
[May-2023] Google Professional-Cloud-DevOps-Engineer Dumps – Reduce Your Chance of Failure in Professional-Cloud-DevOps-Engineer Exam
To help you achieve your ultimate goal, we suggest the actual Google Professional-Cloud-DevOps-Engineer dumps for your Google Cloud Certified - Professional Cloud DevOps Engineer Exam exam preparation to use as your guideline.
NEW QUESTION 19
You created a Stackdriver chart for CPU utilization in a dashboard within your workspace project. You want to share the chart with your Site Reliability Engineering (SRE) team only. You want to ensure you follow the principle of least privilege. What should you do?
- A. Click "Share chart by URL" and provide the URL to the SRE team. Assign the SRE team the Monitoring Viewer IAM role in the workspace project.
- B. Share the workspace Project ID with the SRE team. Assign the SRE team the Monitoring Viewer IAM role in the workspace project.
- C. Click "Share chart by URL" and provide the URL to the SRE team. Assign the SRE team the Dashboard Viewer IAM role in the workspace project.
- D. Share the workspace Project ID with the SRE team. Assign the SRE team the Dashboard Viewer IAM role in the workspace project.
Answer: A
Explanation:
https://cloud.google.com/monitoring/access-control
NEW QUESTION 20
Your organization recently adopted a container-based workflow for application development. Your team develops numerous applications that are deployed continuously through an automated build pipeline to a Kubernetes cluster in the production environment. The security auditor is concerned that developers or operators could circumvent automated testing and push code changes to production without approval. What should you do to enforce approvals?
- A. Use an Admission Controller to verify that incoming requests originate from approved sources.
- B. Enable binary authorization inside the Kubernetes cluster and configure the build pipeline as an attestor.
- C. Leverage Kubernetes Role-Based Access Control (RBAC) to restrict access to only approved users.
- D. Configure the build system with protected branches that require pull request approval.
Answer: B
Explanation:
The keywords here is "developers or operators". Option A the operators could push images to production without approval (operators could touch the cluster directly and the cluster cannot do any action against them). Rest same as francisco_guerra.
NEW QUESTION 21
Your company follows Site Reliability Engineering practices. You are the person in charge of Communications for a large, ongoing incident affecting your customer-facing applications. There is still no estimated time for a resolution of the outage. You are receiving emails from internal stakeholders who want updates on the outage, as well as emails from customers who want to know what is happening. You want to efficiently provide updates to everyone affected by the outage. What should you do?
- A. Focus on responding to internal stakeholders at least every 30 minutes. Commit to "next update" times.
- B. Delegate the responding to internal stakeholder emails to another member of the Incident Response Team.
Focus on providing responses directly to customers. - C. Provide periodic updates to all stakeholders in a timely manner. Commit to a "next update" time in all communications.
- D. Provide all internal stakeholder emails to the Incident Commander, and allow them to manage internal communications. Focus on providing responses directly to customers.
Answer: B
NEW QUESTION 22
You support an e-commerce application that runs on a large Google Kubernetes Engine (GKE) cluster deployed on-premises and on Google Cloud Platform. The application consists of microservices that run in containers. You want to identify containers that are using the most CPU and memory. What should you do?
- A. Use Prometheus to collect and aggregate logs per container, and then analyze the results in Grafana.
- B. Use the Stackdriver Monitoring API to create custom metrics, and then organize your containers using groups.
- C. Use Stackdriver Kubernetes Engine Monitoring.
- D. Use Stackdriver Logging to export application logs to BigOuery. aggregate logs per container, and then analyze CPU and memory consumption.
Answer: A
NEW QUESTION 23
Your organization recently adopted a container-based workflow for application development. Your team develops numerous applications that are deployed continuously through an automated build pipeline to a Kubernetes cluster in the production environment. The security auditor is concerned that developers or operators could circumvent automated testing and push code changes to production without approval. What should you do to enforce approvals?
- A. Use an Admission Controller to verify that incoming requests originate from approved sources.
- B. Leverage Kubernetes Role-Based Access Control (RBAC) to restrict access to only approved users.
- C. Enable binary authorization inside the Kubernetes cluster and configure the build pipeline as an attestor.
- D. Configure the build system with protected branches that require pull request approval.
Answer: D
NEW QUESTION 24
You support a Node.js application running on Google Kubernetes Engine (GKE) in production. The application makes several HTTP requests to dependent applications. You want to anticipate which dependent applications might cause performance issues. What should you do?
- A. Modify the Node.js application to log HTTP request and response times to dependent applications. Use Stackdriver Logging to find dependent applications that are performing poorly.
- B. Instrument all applications with Stackdriver Trace and review inter-service HTTP requests.
- C. Use Stackdriver Debugger to review the execution of logic within each application to instrument all applications.
- D. Instrument all applications with Stackdriver Profiler.
Answer: B
NEW QUESTION 25
You are creating and assigning action items in a postmodern for an outage. The outage is over, but you need to address the root causes. You want to ensure that your team handles the action items quickly and efficiently. How should you assign owners and collaborators to action items?
