QuestionQ222
Designing for security and complianceYour company has a Google Cloud project that uses BigQuery for data warehousing. The VPN tunnel between the on-premises environment and Google Cloud is configured with Cloud VPN. Your security team wants to prevent data exfiltration by malicious insiders, compromised code, and accidental oversharing. What should you do?
- A Configure Private Service Connect.
- B Configure VPC Service Controls and configure Private Google Access for on-promises hosts.
- C Create a service account, grant the BigQuery JobUser role and Storage Object Viewer role to the service account, and remove all other Identity and Access Management (IAM) access from the project.
- D Configure Private Google Access.
Community Discussion