All practice questions
262 questions
An Cloud Engineer needs to set up daily Cloud Billing export to BigQuery for long-term spend analysis. Sequence the following steps in the correct order to successfully configure the export.
Drag items to arrange them in the correct order
A cloud engineer needs to enable the Secret Manager API (`secretmanager.googleapis.com`) for a newly created Google Cloud project named `security-vault-prod` using the `gcloud` CLI, ensuring that the target environment is configured before enablement and verified afterward. Place the administrative steps in the correct chronological sequence from start to finish.
Drag items to arrange them in the correct order
A site reliability engineering team needs to enforce automated cost controls that disable billing or stop project resources when a project exceeds $10,000 in monthly spending. What is the correct sequence of steps required to configure programmatic budget notifications using Google Cloud services?
Drag items to arrange them in the correct order
A cloud engineer is tasked with onboarding a new telemetry analytics team into an existing Google Cloud Organization. The engineer must establish an isolated resource hierarchy branch, enable resource consumption, and delegate administrative access following Google Cloud recommended practices. Arrange the following administrative steps in the correct operational sequence from start to finish.
Drag items to arrange them in the correct order
Your organization needs to grant an external audit team read-only access to inspect IAM policy bindings across all Google Cloud projects contained within a specific Folder named 'Finance-Workloads'. To strictly enforce the principle of least privilege, you must avoid primitive roles or overly permissive predefined roles by defining a custom IAM role with only the `resourcemanager.projects.getIamPolicy` permission at the folder level and assigning it to the auditors' Google Group via the `gcloud` CLI. In what exact order should you execute the configuration and command-line steps to implement this security control?
Drag items to arrange them in the correct order
A cloud administrator needs to request a regional Compute Engine N2 CPU quota increase for project `analytics-prod-942` in the `us-east4` region using the Google Cloud Console. What is the correct sequential order of steps required to locate and submit this quota increase request?
Drag items to arrange them in the correct order
A cloud engineer needs to expand the primary IPv4 range of an existing subnet in a Google Cloud custom-mode Virtual Private Cloud (VPC) network without causing downtime to running Virtual Machines. Arrange the operational steps in the correct order from first to last.
Drag items to arrange them in the correct order
A cloud engineer needs to grant an external auditor access to inspect IAM policies for a specific Google Cloud project using the gcloud command-line interface. What is the correct sequence of command steps to authenticate, set the project context, assign the least-privilege predefined IAM role, and verify the assignment?
Drag items to arrange them in the correct order
A cloud engineer needs to set up a BigQuery billing export for detailed cost analysis across an organization. What is the correct sequence of steps to configure this Cloud Billing export?
Drag items to arrange them in the correct order
A cloud engineering team needs to expand the primary IP range of a subnet within an auto-mode Virtual Private Cloud (VPC) network in Google Cloud to accommodate new Compute Engine instances without disrupting existing network traffic. Place the steps required to safely convert the network mode and expand the subnet IP range into the correct sequential order.
Drag items to arrange them in the correct order
A cloud administrator needs to delegate authority to a junior engineer to link an unlinked Google Cloud project to an organization's Cloud Billing Account using least-privilege IAM roles. Arrange the steps in the correct chronological order required to grant permissions and complete the linking process.
Drag items to arrange them in the correct order
A cloud administrator is establishing governance for a newly acquired business unit in Google Cloud. The administrator needs to set up a dedicated hierarchy branch under the organization node, enforce regional deployment boundaries using organization policy constraints, and place both new and existing workloads into this branch. What is the correct sequence of steps to establish this resource hierarchy and governance structure?
Drag items to arrange them in the correct order
An enterprise is planning a multi-region Google Cloud deployment that connects to an on-premises data center using Cloud Interconnect. The environment must host Google Kubernetes Engine (GKE) clusters using alias IPs and prevent IP address collisions. Sequence the following steps in the correct order to properly plan and implement the Virtual Private Cloud (VPC) network architecture from initial network assessment to hybrid connectivity configuration.
Drag items to arrange them in the correct order
A DevOps automation principal needs to grant a service account the minimum necessary IAM roles and execute the appropriate gcloud commands to create a new workload project inside a corporate folder and link it to an existing Cloud Billing Account. Arrange the steps in the correct operational sequence from first to last to complete this task under the principle of least privilege.
Drag items to arrange them in the correct order
An Associate Cloud Engineer needs to configure granular access controls for an automated deployment service account by creating a new project-level custom IAM role and granting it to the service account. Which sequence of steps represents the correct procedure to implement this using the gcloud command-line tool?
Drag items to arrange them in the correct order
A cloud engineering team is planning to expand the primary IP address range of an active custom-mode Virtual Private Cloud (VPC) subnet connected to an on-premises data center via Cloud Router using BGP. What is the correct sequence of steps the team must perform to safely plan, execute, and propagate this subnet expansion?
Drag items to arrange them in the correct order
You need to deploy a containerized application to a newly provisioned Google Kubernetes Engine (GKE) cluster using Google Cloud CLI and `kubectl`. Place the following administrative and deployment steps in the correct chronological sequence from first to last.
Drag items to arrange them in the correct order
You need to deploy a containerized web application to an existing Google Kubernetes Engine (GKE) cluster from a freshly provisioned administrator workstation. Arrange the following steps in the correct sequential order from first to last to establish cluster access and deploy the application.
Drag items to arrange them in the correct order
A cloud administrator is creating a custom-mode Virtual Private Cloud (VPC) network in Google Cloud to support a new internal application. The environment must be configured with an explicitly defined regional subnet and basic ingress firewall rules. In what sequence should the administrator perform these VPC configuration tasks?
Drag items to arrange them in the correct order
A cloud operations team is setting up a new administrative management host to manage workloads on a newly provisioned Google Kubernetes Engine (GKE) cluster named `billing-cluster` in region `us-east4`. Arrange the following administrative and operational commands in the exact sequence required to authenticate, establish cluster context, verify cluster connectivity, and deploy a manifest named `billing-deployment.yaml`.
Drag items to arrange them in the correct order