Google Cloud Certified - Professional Cloud Security Engineer Professional-Cloud-Security-Engineer Question # 63 Topic 7 Discussion

Google Cloud Certified - Professional Cloud Security Engineer Professional-Cloud-Security-Engineer Question # 63 Topic 7 Discussion

Professional-Cloud-Security-Engineer Exam Topic 7 Question 63 Discussion:
Question #: 63
Topic #: 7

Your Google Cloud organization allows for administrative capabilities to be distributed to each team through provision of a Google Cloud project with Owner role (roles/ owner). The organization contains thousands of Google Cloud Projects Security Command Center Premium has surfaced multiple cpen_myscl_port findings. You are enforcing the guardrails and need to prevent these types of common misconfigurations.

What should you do?


A.

Create a firewall rule for each virtual private cloud (VPC) to deny traffic from 0 0 0 0/0 with priority 0.


B.

Create a hierarchical firewall policy configured at the organization to deny all connections from 0 0 0 0/0.


C.

Create a Google Cloud Armor security policy to deny traffic from 0 0 0 0/0.


D.

Create a hierarchical firewall policy configured at the organization to allow connections only from internal IP ranges


Get Premium Professional-Cloud-Security-Engineer Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.