- A. Assign the team lead as the owner for all action items because they are in charge of the SRE team.
- B. Assign collaborators but no individual owners to the items to keep the postmortem blameless.
- C. Assign multiple owners for each item to guarantee that the team addresses items quickly
- D. Assign one owner for each action item and any necessary collaborators.
Answer: D
NEW QUESTION 26
You are working with a government agency that requires you to archive application logs for seven years. You need to configure Stackdriver to export and store the logs while minimizing costs of storage. What should you do?
- A. Develop an App Engine application that pulls the logs from Stackdriver and saves them in BigQuery.
- B. Create an export in Stackdriver and configure Cloud Pub/Sub to store logs in permanent storage for seven years.
- C. Create a sink in Stackdriver, name it, create a bucket on Cloud Storage for storing archived logs, and then select the bucket as the log export destination.
- D. Create a Cloud Storage bucket and develop your application to send logs directly to the bucket.
Answer: C
Explanation:
https://cloud.google.com/logging/docs/routing/overview
NEW QUESTION 27
You support a web application that is hosted on Compute Engine. The application provides a booking service for thousands of users. Shortly after the release of a new feature, your monitoring dashboard shows that all users are experiencing latency at login. You want to mitigate the impact of the incident on the users of your service. What should you do first?
- A. Upsize the virtual machines running the login services.
- B. Deploy a new release to see whether it fixes the problem.
- C. Review the Stackdriver monitoring.
- D. Roll back the recent release.
Answer: A
Explanation:
Rollback to previous stable version. Then you need to find what is causing the issue.
NEW QUESTION 28
You support the backend of a mobile phone game that runs on a Google Kubernetes Engine (GKE) cluster. The application is serving HTTP requests from users. You need to implement a solution that will reduce the network cost. What should you do?
- A. Configure the VPC as a Shared VPC Host project.
- B. Configure your Kubernetes cluster as a Private Cluster.
- C. Configure your network services on the Standard Tier.
- D. Configure a Google Cloud HTTP Load Balancer as Ingress.
Answer: A
NEW QUESTION 29
You have a CI/CD pipeline that uses Cloud Build to build new Docker images and push them to Docker Hub.
You use Git for code versioning. After making a change in the Cloud Build YAML configuration, you notice that no new artifacts are being built by the pipeline. You need to resolve the issue following Site Reliability Engineering practices. What should you do?
- A. Run a Git compare between the previous and current Cloud Build Configuration files to find and fix the bug.
- B. Change the CI pipeline to push the artifacts is Container Registry instead of Docker Hub.
- C. Upload the configuration YAML file to Cloud Storage and use Error Reporting to identify and fix the issue.
- D. Disable the CI pipeline and revert to manually building and pushing the artifacts.
Answer: B
NEW QUESTION 30
You support a high-traffic web application with a microservice architecture. The home page of the application displays multiple widgets containing content such as the current weather, stock prices, and news headlines. The main serving thread makes a call to a dedicated microservice for each widget and then lays out the homepage for the user. The microservices occasionally fail; when that happens, the serving thread serves the homepage with some missing content. Users of the application are unhappy if this degraded mode occurs too frequently, but they would rather have some content served instead of no content at all. You want to set a Service Level Objective (SLO) to ensure that the user experience does not degrade too much. What Service Level Indicator {SLI) should you use to measure this?
- A. A quality SLI: the ratio of non-degraded responses to total responses
- B. A freshness SLI: the proportion of widgets that have been updated within the last 10 minutes
- C. A latency SLI: the ratio of microservice calls that complete in under 100 ms to the total number of microservice calls
- D. An availability SLI: the ratio of healthy microservices to the total number of microservices
Answer: D
NEW QUESTION 31
You support a multi-region web service running on Google Kubernetes Engine (GKE) behind a Global HTTP'S Cloud Load Balancer (CLB). For legacy reasons, user requests first go through a third-party Content Delivery Network (CDN). which then routes traffic to the CLB. You have already implemented an availability Service Level Indicator (SLI) at the CLB level. However, you want to increase coverage in case of a potential load balancer misconfiguration. CDN failure, or other global networking catastrophe. Where should you measure this new SLI?
Choose 2 answers
- A. A synthetic client that periodically sends simulated user requests
- B. Metrics exported from the application servers
- C. GKE health checks for your application servers
- D. Instrumentation coded directly in the client
- E. Your application servers' logs
Answer: B,C
NEW QUESTION 32
You support a web application that runs on App Engine and uses CloudSQL and Cloud Storage for data storage. After a short spike in website traffic, you notice a big increase in latency for all user requests, increase in CPU use, and the number of processes running the application. Initial troubleshooting reveals:
After the initial spike in traffic, load levels returned to normal but users still experience high latency.
Requests for content from the CloudSQL database and images from Cloud Storage show the same high latency.
No changes were made to the website around the time the latency increased.
There is no increase in the number of errors to the users.
You expect another spike in website traffic in the coming days and want to make sure users don't experience latency. What should you do?
- A. Move the application from App Engine to Compute Engine.
- B. Enable high availability on the CloudSQL instances.
- C. Upgrade the GCS buckets to Multi-Regional.
- D. Modify the App Engine configuration to have additional idle instances.
Answer: B
NEW QUESTION 33
You support a large service with a well-defined Service Level Objective (SLO). The development team deploys new releases of the service multiple times a week. If a major incident causes the service to miss its SLO, you want the development team to shift its focus from working on features to improving service reliability. What should you do before a major incident occurs?
- A. Develop an appropriate error budget policy in cooperation with all service stakeholders.
- B. Negotiate with the development team to reduce the release frequency to no more than once a week.
- C. Negotiate with the product team to always prioritize service reliability over releasing new features.
- D. Add a plugin to your Jenkins pipeline that prevents new releases whenever your service is out of SLO.
Answer: A
Explanation:
Reason : Incident has not occurred yet, even when development team is already pushing new features multiple times a week. The option A says, to define an error budget "policy", not to define error budget(It is already present). Just simple means to bring in all stakeholders, and decide how to consume the error budget effectively that could bring balance between feature deployment and reliability.
The goals of this policy are to: -- Protect customers from repeated SLO misses -- Provide an incentive to balance reliability with other features https://sre.google/workbook/error-budget-policy/
NEW QUESTION 34
You manage several production systems that run on Compute Engine in the same Google Cloud Platform (GCP) project. Each system has its own set of dedicated Compute Engine instances. You want to know how must it costs to run each of the systems. What should you do?
- A. Name each virtual machine (VM) after the system it runs. Set up a usage report export to a Cloud Storage bucket. Configure the bucket as a source in BigQuery to query costs based on VM name.
- B. Enrich all instances with metadata specific to the system they run. Configure Stackdriver Logging to export to BigQuery, and query costs based on the metadata.
- C. In the Google Cloud Platform Console, use the Cost Breakdown section to visualize the costs per system.
- D. Assign all instances a label specific to the system they run. Configure BigQuery billing export and query costs per label.
Answer: A
NEW QUESTION 35
You support a production service that runs on a single Compute Engine instance. You regularly need to spend time on recreating the service by deleting the crashing instance and creating a new instance based on the relevant image. You want to reduce the time spent performing manual operations while following Site Reliability Engineering principles. What should you do?
- A. Add a Load Balancer in front of the Compute Engine instance and use health checks to determine the system status.
- B. File a bug with the development team so they can find the root cause of the crashing instance.
- C. Create a Stackdriver Monitoring dashboard with SMS alerts to be able to start recreating the crashed instance promptly after it has crashed.
- D. Create a Managed Instance Group with a single instance and use health checks to determine the system status.
Answer: D
NEW QUESTION 36
You support an application running on GCP and want to configure SMS notifications to your team for the most critical alerts in Stackdriver Monitoring. You have already identified the alerting policies you want to configure this for. What should you do?
- A. Download and configure a third-party integration between Stackdriver Monitoring and an SMS gateway. Ensure that your team members add their SMS/phone numbers to the external tool.
- B. Select the Webhook notifications option for each alerting policy, and configure it to use a third-party integration tool. Ensure that your team members add their SMS/phone numbers to the external tool.
- C. Configure a Slack notification for each alerting policy. Set up a Slack-to-SMS integration to send SMS messages when Slack messages are received. Ensure that your team members add their SMS/phone numbers to the external integration.
- D. Ensure that your team members set their SMS/phone numbers in their Stackdriver Profile. Select the SMS notification option for each alerting policy and then select the appropriate SMS/phone numbers from the list.
Answer: C
NEW QUESTION 37
You have a set of applications running on a Google Kubernetes Engine (GKE) cluster, and you are using Stackdriver Kubernetes Engine Monitoring. You are bringing a new containerized application required by your company into production. This application is written by a third party and cannot be modified or reconfigured. The application writes its log information to /var/log/app_messages.log, and you want to send these log entries to Stackdriver Logging. What should you do?
- A. Deploy a Fluentd daemonset to GKE. Then create a customized input and output configuration to tail the log file in the application's pods and write to Slackdriver Logging.
- B. Use the default Stackdriver Kubernetes Engine Monitoring agent configuration.
- C. Install Kubernetes on Google Compute Engine (GCE> and redeploy your applications. Then customize the built-in Stackdriver Logging configuration to tail the log file in the application's pods and write to Stackdriver Logging.
- D. Write a script to tail the log file within the pod and write entries to standard output. Run the script as a sidecar container with the application's pod. Configure a shared volume between the containers to allow the script to have read access to /var/log in the application container.
Answer: A
NEW QUESTION 38
......
100% Free Professional-Cloud-DevOps-Engineer Demo-Trial [Pdf], get it now: https://drive.google.com/open?id=15xCzq5hJbAjqq36Zz_HMkTwyt10wrYY9
Accurate & Verified Answers As Seen in the Real Exam here: https://www.testpdf.com/Professional-Cloud-DevOps-Engineer-exam-braindumps.html
