Question 2

Domain 6: Monitoring, Logging and Runtime Security

A security engineer wants a containerized workload to consume data from a mounted volume while preventing the application from modifying files in that mount at runtime. Which configuration best supports this goal?