🔥 40% Off Crucial Exams Memberships — Deal ends today!

1 hour, 53 minutes remaining!

GCP Professional Cloud Security Engineer Practice Question

Your company hosts an internal admin UI on Compute Engine VMs behind an external HTTP(S) load balancer. You must expose the UI to selected contractors who use their own Google Workspace identities, but block everyone else-including employees-unless their device meets company policies and the request is made during business hours. You want to avoid deploying a VPN, modifying application code, or distributing client certificates. Which Google Cloud feature provides the most appropriate control?

  • Private Service Connect endpoint for the service, restricted through IAM permissions

  • Cloud Armor security policy using custom rules and threat-intelligence-based blocking

  • VPC firewall rules that allow ingress only from approved source IP ranges and target tags

  • Identity-Aware Proxy with context-aware access levels bound to the load balancer's backend service

GCP Professional Cloud Security Engineer
Securing communications and establishing boundary protection
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot