Googleは2025年最新のProfessional-Cloud-Architect日本語テスト解説(更新されたのは282問があります)
Professional-Cloud-Architect日本語試験問題集を提供していますGoogle問題
質問 # 43 
- A. Option C
- B. Option B
- C. Option D
- D. Option A
正解:B
解説:
https://cloud.google.com/bigquery/docs/access-control
質問 # 44 
MySQL - user data, inventory, static data
* Redis - metadata, social graph, caching
* Application servers:
Tomcat - Java micro-services
* Nginx - static content
* Apache Beam - Batch processing
* Storage appliances:
iSCSI for VM hosts
* Fiber channel SAN - MySQL databases
* NAS - image storage, logs, backups
* Apache Hadoop/Spark servers:
Data analysis
* Real-time trending calculations
* MQ servers:
Messaging
* Social notifications
* Events
* Miscellaneous servers:
Jenkins, monitoring, bastion hosts, security scanners
* Business Requirements
* Build a reliable and reproducible environment with scaled parity of production. Improve security by defining and adhering to a set of security and Identity and Access Management (IAM) best practices for cloud.
- A. Option C
- B. Option B
- C. Option D
- D. Option A
正解:D
解説:
Follow these rules of thumb when deciding whether to use gsutil or Storage Transfer Service:
When transferring data from an on-premises location, use gsutil.
When transferring data from another cloud storage provider, use Storage Transfer Service.
Otherwise, evaluate both tools with respect to your specific scenario.
Use this guidance as a starting point. The specific details of your transfer scenario will also help you determine which tool is more appropriate
質問 # 45
あなたの会社は、Google Cloud Platformにオンプレミスのユーザー認証PostgreSQLデータベースのバックアップレプリカを構築することに決めました。 データベースは4 TBであり、大規模な更新が頻繁に行われます。
レプリケーションには、プライベートアドレス空間通信が必要です。 どのネットワーキング手法を使用すべきですか?
- A. Google Cloud VPNがデータセンターネットワークに接続
- B. オンプレミスにインストールされたNATおよびTLS変換ゲートウェイ
- C. Google Cloud専用インターコネクト
- D. データセンターネットワークにVPNサーバーが接続されたGoogle Compute Engineインスタンス
正解:C
解説:
Explanation
https://cloud.google.com/docs/enterprise/best-practices-for-enterprise-organizations Google Cloud Dedicated Interconnect provides direct physical connections and RFC 1918 communication between your on-premises network and Google's network. Dedicated Interconnect enables you to transfer large amounts of data between networks, which can be more cost effective than purchasing additional bandwidth over the public Internet or using VPN tunnels.
Benefits:
Traffic between your on-premises network and your VPC network doesn't traverse the public Internet.
Traffic traverses a dedicated connection with fewer hops, meaning there are less points of failure where traffic might get dropped or disrupted.
Your VPC network's internal (RFC 1918) IP addresses are directly accessible from your on-premises network. You don't need to use a NAT device or VPN tunnel to reach internal IP addresses. Currently, you can only reach internal IP addresses over a dedicated connection. To reach Google external IP addresses, you must use a separate connection.
You can scale your connection to Google based on your needs. Connection capacity is delivered over one or more 10 Gbps Ethernet connections, with a maximum of eight connections (80 Gbps total per interconnect).
The cost of egress traffic from your VPC network to your on-premises network is reduced. A dedicated connection is generally the least expensive method if you have a high-volume of traffic to and from Google's network.
References: https://cloud.google.com/interconnect/docs/details/dedicated
質問 # 46 
- A. Option C
- B. Option B
- C. Option D
- D. Option A
正解:B
質問 # 47
この質問については、TerramEarthのケーススタディを参照してください。
環境条件に応じて、TerramEarthの各車両で油圧などの操作パラメーターを調整して、効率を高めることができます。あなたの主な目標は、フィールド内の2000万台のセルラーおよび非接続車両すべての動作効率を高めることです。この目標をどのように達成できますか?
- A. エンジニアにデータのパターンを検査してもらい、運用上の調整を自動的に行うルールを使用してアルゴリズムを作成します。
- B. すべての動作データをキャプチャし、理想的な動作を識別する機械学習モデルをトレーニングし、ローカルで実行して動作調整を自動的に行います。
- C. すべての操作データをキャプチャし、理想的な操作を識別する機械学習モデルをトレーニングし、Google Cloud Machine Learning(ML)プラットフォームでホストして、操作を自動的に調整します。
- D. スライドウィンドウを使用してGoogle Cloud Dataflowストリーミングジョブを実装し、Google Cloud Messaging(GCM)を使用して運用上の調整を自動的に行います。
正解:B
解説:
================================================== =
トピック2、JencoMartのケーススタディ
会社概要
JencoMartは、16か国に10,000を超える店舗を展開するグローバルな小売業者です。店には、食料品、タイヤ、宝石など、さまざまな商品があります。同社のコアバリューの1つは、優れた顧客サービスです。さらに、最近5年間で炭素排出量を50%削減する環境政策を導入しました。
会社背景
JencoMartは1931年に雑貨店としてスタートし、大きな価値とカスタマーサービスで知られる世界有数のブランドの1つに成長しました。時間が経つにつれて、同社は実店舗のみから店舗とオンラインハイブリッドモデルに移行し、売上の25%がオンラインになりました。現在、ジェンコマートはアジアでほとんど存在していませんが、将来の成長のためにその市場の鍵を考えています。
ソリューションコンセプト
JencoMartは、いくつかの重要なアプリケーションをクラウドに移行したいと考えていますが、クラウドと移行に必要なエンジニアリングへの適合性を判断するための技術レビューを完了していません。現在、これらのアプリケーションはすべて、サポート終了のインフラストラクチャ上でホストされています。
既存の技術環境
JencoMartは、すべてのアプリケーションを4つのデータセンターでホストしています。北米に3つ、ヨーロッパに1つ、ほとんどのアプリケーションはデュアルホームです。
JencoMartは、オンプレミスアーキテクチャの依存関係とリソース使用量のメトリックを理解しています。
アプリケーションカスタマーロイヤルティポータル
LAMP(Linux、Apache、MySQL、PHP)アプリケーションは、JencoMartが所有する2つの米国のデータセンターから提供されました。
データベース
* Oracle Database stores user profiles
* 20 TB
* Complex table structure
* Well maintained, clean data
* Strong backup strategy
* PostgreSQL database stores user credentials
* Single-homed in US West
No redundancy
Backed up every 12 hours
* 100% uptime service level agreement (SLA)
* Authenticates all users
Compute
* 30 machines in US West Coast, each machine has:
Twin, dual core CPUs
32GB of RAM
* Twin 250 GB HDD (RAID 1)
* 20 machines in US East Coast, each machine has:
Single dual-core CPU
24 GB of RAM
* Twin 250 GB HDD (RAID 1)
Storage
* Access to shared 100 TB SAN in each location
* Tape backup every week
Business Requirements
* Optimize for capacity during peak periods and value during off-peak periods
* Guarantee service availably and support
* Reduce on-premises footprint and associated financial and environmental impact.
* Move to outsourcing model to avoid large upfront costs associated with infrastructure purchase
* Expand services into Asia.
Technical Requirements
* Assess key application for cloud suitability.
* Modify application for the cloud.
* Move applications to a new infrastructure.
* Leverage managed services wherever feasible
* Sunset 20% of capacity in existing data centers
* Decrease latency in Asia
CEOの声明
JencoMartは、より多くの人々がWebにアクセスするにつれて、顧客との個人的な関係を発展させ続けます。
小売事業の未来はグローバル市場にあり、オンライン体験と店内体験のつながりです。大規模なグローバル企業として、私たちは「グリーン」イニシアチブとポリシーを通じて環境に対する責任も負っています。
CTOステートメント
データセンターを運用する際の課題により、当社の長期的な成功に不可欠な主要テクノロジーへの集中が妨げられています。
データサービスをパブリッククラウドインフラストラクチャに移行すると、ビッグデータと機械学習に集中してサービスの顧客を改善できます。
CFOステートメント
JencoMartは設立以来、データサービスインフラストラクチャに多額の投資を行ってきました。ただし、市場動向の変化により、長期的な成功を確保するためにインフラストラクチャを外部委託する必要があります。このモデルにより、ピーク時に増加する顧客需要に対応し、コストを削減できます。
質問 # 48 
* Support the dealer network with more data on how their customers use their equipment to better
* position new products and services
Have the ability to partner with different companies - especially with seed and fertilizer suppliers
* in the fast-growing agricultural business - to create compelling joint offerings for their customers.
Technical Requirements
Expand beyond a single datacenter to decrease latency to the American Midwest and east
* coast.
Create a backup strategy.
* Increase security of data transfer from equipment to the datacenter.
* Improve data in the data warehouse.
* Use customer and equipment data to anticipate customer needs.
* Application 1: Data ingest
A custom Python application reads uploaded datafiles from a single server, writes to the data warehouse.
Compute:
Windows Server 2008 R2
* - 16 CPUs
- 128 GB of RAM
- 10 TB local HDD storage
Application 2: Reporting
An off the shelf application that business analysts use to run a daily report to see what equipment needs repair. Only 2 analysts of a team of 10 (5 west coast, 5 east coast) can connect to the reporting application at a time.
