
Ultimate access to all questions.
Your security team wants to mitigate the risk of mismanagement and compromise of user-managed service account keys. You need to enforce a policy that prevents developers from creating these keys for projects across your entire organization. What is the recommended enforcement method?
A
Configure Secret Manager to manage service account keys.
B
Enable an organization policy to disable service accounts from being created.
C
Enable an organization policy to prevent service account keys from being created.
D
Remove the iam.serviceAccounts.getAccessToken permission from users.