Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Google Exam Professional Cloud DevOps Engineer Topic 1 Question 88 Discussion

Actual exam question for Google's Professional Cloud DevOps Engineer exam
Question #: 88
Topic #: 1
[All Professional Cloud DevOps Engineer Questions]

Your company's security team needs to have read-only access to Data Access audit logs in the _Required bucket You want to provide your security team with the necessary permissions following the principle of least privilege and Google-recommended practices. What should you do?

Show Suggested Answer Hide Answer
Suggested Answer: B, E

Contribute your Thoughts:

Option A is the way to go! Assigning the roles/logging.viewer role to each team member is the simplest and most straightforward approach.
upvoted 0 times
...
Kizzy
10 days ago
Hmm, I'm not sure about this one. Shouldn't we be using the roles/logging.viewer role instead of the privateLogViewer role? I'm a bit confused.
upvoted 0 times
...
Gene
14 days ago
Option D seems like the correct answer to me. Assigning the privateLogViewer role to a group ensures that the security team has the necessary read-only access.
upvoted 0 times
...
Maryann
16 days ago
I think option B is the way to go. Assigning the role to a group makes it easier to manage permissions and follows the principle of least privilege.
upvoted 0 times
...
Peggie
18 days ago
I prefer assigning the roles/logging.viewer role to a group with all the security team members. It's more efficient.
upvoted 0 times
...
Yolando
20 days ago
I agree with Davida. It's important to follow the principle of least privilege.
upvoted 0 times
...
Davida
25 days ago
I think we should assign the roles/logging.viewer role to each member of the security team.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77