
Answer-first summary for fast verification
Answer: Enable and then review the Data Access audit logs.
A. Incorrect. Admin Activity audit logs do not show who is reading and writing the objects. B. Correct. Data Access audit logs have to be specifically enabled first, because they could generate a lot of logs for all reads and writes. C. Incorrect. Routing Admin Activity audit logs to BigQuery for analysis will not help because they will not show who is reading and writing the objects. D. Incorrect. Changing permissions will restrict usage; however, you won't be able to discover who is currently accessing the objects.
Author: LeetQuiz Editorial Team
Ultimate access to all questions.
No comments yet.
A manager at Cymbal Retail expresses concern about unauthorized access to objects in your Cloud Storage bucket. You need to evaluate all access on all objects in the bucket.
A
Review the Admin Activity audit logs
B
Enable and then review the Data Access audit logs.
C
Route the Admin Activity logs to a BigQuery sink and analyze the logs with SQL queries
D
Change the permissions on the bucket to only trusted employees