
Ultimate access to all questions.
You have a BigQuery workload containing sensitive personally identifiable information (PII) that must not be accessible from the internet. To prevent data exfiltration, you need to ensure only queries from authorized IP addresses can access your BigQuery tables.
What should you do?
A
Use service perimeter and create an access level based on the authorized source IP address as the condition.
B
Use Google Cloud Armor security policies defining an allowlist of authorized IP addresses at the global HTTPS load balancer.
C
Use the Restrict Resource Service Usage organization policy constraint along with Cloud Data Loss Prevention (DLP).
D
Use the Restrict allowed Google Cloud APIs and services organization policy constraint along with Cloud Data Loss Prevention (DLP).