Tüm alıştırma soruları
537 soru
A financial services organization is modernizing its transaction reconciliation architecture on Google Cloud. The architecture comprises two core workloads: (1) a stateless, containerized HTTP REST microservice that processes customer requests with highly variable traffic spikes and must scale down to zero instances when idle, and (2) a containerized batch job that processes end-of-day financial reconciliation files, running continuously for approximately 6 hours each night. The organization requires a solution that minimizes operational management overhead and eliminates compute infrastructure costs during idle periods. Which TWO compute platform selections should you recommend to meet these requirements?
Geçerli olan tümünü seçin
A healthcare startup plans to migrate its legacy on-premises architecture to Google Cloud. The environment consists of a PostgreSQL transactional database and of unstructured medical imaging files stored on an SMB file share. The company has a dedicated network connection to GCP. The migration strategy must ensure minimal downtime for the database and direct online ingestion of the image files into Cloud Storage with automated integrity verification. Which TWO architectural solutions should be included in the migration design? (Select TWO.)
Geçerli olan tümünü seçin
A Lead Cloud Architect is transitioning an enterprise infrastructure automation platform from Google Cloud Deployment Manager to Terraform within Cloud Build CI/CD pipelines. The new deployment pipeline must support multi-developer concurrent executions without state corruption, maintain recoverable state history, and strictly observe GCP least-privilege identity access controls during resource provisioning. Which TWO configurations must the architect implement to satisfy these security and operational requirements?
Geçerli olan tümünü seçin
A global gaming enterprise is preparing to launch a real-time multiplayer backend hosted on Google Cloud using automated Infrastructure as Code (IaC) pipelines with Terraform. The design requires deploying regional Compute Engine Managed Instance Groups (MIGs) across multiple zones to process high-throughput UDP traffic. To support the upcoming launch of 50,000 concurrent game instances, the deployment automation must prevent state concurrency conflicts, ensure successful automated resource creation without runtime quota rejections, and strictly observe least-privilege security principles. Which TWO architectural and administrative actions should the team perform as part of the initial provisioning strategy?
Geçerli olan tümünü seçin
A healthcare research organization needs to migrate its core data assets to Google Cloud within a strict 6-week timeframe. The workload consists of of static genomic sequence files on an on-premises SAN and an active transactional PostgreSQL database. The facility has a single dedicated internet connection. The migration plan must ensure minimal database downtime with continuous synchronization, and governance rules mandate strict perimeter security controls to prevent data exfiltration to unauthorized external cloud resources. Which TWO architectural strategies should you incorporate into the migration design?
Geçerli olan tümünü seçin
A healthcare technology company is architecting a medical diagnostics platform on Google Cloud. The system consists of two distinct components: 1) A stateless REST API backend that receives patient request payloads and returns quick diagnostic summaries with highly variable, bursty web traffic, requiring minimal operational management; 2) A batch processing pipeline that runs legacy, uncontainerized diagnostic algorithms relying on custom Linux kernel modules for 3 hours every night. Which TWO compute solutions should you recommend to fulfill these requirements with the lowest operational overhead and optimal cost efficiency? (Select TWO)
Geçerli olan tümünü seçin
An enterprise architecture team is configuring network connectivity between two VPC networks, vpc-analytics and vpc-core, in Google Cloud. They decide to establish VPC Network Peering to allow internal IP address communication across the two networks. Which TWO statements accurately describe the requirements and behavior of VPC Network Peering in this scenario? (Select TWO.)
Geçerli olan tümünü seçin
A global media enterprise is designing the cloud storage and database architecture on Google Cloud for a mission-critical application platform. The architecture must address two key technical requirements:
1. An operational relational database that requires strong consistency (ACID compliance) across multiple geographic regions, along with horizontal scaling for write operations.
2. A one-time bulk migration of a historical analytics dataset stored on local network-attached storage (NAS) devices, where the available dedicated internet bandwidth is capped at .
Which TWO design decisions should the architect select to fulfill these requirements?
Geçerli olan tümünü seçin
An enterprise media streaming company is designing an automated continuous delivery pipeline for microservices deployed on Cloud Run using Cloud Build and Google Cloud Deploy. The architecture team requires progressive traffic shifting with automated rollback whenever latency or error rate metrics exceed defined thresholds during a release. Additionally, all container images deployed to production must be verifiably built by the authorized continuous integration pipeline, and individual developers must be prevented from executing direct manual deployments to production environments. Which TWO architectural configurations should the team implement to satisfy these requirements? (Select TWO)
Geçerli olan tümünü seçin
A financial enterprise is establishing governance controls across its Google Cloud Organization hierarchy. The security compliance team requires that virtual machines cannot be assigned external public IP addresses and that all new infrastructure resources are restricted to the `us-central1` and `europe-west1` regions. Which TWO Organization Policy constraints should the cloud architect implement to enforce these administrative controls?
Geçerli olan tümünü seçin
A global streaming media enterprise uses Google Cloud for its infrastructure. The enterprise security team needs to establish central governance guardrails across the Google Cloud resource hierarchy without causing immediate downtime to running systems. Specifically, they must satisfy two requirements: first, audit and evaluate the impact of prohibiting external IP addresses on Compute Engine instances within the 'Staging' folder before enforcing the block; second, enforce that all new Cloud Storage buckets across the entire organization are created strictly within the 'us-central1' and 'us-east1' regions. Which TWO architecture design choices should you implement to meet these requirements?
Geçerli olan tümünü seçin
An enterprise security team needs to grant an automated compliance auditing application running in a dedicated security project permission to inspect resource configurations and IAM policies across all projects nested within a folder named Production-Workloads. The security team must also allow a DevOps engineer to deploy and attach this service account to Compute Engine audit instances without granting the engineer the ability to modify IAM policies or elevate their own privileges. Which TWO configuration steps should the security architect implement to achieve this with minimal operational overhead and least privilege? (Select TWO.)
Geçerli olan tümünü seçin
A biomedical research company is automating the infrastructure provisioning process on Google Cloud for a distributed genomic processing platform. The architecture requires deploying a private Google Kubernetes Engine (GKE) cluster for core compute services alongside automated Terraform pipelines for provisioning Compute Engine Managed Instance Groups (MIGs). The security and operations teams require that administrative control plane access to the private GKE cluster be strictly limited to trusted corporate networks, and that infrastructure state storage prevents concurrent execution conflicts or loss of state history. Which TWO deployment configuration actions should the Cloud Architect recommend to fulfill these operational and security constraints?
Geçerli olan tümünü seçin
An enterprise logistics corporation is deploying a new fleet management platform across multiple Google Cloud projects organized under a parent folder named `Fleet-Ops`. The compliance team mandates two strict governance guardrails: (1) prevent users from generating external service account keys to mitigate credential leakage risks, and (2) restrict all infrastructure deployment strictly to European regions (`europe-west1` and `europe-west4`). Additionally, the team must evaluate the operational impact of the key creation restriction on existing pipelines prior to active blocking. Which TWO actions should the security architect take to satisfy these governance requirements using Google Cloud Organization Policies?
Geçerli olan tümünü seçin
A platform engineering team is automating continuous deployment pipelines using Cloud Build and Cloud Deploy for microservice applications hosted on Google Kubernetes Engine (GKE). The architecture requires strict compliance with least-privilege IAM controls for pipeline execution and resilient infrastructure state management for pipeline provisioning. Which TWO design practices should the team implement to achieve these requirements?
Geçerli olan tümünü seçin
An enterprise financial network requires connecting an on-premises data center to a Google Cloud Virtual Private Cloud (VPC). The solution must meet a 99.99% availability SLA, provide mandatory end-to-end IPsec data encryption, and support dynamic route propagation. Which TWO architectural configurations must be implemented together to satisfy all requirements?
Geçerli olan tümünü seçin
A mid-sized retail enterprise plans to migrate its core inventory management system to Google Cloud. During executive alignment meetings, business stakeholders express concern over potential operational disruption, while the IT operations team reports anxiety regarding their lack of cloud experience. Which TWO strategies should the Lead Cloud Architect recommend to address stakeholder requirements and manage organizational change effectively? (Select TWO.)
Geçerli olan tümünü seçin
An enterprise software organization is establishing centralized security guardrails across its Google Cloud resource hierarchy. The cloud security architect must enforce two specific governance mandates across all projects within a target folder:
1. Prevent developers from generating exportable service account keys to mitigate credential leakage risks.
2. Restrict the deployment of all Google Cloud location-based resources exclusively to the `us-central1` and `us-east1` regions.
Which TWO Organization Policy constraints should be configured at the target folder level to satisfy these mandates?
Geçerli olan tümünü seçin
A retail enterprise organizes its Google Cloud infrastructure using an Organization node containing top-level folders named Staging and Production. The central Security Operations team requires read-only security visibility across all projects in the Production folder. Additionally, an automated deployment service account must create Compute Engine instances within a specific Production project and attach a pre-configured workload service account to those instances. Which TWO actions should a Cloud Architect recommend to fulfill these security requirements while enforcing least privilege and leveraging resource hierarchy inheritance?
Geçerli olan tümünü seçin
A financial services organization is migrating two distinct workloads to Google Cloud. The architecture team requires solution designs that minimize operational maintenance and infrastructure cost.
• Workload 1: A stateless, containerized HTTP REST API servicing unpredictable fraud check queries that must automatically scale to zero instances during idle periods.
• Workload 2: A containerized nightly batch process that executes non-HTTP financial risk simulations for up to 3 hours per run.
Which TWO Google Cloud compute platform configurations should you select to meet these requirements? (Select TWO.)
Geçerli olan tümünü seçin