[2024年10月18日]Cloud-Digital-Leader練習試験問題集で試験99%合格率があります [Q173-Q193]

Share

[2024年10月18日]Cloud-Digital-Leader練習試験問題集で試験99%合格率があります

最新の検証済みCloud-Digital-Leader問題と解答、合格保証もしくは全額返金

質問 # 173
Your organization meant to purchase a 3-year Committed Use Discount, but accidentally purchased a 1-year Committed Use Discount instead. What should your organization do?

  • A. Contact Trust and Safety.
    C Contact Cloud Billing Support.
  • B. Contact your financial institution.
  • C. Contact Technical Support.

正解:C

解説:
Explanation
Graphical user interface, text, application Description automatically generated

https://cloud.google.com/compute/docs/instances/signing-up-committed-use-discounts


質問 # 174
Your company has signed up with a cloud provider and you will be using storage and vir-tual machines with the provider. The provider has provided your organization some expec-tations for what the service should perform at. What type of agreement provides a guar-antee of a certain level of service such as "Uptime"?

  • A. Warranty
  • B. Performance Agreement
  • C. Service Level Agreement
  • D. Interconnection Agreement

正解:C

解説:
Service Level Agreement (SLA)
A service level agreement (SLA) is a contract between a service provider (either internal or external) and the end user that defines the level of service expected from the service provider. Some common SLA's are uptime, Response Time, etc.


質問 # 175
Your organization stores highly sensitive data on-premises that cannot be sent over the public internet. The data must be processed both on-premises and in the cloud.
What should your organization do?

  • A. Create a Cloud VPN tunnel between Google Cloud and your data center
  • B. Order a Partner Interconnect connection with your network provider
  • C. Enable Private Google Access in your Google Cloud VPC network
  • D. Configure Identity-Aware Proxy (IAP) in your Google Cloud VPC network

正解:B

解説:
After the service provider provisions your connection, you can start passing traffic between your networks by using the service provider's network.


質問 # 176
You are working with a user to set up an application in a new VPC behind a firewall and it is no-ticed that the user is concerned about data egress. Therefore, to provide assistance you want to con-figure the fewest open egress ports. Which of the following statement is correct?

  • A. Set up a high-priority (1000) rule that blocks all egress and a low-priority (65534) rule that allows only the appropriate ports.
  • B. Set up a high-priority (1000) rule to allow the appropriate ports.
  • C. Set up a low-priority (65534) rule that blocks all egress and a high-priority rule (1000) that allows only the appropriate ports.
  • D. Set up a high-priority (1000) rule that pairs both ingress and egress ports.

正解:C

解説:
Implied rules Every VPC network has two implied firewall rules. These rules exist, but are not shown in the Cloud Console:
Implied allow egress rule. An egress rule whose action is allow, destination is 0.0.0.0/0, and priority is the lowest possible (65535) lets any instance send traffic to any destination, except for traffic blocked by Google Cloud. A higher priority firewall rule may restrict outbound access. Internet access is allowed if no other firewall rules deny outbound traffic and if the instance has an external IP address or uses a Cloud NAT instance. For more information, see Internet access requirements.
Reference link- https://cloud.google.com/vpc/docs/firewalls


質問 # 177
How does switching from on-premises to the cloud help organizations gain value over time?

  • A. They can expand their internal application hosting infrastructure
  • B. They can increase development of data recovery systems
  • C. They can relax their on-premises data security protocols
  • D. They can focus their efforts on solution development

正解:D


質問 # 178
In Google Cloud IAM: if a policy applied at the project level gives you Owner permissions, your access to an individual resource in that project might be restricted to View permission if someone applies a more restrictive policy directly to that resource. What is correct below the options

  • A. False
  • B. True
  • C. None of the above.
  • D. Not defined by GCP.

正解:A

解説:
Policies are a union of those applied to resources themselves and those inherited from higher levels in the hierarchy. If a parent policy is less restrictive, it overrides a more restrictive policy applied to the resource. If a parent policy is more restrictive, it does not override a less restrictive policy applied to the resource. Therefore, access granted at a higher level in the hierarchy cannot be taken away by policies applied at a lower level in the hierarchy.


質問 # 179
What is logging within the context of cloud technology?

  • A. Monitoring network and resource limitations
  • B. Recording infrastructure and hardware expenditure
  • C. Writing application and operating system events as text
  • D. Tracking source code across an organization

正解:C

解説:
Cloud Logging is a fully managed service that allows you to store, search, analyze, monitor, and alert on logging data and events from Google Cloud and Amazon Web Services


質問 # 180
Your company has signed up with a cloud provider and you will be using storage and vir-tual machines with the provider. The provider has provided your organization some expec-tations for what the service should perform at. What type of agreement provides a guar-antee of a certain level of service such as "Uptime"?

  • A. Warranty
  • B. Performance Agreement
  • C. Service Level Agreement
  • D. Interconnection Agreement

正解:C

解説:
Explanation
Service Level Agreement (SLA)
A service level agreement (SLA) is a contract between a service provider (either internal or external) and the end user that defines the level of service expected from the service provider. Some common SLA's are uptime, Response Time, etc.


質問 # 181
Your company has multiple internal applications used by your employees. You also have to give access to certain vendors and contractors. What is a good option for you to adopt?

  • A. Use an external identity provider that is famous and popular like Facebook or Twitter; that way, even your vendors and contractors will have an account there.
  • B. Keep the credentials separate for each application to reduce the blast radius in case of any issues.
  • C. Use an IDaaS (Identity as a Service) product that can centrally manage authenti-cation and authorization for the applications.
  • D. Allow all users, especially contractors and vendors, to bring their own identities, like those at gmail.com.

正解:C

解説:
IDaaS - identity providers managed by the company give better control over security and privacy. Security/access can be set granularly, while also being centralized. You don't have to manage multiple credentials.


質問 # 182
Your organization needs to restrict access to a Cloud Storage bucket. Only employees who are based in Canada should be allowed to view the contents.
What is the most effective and efficient way to satisfy this requirement?

  • A. Create a group consisting of all Canada-based employees, and give the group access to the bucket
  • B. Configure Google Cloud Armor to allow access to the bucket only from IP addresses based in Canada
  • C. Give each employee who is based in Canada access to the bucket
  • D. Deploy the Cloud Storage bucket to a Google Cloud region in Canada

正解:A


質問 # 183
What is a key difference between VMs and containers?

  • A. Virtual Machines use a shared operating system and are therefore lighter; containers are heavier on resources.
  • B. Each Virtual Machine in a machine has its own operating system; containers will share the same operating system.
  • C. Virtual Machines can only run Linux; containers can run any operating system.
  • D. Virtual Machines take less time to launch; containers take longer to launch.

正解:B

解説:
Explanation
VMs have their individual OSs. All containers on a node use the host operating system.


質問 # 184
Your organization is developing an application that will capture a large amount of data from millions of different sensor devices spread all around the world. Your organization needs a database that is suitable for worldwide, high-speed data storage of a large amount of unstructured data.
Which Google Cloud product should your organization choose?

  • A. Cloud SQL
  • B. Cloud Bigtable
  • C. Firestore
  • D. Cloud Data Fusion

正解:B

解説:
Reference: https://cloud.google.com/bigtable
Cloud Bigtable is a sparsely populated table that can scale to billions of rows and thousands of columns, enabling you to store terabytes or even petabytes of data. A single value in each row is indexed; this value is known as the row key. Bigtable is ideal for storing very large amounts of single-keyed data with very low latency. It supports high read and write throughput at low latency, and it is an ideal data source for MapReduce operations.
Bigtable is exposed to applications through multiple client libraries, including a supported extension to the Apache HBase library for Java. As a result, it integrates with the existing Apache ecosystem of open- source Big Data software.
Bigtable's powerful back-end servers offer several key advantages over a self-managed HBase installation:
Incredible scalability. Bigtable scales in direct proportion to the number of machines in your cluster. A self- managed HBase installation has a design bottleneck that limits the performance after a certain threshold is reached. Bigtable does not have this bottleneck, so you can scale your cluster up to handle more reads and writes.
Simple administration. Bigtable handles upgrades and restarts transparently, and it automatically maintains high data durability. To replicate your data, simply add a second cluster to your instance, and replication starts automatically. No more managing replicas or regions; just design your table schemas, and Bigtable will handle the rest for you.
Cluster resizing without downtime. You can increase the size of a Bigtable cluster for a few hours to handle a large load, then reduce the cluster's size again-all without any downtime. After you change a cluster's size, it typically takes just a few minutes under load for Bigtable to balance performance across all of the nodes in your cluster.


質問 # 185
A customer deploys an application to App Engine and needs to check for Open Web Appli-cation Security Project (OWASP) vulnerabilities. Which service should be used to accom-plish this?

  • A. Cloud Security Scanner
  • B. Forseti Security
  • C. Binary Authorization
  • D. Cloud Armor

正解:A

解説:
Web Security Scanner identifies security vulnerabilities in your App Engine, Google Kubernetes Engine (GKE), and Compute Engine web applications. It crawls your application, following all links within the scope of your starting URLs, and attempts to exercise as many user inputs and event handlers as possible.
Currently, Web Security Scanner only supports public URLs and IPs that aren't behind a firewall. Web Security Scanner currently supports the App Engine standard environment and App Engine flexible environments, Compute Engine instances, and GKE resources.
Reference link- https://cloud.google.com/security-command-center/docs/concepts-web-security-scanner-overview


質問 # 186
You are a program manager in a company and handling a project and you need to create a virtual machine on google cloud console that will be very simple to set up, by flipping a bit via command, API, or with developer console that gives you 30 seconds to shut down when you're preempted, allow you to save your work that also helps in the company budget upto 70-80% of less charges than the regular VMs.

  • A. Google Cloud VM Instances
  • B. None of the above.
  • C. Preemptible Virtual Machines.
  • D. Bare Metal Solutions

正解:C

解説:
Preemptible VMs have all these features
Simple configuration
Create a preemptible instance simply by flipping a bit via command, API, or developer console.
Easy extensibility
Attach GPUs and local SSDs to preemptible instances for additional performance and savings.
Graceful shutdown
Compute Engine gives you 30 seconds to shut down when you're preempted, letting you save your work in progress for later.
Large scale computing
Spin up as many instances as you need and turn them off when you're done. You only pay for what you use.
Quickly reclaim capacity
Managed instance groups automatically recreate your instances when they're preempted (if capacity is available).
Fixed pricing
Preemptible VMs have fixed pricing up to 80% off regular instances. They show up on your bill separately so you'll see just how much you're saving.


質問 # 187
Your large and frequently changing organization's user information is stored in an on-premises LDAP database. The database includes user passwords and group and organization membership.
How should your organization provision Google accounts and groups to access Google Cloud resources?

  • A. Use the Firebase Authentication REST API to create users
  • B. Use the Identity Platform REST API to create users
  • C. Replicate the LDAP infrastructure on Compute Engine
  • D. Use Google Cloud Directory Sync to create users

正解:D

解説:
You can run a single instance of Google Cloud Directory Sync to synchronize user accounts and groups to Google Cloud.


質問 # 188
What according to you are NOT the key capabilities of In-App Messaging?

  • A. Sending relevant messages to the target audience
  • B. Increasing conversion for user-to-user sharing
  • C. Creating customized and flexible alerts
  • D. Target messages accordingly to the change in the behavior pattern of the target audience.

正解:B

解説:
Explanation
In-App Messaging
Engage active app users with contextual messages.
Firebase In-App Messaging helps you engage users who are actively using your app by sending them targeted and contextual messages that nudge them to complete key in-app actions - like beating a game level, buying an item, or subscribing to content.


質問 # 189
Your organization wants to run a container-based application on Google Cloud. This application is expected to increase in complexity. You have a security need for fine-grained control of traffic between the containers. You also have an operational need to exercise fine-grained control over the application's scaling policies.
What Google Cloud product or feature should your organization use?

  • A. Google Kubernetes Engine cluster
  • B. Compute Engine virtual machines
  • C. Cloud Run
  • D. App Engine

正解:A

解説:
Google Kubernetes Engine GKE seems a better fit since the requirement is for "security need for fine-grained control of traffic between the containers" and "fine-grained control over scaling policies". Such level of control is easier on GKE that Cloud Run.

Reference link- https://cloud.google.com/blog/products/containers-kubernetes/when-to-use-google-kubernetes-engine-vs-cloud-run-for-containers


質問 # 190
You are a program manager in a company and handling a project and you need to create a virtual machine on google cloud console that will be very simple to set up, by flipping a bit via command, API, or with developer console that gives you 30 seconds to shut down when you're preempted, allow you to save your work that also helps in the company budget upto 70-80% of less charges than the regular VMs.

  • A. Google Cloud VM Instances
  • B. None of the above.
  • C. Preemptible Virtual Machines.
  • D. Bare Metal Solutions

正解:C

解説:
Explanation
Preemptible VMs have all these features
Simple configuration
Create a preemptible instance simply by flipping a bit via command, API, or developer console.
Easy extensibility
Attach GPUs and local SSDs to preemptible instances for additional performance and savings.
Graceful shutdown
Compute Engine gives you 30 seconds to shut down when you're preempted, letting you save your work in progress for later.
Large scale computing
Spin up as many instances as you need and turn them off when you're done. You only pay for what you use.
Quickly reclaim capacity
Managed instance groups automatically recreate your instances when they're preempted (if capacity is available).
Fixed pricing
Preemptible VMs have fixed pricing up to 80% off regular instances. They show up on your bill separately so you'll see just how much you're saving.


質問 # 191
What is the difference between Standard and Coldline storage?

  • A. Coldline storage is for infrequently accessed data.
  • B. Coldline storage is for data for which a slow transfer rate is acceptable.
  • C. Standard and Coldline storage have different durability guarantees.
  • D. Standard and Coldline storage use different APIs.

正解:A

解説:
Reference: https://www.msp360.com/resources/blog/google-cloud-nearline-storage-vs-coldline-vs-standard/ Google Cloud Coldline is a new cold-tier storage for archival data with access frequency of less than once per year. Unlike other cold storage options, Nearline has no delays prior to data access, so now it is the leading solution among competitors.


質問 # 192
Your organization runs many workloads in different Google Cloud projects, each linked to the same billing account. Each project's workload costs can vary from month to month, but the overall combined cost of all projects is relatively stable. Your organization needs to optimize its cost.
What should your organization do?

  • A. Purchase a commitment per project for each project's usual minimum
  • B. Turn on committed use discount sharing, and create a commitment for the combined usage
  • C. Create a billing account per project, and link each project to a different billing account
  • D. Move all workloads from all different projects into one single consolidated project

正解:B

解説:
Turn on committed use discount sharing, and create a commitment for the combined usage Sharing your committed use discounts across all your projects reduces the overhead of managing discounts on a per-project basis, and maximizes your savings by pooling all your discounts across your projects' resource usage. If you have multiple projects that share the same Cloud Billing account, you can enable committed use discount sharing so all of your projects within that Cloud Billing account share all of your committed use discount contracts. Your sustained use discounts are also pooled at the same time. That is, sustained use discounts are calculated using the total resources across these projects, rather than just the resources within a single project.

Reference link- https://cloud.google.com/compute/docs/instances/signing-up-committed-use-discounts#sharing_committed_use_discounts_across_projects


質問 # 193
......

Cloud-Digital-Leaderリアル有効かつ正確な問題集373問題と解答が待ってます:https://www.jpntest.com/shiken/Cloud-Digital-Leader-mondaishu

Cloud-Digital-Leader認証と実際の解答があります:https://drive.google.com/open?id=125ZWhig_RiGSXFQmRmqrTj2sqKqZ0i_v

弊社を連絡する

我々は12時間以内ですべてのお問い合わせを答えます。

オンラインサポート時間:( UTC+9 ) 9:00-24:00
月曜日から土曜日まで

サポート:現在連絡