Google Cloud Certified - Professional Cloud Security Engineer Professional-Cloud-Security-Engineer Question # 29 Topic 3 Discussion

Google Cloud Certified - Professional Cloud Security Engineer Professional-Cloud-Security-Engineer Question # 29 Topic 3 Discussion

Professional-Cloud-Security-Engineer Exam Topic 3 Question 29 Discussion:
Question #: 29
Topic #: 3

You run applications on Cloud Run. You already enabled container analysis for vulnerability scanning. However, you are concerned about the lack of control on the applications that are deployed. You must ensure that only trusted container images are deployed on Cloud Run.

What should you do?

Choose 2 answers


A.

Enable Binary Authorization on the existing Kubernetes cluster.


B.

Set the organization policy constraint constraints/run. allowedBinaryAuthorizationPolicie to

the list of allowed Binary Authorization policy names.


C.

Set the organization policy constraint constraints/compute.trustedimageProjects to the list of

protects that contain the trusted container images.


D.

Enable Binary Authorization on the existing Cloud Run service.


E.

Use Cloud Run breakglass to deploy an image that meets the Binary Authorization policy by default.


Get Premium Professional-Cloud-Security-Engineer Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.