PDE - Designing Data Processing Systems - Section 1.1

Design for security and compliance, including IAM, organisation policies, encryption, privacy strategies for PII, regional data sovereignty, and multi-environment configurations.

Apply Cloud IAM roles and organisation policies to enforce least-privilege access across data resources, and choose between Google-managed, customer-managed encryption keys, and Cloud DLP de-identification to protect PII and meet regional data sovereignty requirements.

Cloud IAMOrganisation policiesCustomer-managed encryption keysCloud DLP

More in this domain

Back to all Designing Data Processing Systems objectives, or the PDE cert hub.

Examworthy is not affiliated with or endorsed by Google Cloud. Original, blueprint-aligned practice material only.