問題文
An enterprise wants consistent security and governance across all APIs, but individual teams want autonomy to move fast. How should API governance be arranged to balance these?
選択肢
- Enforce shared policies and standards centrally through API management while letting teams design and deploy their own APIs within those guardrails.
- Let every team invent its own security rules with no shared policies at all, accepting inconsistent and possibly insecure APIs across the enterprise as the price of speed.
- Governance and autonomy cannot be balanced and one must be abandoned entirely; an enterprise has to pick either consistent security or fast-moving teams.
- Require one central team to personally build and deploy every API in the enterprise, removing all autonomy so that consistency comes from ending self-service.