GCP ACE · Question 41 · Domain 5.1: Managing Identity and Access Management (IAM)
When configuring Identity and Access Management (IAM) in Google Cloud, what is the recommended best practice regarding the use of Primitive roles (Owner, Editor, Viewer) versus Predefined roles?
Answer options:
Use predefined roles whenever possible to enforce the principle of least privilege.
Use primitive roles for simplicity, as predefined roles are too complex to manage.
Always create custom roles instead of using predefined roles.
Assign primitive roles directly to users, and predefined roles to Google Groups.
50 questions · hints · full answers · grading