Pre-Winter Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: pass65

Google Cloud Certified - Professional Cloud Security Engineer Professional-Cloud-Security-Engineer Question # 2 Topic 1 Discussion

Google Cloud Certified - Professional Cloud Security Engineer Professional-Cloud-Security-Engineer Question # 2 Topic 1 Discussion

Professional-Cloud-Security-Engineer Exam Topic 1 Question 2 Discussion:
Question #: 2
Topic #: 1

Your organization has an application hosted in Cloud Run. You must control access to the application by using Cloud Identity-Aware Proxy (IAP) with these requirements:

Only users from the AppDev group may have access.

Access must be restricted to internal network IP addresses.

What should you do?


A.

Configure IAP to enforce multi-factor authentication (MFA) for all users and use network intrusion detection systems (NIDS) to block unauthorized access attempts.


B.

Configure firewall rules to limit access to IAP based on the AppDev group and source IP addresses.


C.

Create an access level that includes conditions for internal IP address ranges and AppDev groups. Apply this access level to the application's IAP policy.


D.

Deploy a VPN gateway and instruct the AppDev group to connect to the company network before accessing the application.


Get Premium Professional-Cloud-Security-Engineer Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.