Compute:
Off the shelf application. License tied to number of physical CPUs
* - Windows Server 2008 R2
- 16 CPUs
- 32 GB of RAM
- 500 GB HDD
Data warehouse:
A single PostgreSQL server
* - RedHat Linux
- 64 CPUs
- 128 GB of RAM
- 4x 6TB HDD in RAID 0
- A. Create a Cloud Storage lifecycle rule with Age: "90", Storage Class: "Standard", and Action: "Set to Nearline", and create a second GCS life-cycle rule with Age: "91", Storage Class: "Nearline", and Action: "Set to Coldline".
- B. Create a Cloud Storage lifecycle rule with Age: "30", Storage Class: "Standard", and Action: "Set to Coldline", and create a second GCS life-cycle rule with Age: "365", Storage Class: "Nearline", and Action: "Delete".
- C. Create a Cloud Storage lifecycle rule with Age: "30", Storage Class: "Standard", and Action: "Set to Coldline", and create a second GCS life-cycle rule with Age: "365", Storage Class: "Coldline", and Action: "Delete".
- D. Create a Cloud Storage lifecycle rule with Age: "30", Storage Class: "Coldline", and Action: "Set to Nearline", and create a second GCS life-cycle rule with Age: "91", Storage Class: "Coldline", and Action: "Set to Nearline".
正解:B
質問 # 49
主なビジネス目標の1つは、アプリケーションに格納されたデータを信頼できることです。 すべての変更をアプリケーションデータに記録するとします。 ログの信頼性を検証するためにログシステムをどのように設計できますか?
- A. 各タイムスタンプとログエントリにデジタル署名し、署名を保存します。
- B. 各ログエントリのJSONダンプを作成し、Google Cloud Storageに保存します。
- C. ログをクラウドと構内に同時に書き込みます。
- D. SQLデータベースを使用し、誰がログテーブルを変更できるかを制限します。
正解:A
解説:
https://cloud.google.com/storage/docs/access-logs
References: https://cloud.google.com/logging/docs/reference/tools/gcloud-logging
質問 # 50
コストを削減するために、エンジニアリングディレクターは、すべての開発者に開発インフラストラクチャリソースをオンプレミス仮想マシン(VM)からGoogle Cloud Platformに移行するよう要求しました。 これらのリソースは、1日中に複数の開始/停止イベントを通過し、状態を維持する必要があります。 Google Cloudで開発環境を実行するプロセスを設計し、財務部門に費用の可視性を提供するよう求められました。 どの2つのステップを取るべきですか? 2つの回答を選択
- A. すべての状態をGoogle Cloud Storageに保存し、永続ディスクをスナップショットし、VMを終了します。
- B. すべての永続ディスクで-auto-deleteフラグを使用し、VMを終了します。
- C. すべての永続ディスクで--no-auto-deleteフラグを使用し、VMを停止します。
- D. Google BigQuery請求のエクスポートとラベルを使用して、費用をグループに関連付ける。
- E. VM CPU使用率ラベルを適用し、BigQuery請求エクスポートにそれを含めます。
- F. すべての状態をローカルSSDに保存し、永続ディスクをスナップショットし、VMを終了します。
正解:C、D
解説:
Explanation
https://cloud.google.com/billing/docs/how-to/export-data-bigquery
質問 # 51 
MySQL - user data, inventory, static data
* Redis - metadata, social graph, caching
* Application servers:
Tomcat - Java micro-services
* Nginx - static content
* Apache Beam - Batch processing
* Storage appliances:
iSCSI for VM hosts
* Fiber channel SAN - MySQL databases
* NAS - image storage, logs, backups
* Apache Hadoop/Spark servers:
Data analysis
* Real-time trending calculations
* MQ servers:
Messaging
* Social notifications
* Events
* Miscellaneous servers:
Jenkins, monitoring, bastion hosts, security scanners
* Business Requirements
* Build a reliable and reproducible environment with scaled parity of production. Improve security by defining and adhering to a set of security and Identity and Access Management (IAM) best practices for cloud.
- A. Option C
- B. Option B
- C. Option D
- D. Option A
正解:D
質問 # 52
Cloud CDN を使用して、Compute Engine インスタンス グループでホストされている静的 HTTP(S) ウェブサイト コンテンツを配信しています。キャッシュヒット率を改善したい。
あなたは何をするべきか?
