WorksheetsG-Arch Sample Q's Whizlabs
Total questions: 25
Worksheet time: 14mins
Terram Earth receives daily data in the Cloud using network interconnects with private on-premises data centers.A subset of the data is transmitted and processed in real time and the rest daily, when the vehicles return to home base. You have been asked to prepare a complete solution for the ingestion and management of this data, which must be both fully stored and aggregated for analytics with Bigquery.
Real-time data is streamed to BigQuery, and each day a job creates all the required aggregate processing
Real-time data is sent via Pub / Sub and processed by Dataflow that stores data in Cloud Storage and computes the aggregates for BigQuery.
The Daily Sensor data is uploaded to Cloud Storage with parallel composite uploads and at the end with a Cloud Storage Trigger a Dataflow procedure is activated
Daily Sensor data is loaded quickly with BigQuery Data Transfer Service and processed on demand via job
To ensure that your application will handle the load even if an entire zone fails, what should you do? Select all correct options.
Don’t select the “Multizone” option when creating your managed instance group.
Spread your managed instance group over two zones and overprovision by 100%. (for Two Zone)
Create a regional unmanaged instance group and spread your instances across multiple zones.
Overprovision your regional managed instance group by at least 50%. (for Three Zones)
The case study explains that: EHR hosts several legacy file-based and API integrations with on-site insurance providers, which are expected to be replaced in the coming years. Hence, there is no plan to upgrade or move these systems now.
But EHR wants to use these APIs from its applications in Google Cloud so that they remain on-premise and private, securely exposing them.
In other words, EHR wants to protect these APIs and the data they process, connect them only to its VPC environment in Google Cloud, with its systems in a protected DMZ that is not accessible from the Internet. Providers will be able to access integrations only through applications and with all possible precautions.
Gated Egress and VPC Service Controls
Cloud Endpoint
Cloud VPN
Cloud Composer
Helicopter Racing League (HRL) wants to migrate their existing cloud service to a new platform with solutions that allow them to use and analyze video of the races both in real-time and recorded for broadcasting, on-demand archive, forecasts, and deeper insights.
There is the need to migrate the recorded videos from another provider without service interruption.
The idea is to switch immediately the video service to GCP while migrating selected contents.
Users cannot directly access the contents wherever they are stored, but only through the correct and secure procedure specially setup.
Which of the following strategies do you think could be feasible for serving the contents and migrating the videos with minimal effort (pick 3)?
Use Cloud CDN with internet network endpoint group
Use a Cloud Function that can fetch the video from the correct source
Use Apigee
Use Cloud Storage Transfer Service
Use Cloud Storage streaming service
A digital Media company has recently moved its infrastructure from On-premise to Google Cloud, they have several instances under a Global HTTPS load balancer, a few days ago the Application and Infrastructure were subjected to DDOS attacks, they are looking for a service that would provide a defense mechanism against the DDOS attacks. Please select the relevant service.
Cloud Armor
Cloud-Identity Aware Proxy
GCP Firewalls
. IAM policies
You work in an international company and manage many GCP Compute Engine instances using SSH and RDS protocols.The management, for security reasons, asks you that VMs cannot have multiple public IP addresses. So you are actually no longer able to manage these VMs.
How is it possible to manage in a simple and secure way, respecting the company rules, access and operations with these systems?
Bastion Hosts
Nat Instances
IAP’s TCP forwarding
Security Command Center
Helicopter Racing League (HRL) wants to create and update predictions on the results of the championships, with data that collects during the rages. HRL wants to create long-term Forecasts with the data from video collected both while taking (first processing) and during streaming for users. HLR want to exploit also existing video content that is stored in object storage with their existing cloud provider
On the advice of the Cloud Architects, they decided to use the following strategies:
A. Creating experimental forecast models with minimal code in the powerful GCP environment, using also the data already collected
B. The ability and culture to develop highly customized models that are continuously improved with the data that it gradually collects. They plan to try multiple open source frameworks
C. To Integrate teamwork and create/optimize MLOps processes
D. To Serve the models in an optimized environment
Video Intelligence
TensorFlow Enterprise and KubeFlow for the customized models
BigQuery ML
Vertex-AI
Helicopter Racing League (HRL) offers premium contents and, among their business requirements, has:
To increase the number of concurrent viewers and
To create a merchandising revenue stream
So, they want to offer service subscriptions for their and partner services and manage monetization, pay-as-use management, flat-use control, and rate-limiting. All the functionalities that can assure a managed revenue stream in the simplest way.
Which is the best GCP Service to achieve that?
Cloud Endpoints
Apigee
Cloud Tasks
Cloud Billing
API Gateway
For this question, refer to the TerramEarth case study. TerramEarth needs to migrate legacy monolithic applications into containerized RESTful microservices. The development team is experimenting with the use of packaged procedures with containers in a completely serverless environment, using Cloud Run. Before migrating the existing code into production it was decided to perform a lift and shift of the monolithic application and to develop the new features that are required with serverless microservices.
So, they want to carry out a gradual migration, activating the new microservice functionalities while maintaining the monolithic application for all the other activities. The problem now is how to integrate the legacy monolithic application with the new microservices to have a consistent interface and simple management.
Which of the following techniques can be used (pick 3)?
Use an HTTP(S) Load Balancer
Develop a proxy inside the monolithic application for integratio
Use Cloud Endpoints/Apigee
Use Serverless NEGs for integration
Use App Engine flexible edition
Your company has reserved a monthly budget for your project. You want to be informed automatically of your project spend so that you can take action when you approach the limit. What should you do?
Link a credit card with a monthly limit equal to your budget.
Create a budget alert for desired percentages such as 50%, 90%, and 100% of your total monthly budget.
In App Engine Settings, set a daily budget at the rate of 1/30 of your monthly budget.
In the GCP Console, configure billing export to BigQuery. Create a saved view that queries your total spend.
For this question, refer to the Mountkirk Games case study.
MountKirk Games uses Kubernetes and Google Kubernetes Engine. For the management, it is important to use an open platform, cloud-native, and without vendor lock-ins. But they also need to use advanced APIs of GCP services and want to do it securely using standard methodologies, following Google-recommended practices but above all efficiently with maximum security.
Which of the following solutions would you recommend?
API keys
Service Accounts
Workload identity
Workload identity federation
When creating firewall rules, what forms of segmentation can narrow which resources the rule is applied to? (Choose all that apply)
Network range in source filters
Zone
Region
Network tags
Helicopter Racing League (HRL) wants to migrate their existing cloud service to the GCP platform with solutions that allow them to use and analyze video of the races both in real-time and recorded for broadcasting, on-demand archive, forecasts, and deeper insights.
During a race filming, how can you manage both live playbacks of the video and live annotations so that they are immediately accessible to users without coding (pick 2)?
Use HTTP protocol
Use Video Intelligence API Streaming API
Use DataFlow
Use HLS protocol
Use Pub/Sub
What is the best practice for separating responsibilities and access for production and development environments?
Separate project for each environment, each team only has access to their project.
Separate project for each environment, both teams have access to both projects.
Both environments use the same project, but different VPC’s.
Both environments use the same project, just note which resources are in use by which group.
What is the command for creating a storage bucket that has once per month access and is named ‘archive_bucket’?
gsutil rm -coldline gs://archive_bucket
gsutil mb -c coldline gs://archive_bucket
gsutil mb -c nearline gs://archive_bucket
gsutil mb gs://archive_bucket
You need to deploy an update to an application in Google App Engine. The update is risky, but it can only be tested in a live environment. What is the best way to introduce the update to minimize risk?
Deploy a new version of the application but use traffic splitting to only direct a small number of users to the new version.
Deploy the application temporarily and be prepared to pull it back if needed.
Warn users that a new app version may have issues and provide a way to contact you if there are problems.
Your team is redacting a new application that is about to go into production. During testing, it emerges that a developer code allows user input to be used to modify the application and execute commands.This event has thrown everyone into despair and has generated the fear that there are other problems of this type in the system.
Which of the following services may help you?
Cloud Armor
Web Security Scanner
Security Command Center
Shielded GKE nodes
Your company’s development teams use, as required by internal rules, service accounts.
They just forget to delete the service accounts that are no longer used. A coordinator noticed the problem and ordered them to clean up. Now your team is faced with a huge, boring, and potentially dangerous job and has asked you for help.
What advice can you give him?
Service account insights
Cloud Audit Logs
Activity Analyzer
Flow logs
For this question, refer to the Mountkirk Games case study.
Mountkirk Games is building a new multiplayer game that they expect to be very popular. They want to be able to improve every aspect of the game and the infrastructure. To do this, they plan to create a system for telemetry analysis. They want to minimize effort, maximize flexibility, and ease of maintenance.
They also want to be able to perform real-time analyses.
Which of the following services may help to fulfill these requirements?
Pub/Sub and Big Table
Kubeflow
Pub/Sub, Dataflow and BigQuery
Pub/Sub and Cloud Spanner
You work for a multinational company and are migrating an Oracle database to a multi-region Spanner cluster. You have to plan the migration activities and the DBAs have told you that the migration will be almost immediate because no non-standard ISO / IEC features or stored procedures are used.
But you know that there is an element that will necessarily require some maintenance work.
Which is this element?
You need to drop the secondary indexes
You have to change most of the primary keys
You need to manage table partitions
You have to change the schema design of many tables
You need to take streaming data from thousands of Internet of Things (IoT) devices, ingest it, run it through a processing pipeline, and store it for analysis. You want to run SQL queries against your data for analysis. What services in which order should you use for this task?
Cloud Dataflow, Cloud Pub/Sub, BigQuery
Cloud Pub/Sub, Cloud Dataflow, Cloud Dataproc
Cloud Pub/Sub, Cloud Dataflow, BigQuery
App Engine, Cloud Dataflow, BigQuery
You work in a multinational company that is migrating to Google Cloud. The head office has the largest data center and manages a connection network to offices in various countries around the world.
Each country has its own projects to manage the specific procedures of each location, but the management wants to create an integrated organization while maintaining the independence of the projects for the various branches.
How do you plan to organize Networking?
Peered VPC
Cloud Interconnect
Shared VPC
Cloud VPN and Cloud Router
You work as an architect in a company that develops statistical studies on big data and produces reports for its customers. Analysts often allocate VMs to process data with ad hoc development procedures.
You have been called by the administrative department because they have been billed for a very large number of Compute Engine instances, which you also consider excessive in relation to operational needs.
How can you check, without controlling them one by one, which of these systems can be accidentally left active by junior technicians?
Use the Recommender CLI Command
Use Cloud Billing Reports
Use Idle Systems Report in GCP Console
Use Security Command Center Reports
You are now working for an international company that has many Kubernetes projects on various Cloud platforms. These projects involve mainly microservices web applications and are executed either in GCP or in AWS. They have many inter-relationships and there is the involvement of many teams related to development, staging, and production environments.
Your new task is to find the best way to organize these systems.
You need a solution for gaining control on application organization and networking: monitor functionalities, performances, and security in a complex environment.
Which of the following services may help you?
Traffic Director
Istio on GKE
Apigee
App Engine Flexible Edition
In order to speed up the transmission, TerramEarth deployed 5g devices in their vehicles with the goal of achieving an unplanned vehicle downtime to a minimum.
But a set of older vehicles will be still using the old technology for a while.
So, on these vehicles, data is stored locally and can be accessed for analysis only when a vehicle is serviced. In this case, data is downloaded via a maintenance port.
You need to integrate this old procedure with the new one, building a workflow, in the simplest way.
Which of the following tools would you choose?
Cloud Composer
Cloud Interconnect
Appengine
Cloud Build
