All practice questions
1598 questions
An enterprise architecture team is designing an automated continuous integration and continuous delivery (CI/CD) pipeline on Google Cloud to securely build, verify, and release containerized microservices to Google Kubernetes Engine (GKE). The pipeline architecture incorporates Cloud Build, Artifact Registry, Binary Authorization, and Cloud Deploy. In what chronological sequence should the pipeline stages execute from initial code submission to final production deployment?
Drag items to arrange them in the correct order
A cloud architecture team defines a Service Level Objective (SLO) for an enterprise user authentication API hosted on Google Cloud. The team sets an availability SLO target of measured over a rolling period of 30 days ( minutes). What is the maximum total downtime in minutes allowed before the service completely exhausts its error budget for this 30-day period?
An organization is executing its disaster recovery strategy for a critical application. The business requires a Recovery Point Objective (RPO) of zero, meaning no data loss can be tolerated during a complete regional outage. Which Google Cloud database strategy meets this requirement?
A global humanitarian relief organization is planning to migrate its central inventory management and emergency dispatch system from on-premises data centers to Google Cloud. Executive sponsors require zero disruption to active disaster relief operations, while regional operational leads express concern about software workflow changes during active missions. Additionally, local IT personnel have minimal Google Cloud experience, and regional resource demands vary drastically based on active crisis events. Which migration and governance strategy should the Professional Cloud Architect recommend to fulfill stakeholder requirements while managing organizational change and operational risk?
An enterprise financial services provider runs a payroll processing platform on Google Cloud using Compute Engine Managed Instance Groups (MIGs). The application experiences predictable, severe 10x traffic bursts on the last business day of every month. During the most recent burst, instances failed to scale out despite autoscaling policies triggering, resulting in request timeouts due to hitting regional Compute Engine vCPU quotas. The organization requires a solution that guarantees instance availability for scheduled peak events without incurring continuous baseline compute costs. Which capacity planning and scaling strategy should the principal cloud architect recommend?
A cloud operations team is establishing an automated incident management and escalation architecture on Google Cloud for a high-throughput healthcare data ingestion service. The team needs to build a workflow that moves from reliability metric definition to alert trigger routing, automated remediation execution, and alert suppression. In what chronological sequence should the cloud architect configure these operational components?
Drag items to arrange them in the correct order
A global enterprise runs streaming workloads across multiple Google Cloud projects containing Google Kubernetes Engine (GKE) clusters and Compute Engine instances. The central Site Reliability Engineering (SRE) and security teams require a centralized observability pipeline. Specifically, high-severity security audit logs must be retained long-term in BigQuery for regulatory compliance, while operational application error logs must be routed in real time to an external Security Information and Event Management (SIEM) system via Cloud Pub/Sub. To optimize logging costs, ensure minimal log ingestion overhead, and enforce proper access security without dropping critical events, which TWO configuration steps should the cloud architect implement? Select TWO.
Select all that apply
A multinational commercial airline is migrating its flight operations analytics and passenger loyalty platform to Google Cloud. Executive leadership demands zero service downtime during high-traffic travel seasons and strict regulatory compliance. However, the internal IT operations team expresses strong resistance to the shift, citing unfamiliarity with GCP operational governance and fears of operational risk during initial rollout. As the Cloud Architect leading this transition, which TWO strategies should you execute to address stakeholder requirements and manage organizational change effectively? (Select TWO.)
Select all that apply
A enterprise team is performing an operational disaster recovery (DR) drill to validate business continuity for an application deployed across two Google Cloud regions. The failover plan requires redirecting network traffic to the secondary region and ensuring database availability. Which of the following execution steps are necessary to successfully complete this regional failover procedure? (Select TWO.)
Select all that apply
An online gaming enterprise hosts multiplayer matchmaking services on Google Kubernetes Engine (GKE) and stores container images in Artifact Registry. The lead security architect must design a container security strategy to achieve two goals: automatically scan container images for operating system vulnerabilities immediately upon push to the registry, and continuously detect runtime container compromises (such as unexpected binary execution or reverse shells) without deploying or managing security monitoring agents on cluster nodes. Which architectural approach fulfills these security and operational requirements?
A digital publishing firm's development and operations teams are standardizing their Google Cloud deployment practices. Developers currently hold the Editor primitive role on project environments so they can run deployment scripts and troubleshoot infrastructure issues. The security and operations teams require implementing strict least privilege and preventing manual configuration drift across environments. Which recommendation should the Cloud Architect give to best align the development and operations teams?
A global logistics company uses Google Cloud folders to organize regional workloads, with separate folders named Logistics-EU and Logistics-NA under the organization node. An internal security audit team requires permission to inspect IAM access policies and asset security configurations across all current and future projects located inside the Logistics-EU folder. The team must not have access to view underlying customer data stored inside Cloud Storage buckets or BigQuery datasets, and solution management overhead must be minimized. Which IAM role assignment strategy should you implement?
A global telecommunications enterprise operates its SaaS management portal and telemetry analytics pipelines across multiple Google Cloud projects linked to a central Cloud Billing account. The engineering and finance leaders need to establish a FinOps governance framework to improve cost visibility and optimize spending across compute and storage resources without sacrificing application performance or release agility. Which of the following strategies should the team implement to achieve these FinOps objectives? (Select TWO.)
Select all that apply
An enterprise Cloud Architecture team is establishing an end-to-end automated incident detection and self-healing remediation workflow on Google Cloud for a microservice encountering resource exhaustion. Arrange the operational steps in the correct chronological order from initial alerting setup through incident resolution.
Drag items to arrange them in the correct order
An Site Reliability Engineering (SRE) team is defining operational reliability metrics for an HTTP-based backend API running on Cloud Run. The team wants to track the exact proportion of successful HTTP requests against total HTTP requests over a 30-day window to measure actual system performance. Which Site Reliability Engineering (SRE) metric component does this specific measurement represent?
A software enterprise is structuring its Google Cloud resource hierarchy with dedicated `Production` and `Non-Production` folders under the Organization node. A third-party compliance team requires read-only visibility into security configurations and IAM policy bindings across all existing and future projects without accessing underlying data payloads. Simultaneously, an automated CI/CD pipeline needs permission to launch Compute Engine instances in `Non-Production` projects using a specific managed workload service account, without granting the pipeline administrative rights to modify service account credentials. Which of the following IAM configuration choices follow Google-recommended best practices for least privilege and resource hierarchy inheritance? (Select TWO.)
Select all that apply
A smart grid utility enterprise ingests real-time telemetry from millions of sensors into Google Cloud. The core analytical backend relies on a steady, predictable baseline of Compute Engine virtual machines operating continuously 24/7 throughout the year. During severe weather events, compute demand spikes unpredictably up to five times the baseline volume for short durations. The FinOps team must establish a financial governance strategy that minimizes overall compute expenditure while accurately tracking cost attribution across business units. Which strategy best fulfills these requirements?
A gaming studio's backend platform team is establishing automated infrastructure deployment pipelines using Infrastructure as Code (IaC) to provision Compute Engine instance groups and Cloud SQL instances. The lead cloud architect must advise the operations team on securing pipeline credentials and persisting deployment state safely with minimal operational overhead. Which TWO recommendations should the architect provide? (Select TWO)
Select all that apply
An online media streaming company runs a video metadata microservice on Google Cloud. During peak traffic hours, brief network latency spikes of 5 to 10 seconds periodically occur, triggering temporary error rate spikes that resolve automatically. However, the operations team receives dozens of redundant PagerDuty alerts every night, causing severe alert fatigue. You need to configure a Cloud Monitoring automated alerting policy that ignores these transient spikes while ensuring sustained service degradations immediately trigger incident notifications. Which alerting policy configuration should you implement?
An enterprise genomics research institution runs large-scale batch DNA sequencing jobs on Google Cloud using Compute Engine Managed Instance Groups (MIGs). The workload experiences predictable, massive surges in compute demand during scheduled bi-weekly alignment runs. During past events, auto-scaling instances failed to launch due to sudden regional compute resource limits, and telemetry data transmission experienced severe bottlenecks across hybrid connections. Which TWO architecture and operational strategy changes should the Cloud Architect implement to optimize workload scaling, ensure guaranteed compute capacity, and manage infrastructure constraints during these peak runs? (Select TWO.)
Select all that apply