🔥 40% Off Crucial Exams Memberships — Deal ends today!

1 hour, 26 minutes remaining!

GCP Professional Cloud Security Engineer Practice Question

Your organization is tightening identity controls for a new deployment pipeline. One stage runs entirely in GitHub Actions and must push container images to Artifact Registry in a Google Cloud project. Other stages are performed by engineers who log into the Google Cloud console with their workforce identities. To minimize the attack surface and follow Google Cloud guidance, which stage definitively requires a Google Cloud service account to obtain credentials?

  • The GitHub Actions workflow that pushes images to Artifact Registry.

  • All stages should authenticate with the same shared service account.

  • Engineers logging into the Google Cloud console to view logs.

  • Engineers logging into the Google Cloud console to update IAM policies.

GCP Professional Cloud Security Engineer
Configuring Access
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot