🔥 40% Off Crucial Exams Memberships — Deal ends today!

1 hour, 51 minutes remaining!

GCP Professional Cloud Security Engineer Practice Question

Your company protects BigQuery and Cloud Storage with a VPC Service Controls perimeter that encloses three Google Cloud projects.

Interactive access must meet these rules:

  • Employees on-site can reach the protected services from any device when traffic originates from 203.0.113.0/24.
  • Remote partner engineers must come from 198.51.100.0/24 and use company-issued ChromeOS laptops that pass Verified Access.
  • All other requests must be blocked.

Following Google-recommended practices and keeping the configuration as simple as possible, how should you implement the required policy?

  • Create one basic Access Level that lists both subnets and adds a device policy requiring Chrome Verified Access, then attach it to the perimeter.

  • Use a perimeter ingress rule to allow both subnets and rely on IAM Conditions to enforce device compliance for partner engineers.

  • Create two Access Levels: a basic level for 203.0.113.0/24 with no device checks, and a custom CEL level for 198.51.100.0/24 that also requires Chrome Verified Access. Attach both levels to the perimeter.

  • Create a single custom (CEL) Access Level that allows requests when either source subnet matches or the device passes Chrome Verified Access, then attach it to the perimeter.

GCP Professional Cloud Security Engineer
Securing communications and establishing boundary protection
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot