
Answer-first summary for fast verification
Answer: Create a Google Group per department and add all department members to their respective groups. Create a folder per department and grant the respective group the required IAM permissions at the folder level. Add the projects under the respective folders.
The correct answer is B. Creating a Google Group for each department and adding all department members to their respective groups simplifies user management. By creating a folder per department and granting the respective group the required IAM permissions at the folder level, you minimize administrative overhead and maintain a structured approach to permissions management. This method allows for clear visibility and control over IAM permissions as projects start and end, aligning with Google-recommended practices for resource management and IAM configuration.
Author: LeetQuiz Editorial Team
Ultimate access to all questions.
As the administrator responsible for managing the Google Cloud environment in your company, you need to ensure that multiple departments have access to their own projects. Each department's members share the same project responsibilities, and it's crucial to maintain minimal administrative effort and clear visibility of IAM permissions, especially as projects start and end. You aim to follow Google's best practices for IAM management. What should you do?
A
Grant all department members the required IAM permissions for their respective projects.
B
Create a Google Group per department and add all department members to their respective groups. Create a folder per department and grant the respective group the required IAM permissions at the folder level. Add the projects under the respective folders.
C
Create a folder per department and grant the respective members of the department the required IAM permissions at the folder level. Structure all projects for each department under the respective folders.
D
Create a Google Group per department and add all department members to their respective groups. Grant each group the required IAM permissions for their respective projects.
No comments yet.