for ad sync.
upvoted 2 times
MariaGabiGabriela
1 year, 10 months ago
Yes, but identity by itself will solve nothing, the user would have to recreate all users and thus have a different IDP, this clearly goes against the question
upvoted 2 times
...
...
Bill831231
2 years, 4 months ago
seems there is nothing metioned about what they have on premise, so B is better
upvoted 1 times
...
syllox
2 years, 11 months ago
Answer A
upvoted 3 times
...
WakandaF
3 years ago
A or B?
upvoted 2 times
...
DebasishLowes
3 years, 1 month ago
Ans : B as per the question.
upvoted 1 times
...
asee
3 years, 2 months ago
My Answer will go for A (GCDS), noticed the question is mentioning about "A directory service 'is used' " / "must continue" instead of "A directory service 'will be used' ". So here my understanding is the organization has already using their own directory service. Therefore Answer B - Cloud identity may not be an option.
upvoted 4 times
...
KWatHK
3 years, 3 months ago
Ans is B because the questions said "the well-established directory must continue for the orgnanization to use as the source of truth" so that the user access to GCP must authenticated by the existing directory. Cloud Identity support to federate it to 3rd party/ADFS using SAML.
upvoted 1 times
...
mikelabs
3 years, 5 months ago
GCDS is an app to sync users, groups and other features from AD to Cloud Identity. But, in this question, the customer needs to know what's the product on GCP that meet with this. So, I thiink the answer is B.
upvoted 8 times
...
[Removed]
3 years, 6 months ago
Ans - A
upvoted 3 times
...
ownez
3 years, 7 months ago
GCDS is a part of CI's feature that synchronizes the data in Google domain to match with AD/LDAP server. This includes users, groups contacts etc are synchronized/migrated to match. Hence, I would go B. "https://se-cloud-experts.com/wp/wp-content/themes/se-it/images/pdf/google-cloud-identity-services.pdf"
upvoted 3 times
ownez
3 years, 7 months ago
Sorry. It's A.
upvoted 2 times
...
...
bogdant
3 years, 8 months ago
Isn't it A?
upvoted 2 times
MohitA
3 years, 7 months ago
Agree A
upvoted 4 times
...
Sheeda
3 years, 7 months ago
That is used to sync, not the directly itself
upvoted 1 times
Fellipo
3 years, 5 months ago
A well-established directory service , so "A"
upvoted 2 times
...
...
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago