GCP ACE · Question 41 · Domain 5.1: Managing Identity and Access Management (IAM)
You are reviewing IAM roles in your Google Cloud project. You notice several users have the 'Editor' role. According to Google Cloud security best practices, why should you avoid using the 'Editor' role?
Answer options:
It is a primitive role that grants broad permissions across almost all services in the project, violating the principle of least privilege.
It allows users to modify IAM policies and add new users to the project.
It is a deprecated role and will be removed by Google Cloud soon.
It only grants access to Compute Engine, leaving other services inaccessible.
50 questions · hints · full answers · grading