GCP - Cloud FunctionsWhat is a key security benefit of using Google Cloud Secret Manager over storing sensitive data directly in environment variables?AEnvironment variables can only store plaintext, while Secret Manager stores encrypted filesBEnvironment variables are encrypted by default, so Secret Manager adds no benefitCSecret Manager disables network access to secrets, unlike environment variablesDSecret Manager provides automatic versioning and audit logging of secret accessCheck Answer
Step-by-Step SolutionSolution:Step 1: Understand Secret Manager featuresSecret Manager offers secret versioning, access control, and audit logging.Step 2: Compare with environment variablesEnvironment variables are not versioned and lack audit trails, increasing risk.Final Answer:Secret Manager provides automatic versioning and audit logging of secret access -> Option DQuick Check:Secret Manager enhances security with versioning and audit logs [OK]Quick Trick: Secret Manager tracks versions and access logs [OK]Common Mistakes:Assuming environment variables are encrypted by defaultBelieving Secret Manager restricts network access differentlyConfusing storage formats between environment variables and secrets
Master "Cloud Functions" in GCP9 interactive learning modes - each teaches the same concept differentlyLearnWhyDeepVisualTryChallengeProjectRecallTime
More GCP Quizzes Cloud Firestore and Bigtable - Why NoSQL on GCP matters - Quiz 5medium Cloud Firestore and Bigtable - Firestore document model - Quiz 9hard Cloud Functions - Cold start behavior - Quiz 14medium Cloud IAM Advanced - Policy troubleshooter - Quiz 10hard Cloud IAM Advanced - Data access logs - Quiz 2easy Cloud Load Balancing - URL maps for routing - Quiz 7medium Cloud Monitoring and Logging - Cloud Monitoring overview - Quiz 8hard Cloud Pub/Sub - Message retention and acknowledgment - Quiz 11easy Cloud Run - Cloud Run vs Cloud Functions decision - Quiz 11easy Cloud SQL and Databases - High availability configuration - Quiz 11easy