A company wants to ensure that Cloud Storage buckets never have public access enabled, even if a developer accidentally sets it. What is the most preventive control?
-
A
Schedule daily audit scripts to detect public buckets
-
B
Enable the constraints/storage.publicAccessPrevention organization policy
-
C
Configure VPC Service Controls around Cloud Storage
-
D
Set up Cloud Monitoring alerts on bucket ACL changes