Associate-Cloud-Engineer Exam Question 66

Your company uses a large number of Google Cloud services centralized in a single project. All teams have specific projects for testing and development. The DevOps team needs access to all of the production services in order to perform their job. You want to prevent Google Cloud product changes from broadening their permissions in the future. You want to follow Google-recommended practices. What should you do?
  • Associate-Cloud-Engineer Exam Question 67

    You want to verify the IAM users and roles assigned within a GCP project named my-project. What should you do?
  • Associate-Cloud-Engineer Exam Question 68

    You have a development project with appropriate IAM roles defined. You are creating a production project and want to have the same IAM roles on the new project, using the fewest possible steps. What should you do?
  • Associate-Cloud-Engineer Exam Question 69

    You are hosting an application on bare-metal servers in your own data center. The application needs access to Cloud Storage. However, security policies prevent the servers hosting the application from having public IP addresses or access to the internet. You want to follow Google-recommended practices to provide the application with access to Cloud Storage. What should you do?
  • Associate-Cloud-Engineer Exam Question 70

    Your company has a single sign-on (SSO) identity provider that supports Security Assertion Markup Language (SAML) integration with service providers. Your company has users in Cloud Identity. You would like users to authenticate using your company's SSO provider. What should you do?