exam questions

Exam Professional Cloud Architect All Questions

View all questions & answers for the Professional Cloud Architect exam

Exam Professional Cloud Architect topic 1 question 156 discussion

Actual exam question from Google's Professional Cloud Architect
Question #: 156
Topic #: 1
[All Professional Cloud Architect Questions]

Your company has a Google Cloud project that uses BigQuery for data warehousing. They have a VPN tunnel between the on-premises environment and Google
Cloud that is configured with Cloud VPN. The security team wants to avoid data exfiltration by malicious insiders, compromised code, and accidental oversharing.
What should they do?

  • A. Configure Private Google Access for on-premises only.
  • B. Perform the following tasks: 1. Create a service account. 2. Give the BigQuery JobUser role and Storage Reader role to the service account. 3. Remove all other IAM access from the project.
  • C. Configure VPC Service Controls and configure Private Google Access.
  • D. Configure Private Google Access.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Craigenator
Highly Voted 2 years, 7 months ago
Without the discussion this site would be useless, many thanks to all that participate. Majority of answers are wrong...
upvoted 72 times
VarunGo
1 year ago
you can used chatGPT now
upvoted 3 times
Murtuza
9 months ago
Then you are definitely bound to fail :-)
upvoted 11 times
...
...
...
diaga2
Highly Voted 2 years, 9 months ago
C is the recommended one https://cloud.google.com/vpc-service-controls/docs/overview
upvoted 31 times
...
squishy_fishy
Most Recent 6 months, 2 weeks ago
Correct answer is C. Security benefits of VPC Service Controls Access from unauthorized networks using stolen credentials Data exfiltration by malicious insiders or compromised code https://cloud.google.com/vpc-service-controls/docs/overview#benefits
upvoted 2 times
...
thewalker
7 months, 3 weeks ago
Selected Answer: C
VPC Service Controls is required to stop data exfiltration. Hence C
upvoted 2 times
...
tamj123
8 months, 2 weeks ago
C, VPC Service controls is need for the solution
upvoted 1 times
...
Mrinalini19
1 year, 4 months ago
Selected Answer: C
C is correct
upvoted 1 times
...
examch
1 year, 5 months ago
Selected Answer: C
C is the correct answer, To secure data from exfiltration by malicious insiders, compromised code or accidental oversharing, we use VPC Service controls https://cloud.google.com/vpc-service-controls/docs/overview For private access options, connect to services in VPC networks we use private service endpoints or VPC network peering. https://cloud.google.com/vpc/docs/private-access-options#connect-services
upvoted 2 times
...
surajkrishnamurthy
1 year, 6 months ago
Selected Answer: C
C is the correct answer
upvoted 2 times
...
megumin
1 year, 7 months ago
Selected Answer: C
C is ok
upvoted 2 times
...
Mahmoud_E
1 year, 8 months ago
Selected Answer: C
C is the right answer
upvoted 1 times
...
AzureDP900
1 year, 8 months ago
I will go with C
upvoted 1 times
...
nkit
2 years, 2 months ago
Selected Answer: C
Going by definition- VPC Service Controls improves your ability to mitigate the risk of data exfiltration from Google Cloud services such as Cloud Storage and BigQuery. hence C is correct
upvoted 7 times
...
dangcpped
2 years, 2 months ago
Selected Answer: C
C is the recommended https://cloud.google.com/vpc-service-controls/docs/overview
upvoted 2 times
...
kimharsh
2 years, 4 months ago
I don't get it , C is correct because of the "VPC service Control", But Privet Google access is not for on On-premises, A is for On-premises = https://cloud.google.com/vpc/docs/private-access-options
upvoted 2 times
...
OrangeTiger
2 years, 5 months ago
Selected Answer: C
I agree C. The link that wroted in Reveral Solution means C.
upvoted 1 times
...
vincy2202
2 years, 6 months ago
Selected Answer: C
C is the correct answer https://cloud.google.com/vpc-service-controls/docs/overview
upvoted 2 times
...
sapsant
2 years, 7 months ago
Selected Answer: C
https://cloud.google.com/vpc-service-controls/docs/overview
upvoted 2 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago