[UPDATED] Google Professional-Cloud-Architect Certification Exam Questions [Q98-Q118]

Share

[UPDATED] Google Professional-Cloud-Architect Certification Exam Questions

Quickly and Easily Pass Google Exam with Professional-Cloud-Architect real Dumps


How much Google Professional Cloud Architect Exam cost

Google Professional Cloud Architect exam cost is $200 USD


Exam Domains Overview

The entire syllabus is based on six domains and each tries to educate the learner about various Google Cloud technologies. They are disclosed below in detail:

Section #1. Designing and strategy-making for the Cloud Solution Architecture

Designing a Google Cloud solution as per business and technical needs, handling the cost optimization, data movement, observability, and compliance are some of the most talked-about topics under this module.

The applicants should also demonstrate their expertise regarding the concepts like architecting the storage, network, and compute solutions or resources, multi-cloud or on-premises integration, and fulfilling & monitoring the compute needs of the platform products, picking-up right data processing and related technologies.

 

NEW QUESTION 98
For this question, refer to the TerramEarth case study.
TerramEarth plans to connect all 20 million vehicles in the field to the cloud. This increases the volume to 20 million 600 byte records a second for 40 TB an hour. How should you design the data ingestion?

  • A. Vehicles continue to write data using the existing system (FTP).
  • B. Vehicles write data directly to GCS.
  • C. Vehicles write data directly to Google Cloud Pub/Sub.
  • D. Vehicles stream data directly to Google BigQuery.

Answer: C

Explanation:
https://cloud.google.com/solutions/data-lifecycle-cloud-platform
https://cloud.google.com/solutions/designing-connected-vehicle-platform

 

NEW QUESTION 99
Your application needs to process credit card transactions. You want the smallest scope of Payment Card Industry (PCI) compliance without compromising the ability to analyze transactional data and trends relating to which payment methods are used. How should you design your architecture?

  • A. Create separate subnetworks and isolate the components that process credit card data.
  • B. Streamline the audit discovery phase by labeling all of the virtual machines (VMs) that process PCI data.
  • C. Create separate projects that only process credit card data.
  • D. Create a tokenizer service and store only tokenized data.
  • E. Enable Logging export to Google BigQuery and use ACLs and views to scope the data shared with the auditor.

Answer: D

Explanation:
Explanation
https://cloud.google.com/solutions/pci-dss-compliance-in-gcp

 

NEW QUESTION 100
You are creating an App Engine application that uses Cloud Datastore as its persistence layer. You need to retrieve several root entities for which you have the identifiers. You want to minimize the overhead in operations performed by Cloud Datastore. What should you do?

  • A. Create the Key object for each Entity and run multiple get operations, one operation for each entity
  • B. Create the Key object for each Entity and run a batch get operation
  • C. Use the identifiers to create a query filter and run a batch query operation
  • D. Use the identifiers to create a query filter and run multiple query operations, one operation for each entity

Answer: B

Explanation:
Explanation
https://cloud.google.com/datastore/docs/concepts/entities#datastore-datastore-batch-upsert-nodejs

 

NEW QUESTION 101
For this question, refer to the TerramEarth case study.
TerramEarth's 20 million vehicles are scattered around the world. Based on the vehicle's location its telemetry data is stored in a Google Cloud Storage (GCS) regional bucket (US. Europe, or Asia). The CTO has asked you to run a report on the raw telemetry data to determine why vehicles are breaking down after 100 K miles.
You want to run this job on all the data. What is the most cost-effective way to run this job?

  • A. Move all the data into 1 region, then launch a Google Cloud Dataproc cluster to run the job.
  • B. Move all the data into 1 zone, then launch a Cloud Dataproc cluster to run the job.
  • C. Launch a cluster in each region to preprocess and compress the raw data, then move the data into a regional bucket and use a Cloud Dataproc cluster .....
  • D. Launch a cluster in each region to preprocess and compress the raw data, then move the data into a multi region bucket and use a Dataproc cluster to finish the job.

Answer: D

Explanation:
Explanation
Storageguarantees 2 replicates which are geo diverse (100 miles apart) which can get better remote latency and availability.
More importantly, is that multiregional heavily leverages Edge caching and CDNs to provide the content to the end users.
All this redundancy and caching means that Multiregional comes with overhead to sync and ensure consistency between geo-diverse areas. As such, it's much better for write-once-read-many scenarios. This means frequently accessed (e.g. "hot" objects) around the world, such as website content, streaming videos, gaming or mobile applications.
References:
https://medium.com/google-cloud/google-cloud-storage-what-bucket-class-for-the-best-performance-5c847ac8f9

 

NEW QUESTION 102
The development team has provided you with a Kubernetes Deployment file. You have no infrastructure yet and need to deploy the application. What should you do?

  • A. Use gcloud to create a Kubernetes cluster. Use Deployment Manager to create the deployment.
  • B. Use kubectl to create a Kubernetes cluster. Use Deployment Manager to create the deployment.
  • C. Use gcloud to create a Kubernetes cluster. Use kubectl to create the deployment.
  • D. Use kubectl to create a Kubernetes cluster. Use kubectl to create the deployment.

Answer: C

 

NEW QUESTION 103
You have found an error in your App Engine application caused by missing Cloud Datastore indexes. You have created a YAML file with the required indexes and want to deploy these new indexes to Cloud Datastore. What should you do?

  • A. Point gcloud datastore create-indexesto your configuration file
  • B. Upload the configuration file to App Engine's default Cloud Storage bucket, and have App Engine detect the new indexes
  • C. In the GCP Console, use Datastore Admin to delete the current indexes and upload the new configuration file
  • D. Create an HTTP request to the built-in python module to send the index configuration file to your application

Answer: A

 

NEW QUESTION 104
Case Study: 3 - JencoMart Case Study
Company Overview
JencoMart is a global retailer with over 10,000 stores in 16 countries. The stores carry a range of goods, such as groceries, tires, and jewelry. One of the company's core values is excellent customer service. In addition, they recently introduced an environmental policy to reduce their carbon output by 50% over the next 5 years.
Company Background
JencoMart started as a general store in 1931, and has grown into one of the world's leading brands known for great value and customer service. Over time, the company transitioned from only physical stores to a stores and online hybrid model, with 25% of sales online. Currently, JencoMart has little presence in Asia, but considers that market key for future growth.
Solution Concept
JencoMart wants to migrate several critical applications to the cloud but has not completed a technical review to determine their suitability for the cloud and the engineering required for migration. They currently host all of these applications on infrastructure that is at its end of life and is no longer supported.
Existing Technical Environment
JencoMart hosts all of its applications in 4 data centers: 3 in North American and 1 in Europe, most applications are dual-homed.
JencoMart understands the dependencies and resource usage metrics of their on-premises architecture.
Application Customer loyalty portal
LAMP (Linux, Apache, MySQL and PHP) application served from the two JencoMart-owned U.S.
data centers.
Database
* Oracle Database stores user profiles




* PostgreSQL database stores user credentials
-homed in US West




Authenticates all users
Compute
* 30 machines in US West Coast, each machine has:


HDD (RAID 1)

* 20 machines in US East Coast, each machine has:
-core CPU



Storage
* Access to shared 100 TB SAN in each location
* Tape backup every week
Business Requirements
* Optimize for capacity during peak periods and value during off-peak periods
* Guarantee service availably and support
* Reduce on-premises footprint and associated financial and environmental impact.
* Move to outsourcing model to avoid large upfront costs associated with infrastructure purchase
* Expand services into Asia.
Technical Requirements
* Assess key application for cloud suitability.
* Modify application for the cloud.
* Move applications to a new infrastructure.
* Leverage managed services wherever feasible
* Sunset 20% of capacity in existing data centers
* Decrease latency in Asia
CEO Statement
JencoMart will continue to develop personal relationships with our customers as more people access the web. The future of our retail business is in the global market and the connection between online and in-store experiences. As a large global company, we also have a responsibility to the environment through 'green' initiatives and polices.
CTO Statement
The challenges of operating data centers prevents focus on key technologies critical to our long- term success. Migrating our data services to a public cloud infrastructure will allow us to focus on big data and machine learning to improve our service customers.
CFO Statement
Since its founding JencoMart has invested heavily in our data services infrastructure. However, because of changing market trends, we need to outsource our infrastructure to ensure our long- term success. This model will allow us to respond to increasing customer demand during peak and reduce costs.
For this question, refer to the JencoMart case study
A few days after JencoMart migrates the user credentials database to Google Cloud Platform and shuts down the old server, the new database server stops responding to SSH connections. It is still serving database requests to the application servers correctly. What three steps should you take to diagnose the problem? Choose 3 answers

  • A. Connect the machine to another network with very simple firewall rules and investigate.
  • B. Delete the virtual machine (VM) and disks and create a new one.
  • C. Print the Serial Console output for the instance for troubleshooting, activate the interactive console, and investigate.
  • D. Check inbound firewall rules for the network the machine is connected to.
  • E. Take a snapshot of the disk and connect to a new machine to investigate.
  • F. Delete the instance, attach the disk to a new VM, and investigate.

Answer: C,D,E

Explanation:
D: Handling "Unable to connect on port 22" error message
Possible causes include:
There is no firewall rule allowing SSH access on the port. SSH access on port 22 is enabled on
* all Compute Engine instances by default. If you have disabled access, SSH from the Browser will not work. If you run sshd on a port other than 22, you need to enable the access to that port with a custom firewall rule.
The firewall rule allowing SSH access is enabled, but is not configured to allow connections
* from GCP Console services. Source IP addresses for browser-based SSH sessions are dynamically allocated by GCP Console and can vary from session to session.
F: Handling "Could not connect, retrying..." error
You can verify that the daemon is running by navigating to the serial console output page and looking for output lines prefixed with the accounts-from-metadata: string. If you are using a standard image but you do not see these output prefixes in the serial console output, the daemon might be stopped. Reboot the instance to restart the daemon.
References:
https://cloud.google.com/compute/docs/ssh-in-browser
https://cloud.google.com/compute/docs/ssh-in-browser

 

NEW QUESTION 105
You are designing a mobile chat application. You want to ensure people cannot spoof chat messages, by providing a message were sent by a specific user.
What should you do

  • A. Tag messages client side with the originating user identifier and the destination user.
  • B. Use public key infrastructure (PKI) to encrypt the message client side using the originating user's private key.
  • C. Use a trusted certificate authority to enable SSL connectivity between the client application and the server.
  • D. Encrypt the message client side using block-based encryption with a shared key.

Answer: B

 

NEW QUESTION 106
A development manager is building a new application He asks you to review his requirements and identify what cloud technologies he can use to meet them.
The application must:
1. Be based on open-source technology for cloud portability
2. Dynamically scale compute capacity based on demand
3. Support continuous software delivery
4. Run multiple segregated copies of the same application stack
5. Deploy application bundles using dynamic templates
6. Route network traffic to specific services based on URL
Which combination of technologies will meet all of his requirements?

  • A. Google Container Engine and Cloud Load Balancing
  • B. Google Compute Engine and Cloud Deployment Manager
  • C. Google Compute Engine, Jenkins, and Cloud Load Balancing
  • D. Google Container Engine, Jenkins, and Helm

Answer: C

Explanation:
Jenkins is an open-source automation server that lets you flexibly orchestrate your build, test, and deployment pipelines. Kubernetes Engine is a hosted version of Kubernetes, a powerful cluster manager and orchestration system for containers.
When you need to set up a continuous delivery (CD) pipeline, deploying Jenkins on Kubernetes Engine provides important benefits over a standard VM-based deployment Incorrect Answers:
A: Helm is a tool for managing Kubernetes charts. Charts are packages of pre-configured Kubernetes resources.
Use Helm to:
Find and use popular software packaged as Kubernetes charts

Share your own applications as Kubernetes charts

Create reproducible builds of your Kubernetes applications

Intelligently manage your Kubernetes manifest files

Manage releases of Helm packages

References: https://cloud.google.com/solutions/jenkins-on-kubernetes-engine

 

NEW QUESTION 107
For this question, refer to the Mountkirk Games case study. Which managed storage option meets Mountkirk's technical requirement for storing game activity in a time series database service?

  • A. Cloud Bigtable
  • B. Cloud Datastore
  • C. Cloud Spanner
  • D. BigQuery

Answer: A

Explanation:
Explanation/Reference:
TerramEarth, A
Testlet 1
Company Overview
TerramEarth manufactures heavy equipment for the mining and agricultural industries: about 80% of their business is from mining and 20% from agriculture. They currently have over 500 dealers and service centers in 100 countries. Their mission is to build products that make their customers more productive.
Company background
TerramEarth was formed in 1946, when several small, family owned companies combined to retool after World War II. The company cares about their employees and customers and considers them to be extended members of their family.
TerramEarth is proud of their ability to innovate on their core products and find new markets as their customers' needs change. For the past 20 years, trends in the industry have been largely toward increasing productivity by using larger vehicles with a human operator.
Solution Concept
There are 20 million TerramEarth vehicles in operation that collect 120 fields of data per second. Data is stored locally on the vehicle and can be accessed for analysis when a vehicle is serviced. The data is downloaded via a maintenance port. This same port can be used to adjust operational parameters, allowing the vehicles to be upgraded in the field with new computing modules.
Approximately 200,000 vehicles are connected to a cellular network, allowing TerramEarth to collect data directly. At a rate of 120 fields of data per second with 22 hours of operation per day, Terram Earth collects a total of about 9 TB/day from these connected vehicles.
Existing Technical Environment

TerramEarth's existing architecture is composed of Linux-based systems that reside in a data center.
These systems gzip CSV files from the field and upload via FTP, transform and aggregate them, and place the data in their data warehouse. Because this process takes time, aggregated reports are based on data that is 3 weeks old.
With this data, TerramEarth has been able to preemptively stock replacement parts and reduce unplanned downtime of their vehicles by 60%. However, because the data is stale, some customers are without their vehicles for up to 4 weeks while they wait for replacement parts.
Business Requirements
* Decrease unplanned vehicle downtime to less than 1 week, without increasing the cost of carrying surplus inventory
* Support the dealer network with more data on how their customers use their equipment to better position new products and services
* Have the ability to partner with different companies - especially with seed and fertilizer suppliers in the fast-growing agricultural business - to create compelling joint offerings for their customers.
CEO Statement
We have been successful in capitalizing on the trend toward larger vehicles to increase the productivity of our customers. Technological change is occurring rapidly, and TerramEarth has taken advantage of connected devices technology to provide our customers with better services, such as our intelligent farming equipment. With this technology, we have been able to increase farmers' yields by 25%, by using past trends to adjust how our vehicles operate. These advances have led to the rapid growth of our agricultural product line, which we expect will generate 50% of our revenues by 2020.
CTO Statement
Our competitive advantage has always been in the manufacturing process, with our ability to build better vehicles for lower cost than our competitors. However, new products with different approaches are constantly being developed, and I'm concerned that we lack the skills to undergo the next wave of transformations in our industry. Unfortunately, our CEO doesn't take technology obsolescence seriously and he considers the many new companies in our industry to be niche players. My goals are to build our skills while addressing immediate market needs through incremental innovations.

 

NEW QUESTION 108
For this question, refer to the Dress4Win case study. You are responsible for the security of data stored in Cloud Storage for your company, Dress4Win. You have already created a set of Google Groups and assigned the appropriate users to those groups. You should use Google best practices and implement the simplest design to meet the requirements.
Considering Dress4Win's business and technical requirements, what should you do?

  • A. Assign predefined IAM roles to the Google Groups you created in order to enforce security requirements.
    Ensure that the default Cloud KMS key is set before storing files in Cloud Storage.
  • B. Assign custom IAM roles to the Google Groups you created in order to enforce security requirements.
    Enable default storage encryption before storing files in Cloud Storage.
  • C. Assign predefined IAM roles to the Google Groups you created in order to enforce security requirements.
    Utilize Google's default encryption at rest when storing files in Cloud Storage.
  • D. Assign custom IAM roles to the Google Groups you created in order to enforce security requirements.
    Encrypt data with a customer-supplied encryption key when storing files in Cloud Storage.

Answer: C

 

NEW QUESTION 109
For this question, refer to the Dress4Win case study. You want to ensure that your on-premises architecture meets business requirements before you migrate your solution.
What change in the on-premises architecture should you make?

  • A. Resize compute resources to match predefined Compute Engine machine types.
  • B. Containerize the micro-services and host them in Google Kubernetes Engine.
  • C. Downgrade MySQL to v5.7, which is supported by Cloud SQL for MySQL.
  • D. Replace RabbitMQ with Google Pub/Sub.

Answer: A

Explanation:
Explanation/Reference:
Mix Questions
Question Set 1

 

NEW QUESTION 110
You have developed an application using Cloud ML Engine that recognizes famous paintings from uploaded images. You want to test the application and allow specific people to upload images for the next 24 hours. Not all users have a Google Account. How should you have users upload images?

  • A. Create an App Engine web application where users can upload images. Configure App Engine to disable the application after 24 hours. Authenticate users via Cloud Identity.
  • B. Have users upload the images to Cloud Storage. Protect the bucket with a password that expires after 24 hours.
  • C. Create an App Engine web application where users can upload images for the next 24 hours.Authenticate users via Cloud Identity.
  • D. Have users upload the images to Cloud Storage using a signed URL that expires after 24 hours.

Answer: B

Explanation:
Explanation
https://cloud.google.com/blog/products/storage-data-transfer/uploading-images-directly-to-cloud-storage-by-usin

 

NEW QUESTION 111
Dress4Win has configured a new uptime check with Google Stackdriver for several of their legacy services.
The Stackdriver dashboard is not reporting the services as healthy.
What should they do?

  • A. Configure their legacy web servers to allow requests that contain user-Agent HTTP header when the value matches GoogleStackdriverMonitoring-UptimeChecks (https://cloud.google.com/monitoring)
  • B. In the Cloud Platform Console download the list of the uptime servers' IP addresses and create an inbound firewall rule
  • C. Install the Stackdriver agent on all of the legacy web servers.
  • D. Configure their load balancer to pass through the User-Agent HTTP header when the value matches GoogleStackdriverMonitoring-UptimeChecks (https://cloud.google.com/monitoring)

Answer: B

 

NEW QUESTION 112
Your company's user-feedback portal comprises a standard LAMP stack replicated across two zones. It is deployed in the us-central1 region and uses autoscaled managed instance groups on all layers, except the database. Currently, only a small group of select customers have access to the portal. The portal meets a 99.99% availability SLA under these conditions However next quarter, your company will be making the portal available to all users, including unauthenticated users. You need to develop a resiliency testing strategy to ensure the system maintains the SLA once they introduce additional user load. What should you do?

  • A. Expose the new system to a larger group of users, and increase group ' size each day until autoscale logic is tnggered on all layers. At the same time, terminate random resources on both zones.
  • B. Create synthetic random user input, replay synthetic load until autoscale logic is triggered on at least one layer, and introduce "chaos" to the system by terminating random resources on both zones.
  • C. Capture existing users input, and replay captured user load until autoscale is triggered on all layers. At the same time, terminate all resources in one of the zones.
  • D. Capture existing users input, and replay captured user load until resource utilization crosses 80%.
    Also, derive estimated number of users based on existing users usage of the app, and deploy enough resources to handle 200% of expected load.

Answer: D

 

NEW QUESTION 113
For this question, refer to the JencoMart case study.
JencoMart wants to move their User Profiles database to Google Cloud Platform. Which Google Database should they use?

  • A. Google Cloud Datastore
  • B. Google BigQuery
  • C. Google Cloud SQL
  • D. Cloud Spanner

Answer: A

Explanation:
https://cloud.google.com/datastore/docs/concepts/overview

 

NEW QUESTION 114
You need to evaluate your team readiness for a new GCP project. You must perform the evaluation and create a skills gap plan incorporates the business goal of cost optimization. Your team has deployed two GCP projects successfully to date. What should you do?

  • A. Allocate budget to hire skilled external consultants. Create a roadmap for your team to achieve Google Cloud certification based on job role.
  • B. Allocate budget for team training. Set a deadline for the new GCP project.
  • C. Allocate budget for team training. Create a roadmap for your team to achieve Google Cloud certification based on job role.
  • D. Allocate budget to hire skilled external consultants. Set a deadline for the new GCP project.

Answer: C

Explanation:
https://services.google.com/fh/files/misc/cloud_center_of_excellence.pdf

 

NEW QUESTION 115
Your company has multiple on-premises systems that serve as sources for reporting. The data has not been maintained well and has become degraded over time. You want to use Google-recommended practices to detect anomalies in your company dat a. What should you do?

  • A. Upload your files into Cloud Storage. Use Cloud Dataprep to explore and clean your data.
  • B. Upload your files into Cloud Storage. Use Cloud Datalab to explore and clean your data.
  • C. Connect Cloud Dataprep to your on-premises systems. Use Cloud Dataprep to explore and clean your
  • D. Connect Cloud Datalab to your on-premises systems. Use Cloud Datalab to explore and clean your data.

Answer: A

Explanation:
data.
Explanation:
https://cloud.google.com/dataprep/

 

NEW QUESTION 116
You are managing an application deployed on Cloud Run for Anthos, and you need to define a strategy for deploying new versions of the application. You want to evaluate the new code with a subset of production traffic to decide whether to proceed with the rollout. What should you do?

  • A. Deploy a new revision to Cloud Run with the new version. Configure traffic percentage between revisions.
  • B. In the Google Cloud Console page for Cloud Run, set up continuous deployment using Cloud Build for the development branch. As part of the Cloud Build trigger, configure the substitution variable TRAFFIC_PERCENTAGE with the percentage of traffic you want directed to a new version.
  • C. Deploy a new service to Cloud Run with the new version. Add a Cloud Load Balancing instance in front of both services.
  • D. In the Google Cloud Console, configure Traffic Director with a new Service that points to the new version of the application on Cloud Run. Configure Traffic Director to send a small percentage of traffic to the new version of the application.

Answer: A

Explanation:
https://cloud.google.com/run/docs/rollouts-rollbacks-traffic-migration

 

NEW QUESTION 117
Your organization has a 3-tier web application deployed in the same network on Google Cloud Platform. Each tier (web, API, and database) scales independently of the others Network traffic should flow through the web to the API tier and then on to the database tier. Traffic should not flow between the web and the database tier.
How should you configure the network?

  • A. Set up software based firewalls on individual VMs.
  • B. Add each tier to a different subnetwork.
  • C. Add tags to each tier and set up firewall rules to allow the desired traffic flow.
  • D. Add tags to each tier and set up routes to allow the desired traffic flow.

Answer: C

Explanation:
Explanation
https://aws.amazon.com/blogs/aws/building-three-tier-architectures-with-security-groups/ Google Cloud Platform(GCP) enforces firewall rules through rules and tags. GCP rules and tags can be defined once and used across all regions.
References: https://cloud.google.com/docs/compare/openstack/
https://aws.amazon.com/it/blogs/aws/building-three-tier-architectures-with-security-groups/

 

NEW QUESTION 118
......


Google Professional Cloud Architect Practice Test Questions, Google Professional Cloud Architect Exam Practice Test Questions

The Google Professional Cloud Architect certification equips the individuals with the ability to leverage Google Cloud technologies for their organizations. It offers the potential candidates an extensive understanding of Google Cloud Platform and Cloud architecture in general. Earning this certificate is a great way to grow your career in the ever-growing Cloud domain.

 

Start your Professional-Cloud-Architect Exam Questions Preparation: https://examsforall.lead2passexam.com/Google/valid-Professional-Cloud-Architect-exam-dumps.html