Data Analysts in your company have the Cloud IAM Owner role assigned to them in their projects to allow them to work with multiple GCP products in their projects. Your organization requires that all BigQuery data access logs be retained for 6 months. You need to ensure that only audit personnel in your company can access the data access logs for all projects. What should you do?
A) Enable data access logs in each Data Analyst's project. Restrict access to Stackdriver Logging via Cloud IAM roles.
B) Export the data access logs via a project-level export sink to a Cloud Storage bucket in the Data Analysts' projects. Restrict access to the Cloud Storage bucket.
C) Export the data access logs via a project-level export sink to a Cloud Storage bucket in a newly created projects for audit logs. Restrict access to the project with the exported logs.
D) Export the data access logs via an aggregated export sink to a Cloud Storage bucket in a newly created project for audit logs. Restrict access to the project that contains the exported logs.
Correct Answer:
Verified
Q122: You're using Bigtable for a real-time application,
Q123: You operate an IoT pipeline built around
Q124: You operate a logistics company, and you
Q125: You receive data files in CSV format
Q126: You decided to use Cloud Datastore to
Q128: You are deploying MariaDB SQL databases on
Q129: You have an Apache Kafka cluster on-prem
Q130: You are designing storage for 20 TB
Q131: You work on a regression problem in
Q132: Your company is in the process of
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents