Your organization has two VPC Service Controls perimeters, Perimeter-A and Perimeter-B, in Google Cloud. You need to allow data to be copied from a Cloud Storage bucket in Perimeter-A to a Cloud Storage bucket in Perimeter-B while minimizing exfiltration risk, allowing only necessary connections, and following the principle of least privilege. What should you do?