- A. キャッシュ キーをカスタマイズして、キーからプロトコルを省略します。
- B. Cloud Storage バケット内の静的コンテンツをレプリケートします。CloudCDN をそのバケット上のロードバランサーに向けます。
- C. キャッシュされたオブジェクトの有効期限を短縮します。
- D. HTTP(S) ヘッダー「Cache-Region」がユーザーの最も近いリージョンを指していることを確認してください。
正解:A
解説:
Reference https://cloud.google.com/cdn/docs/bestpractices#
using_custom_cache_keys_to_improve_cache_hit_ratio
質問 # 53
あなたの会社は、すべてのWebトラフィックデータをGoogle Analytics 260でキャプチャし、BigQueryに保存します。国ごとに独自のデータセットがあります。各データセットには複数のテーブルがあります。各国のアナリストが、それぞれの国のデータのみを表示およびクエリできるようにする必要があります。
アクセス権をどのように構成する必要がありますか?
- A. 国ごとにグループを作成します。アナリストをそれぞれの国のグループに追加します。単一のグループを作成する
'all_analysts'、およびすべての国グループをメンバーとして追加します。 'all-analysis'グループにBigQuerydataViewerのIAMロールを付与します。適切なデータセットをビューアクセスで共有し、それぞれのアナリストの国グループと共有します。 - B. 国ごとにグループを作成します。アナリストをそれぞれの国のグループに追加します。単一のグループを作成する
'all_analysts'、およびすべての国グループをメンバーとして追加します。 'all-analysis'グループにBigQuerydataViewerのIAMロールを付与します。それぞれのアナリストの国グループとビューアクセスで適切なテーブルを共有します。 - C. 国ごとにグループを作成します。アナリストをそれぞれの国のグループに追加します。単一のグループを作成する
'all_analysts'、およびすべての国グループをメンバーとして追加します。 'all-analysis'グループにBigQueryjobUserのIAMロールを付与します。それぞれのアナリストの国グループとビューアクセスで適切なテーブルを共有します。 - D. 国ごとにグループを作成します。アナリストをそれぞれの国のグループに追加します。単一のグループを作成する
'all_analysts'、およびすべての国グループをメンバーとして追加します。 'all-analysis'グループにBigQueryjobUserのIAMロールを付与します。適切なデータセットをビューアクセスで共有し、それぞれのアナリストの国グループと共有します。
正解:D
質問 # 54
オンプレミス環境からCloud Storageにファイルをアップロードする必要があります。 お客様が用意した暗号化キーを使用してCloud Storage上でファイルを暗号化する必要があります。 あなたは何をするべきか?
- A. gsutilを使用してファイルをアップロードし、フラグ--encryption-keyを使用して暗号化キーを指定します。
- B. gsutilを使用してバケットを作成し、フラグ--encryption-keyを使用して暗号化キーを指定します。 gsutilを使ってファイルをそのバケットにアップロードします。
- C. 暗号化キーを.boto設定ファイルで提供します。 ファイルをアップロードするには、gsutilを使用してください。
- D. gcloud configを使って暗号化キーを指定します。 gsutilを使ってファイルをそのバケットにアップロードします。
正解:C
解説:
Reference:
https://cloud.google.com/storage/docs/encryption/customer-supplied-keys#gsutil
質問 # 55
VPC内のすべてのcompute Engineインスタンスは、特定のポートでActive Directoryサーバーに接続できるはずです。 インスタンスから発生する他のトラフィックは許可されません。 あなたはVPCファイアウォールルールを使ってこれを強制したいです。
ファイアウォールのルールはどのように設定しますか?
- A. Active Directoryトラフィックを許可するために、優先度100の出力ルールを作成します。 すべてのインスタンスのすべてのトラフィックをブロックするには、プライオリティ1000の暗黙の拒否出力ルールを使用します。
- B. 優先度100の出力ルールを作成して、すべてのインスタンスのすべてのトラフィックを拒否します。 すべてのインスタンスに対してActive Directoryトラフィックを許可するために、優先順位1000の別の出力規則を作成します。
- C. Active Directoryトラフィックを許可するために、優先順位1000の出力ルールを作成します。 すべてのインスタンスのすべてのトラフィックをブロックするために、優先順位100の暗黙の拒否出力ルールに依存します。
- D. すべてのインスタンスのすべてのトラフィックを拒否するために優先順位1000の出力ルールを作成してください。 すべてのインスタンスに対してActive Directoryトラフィックを許可するために、優先度100の別の出力ルールを作成します。
正解:B
解説:
Reference:
https://cloud.google.com/vpc/docs/firewalls
質問 # 56 
- A. Option B
- B. Option C
- C. Option D
- D. Option A
正解:B
質問 # 57
マーケティング部門は、プロモーションメールキャンペーンを送信したいと考えています。開発チームは、直接的な運用管理を最小限に抑えたいと考えています。彼らは、1日あたり100〜500,000回のクリックスルーから、幅広い顧客の反応を予測しています。このリンクは、プロモーションについて説明し、ユーザー情報と設定を収集する簡単なWebサイトにつながります。どのインフラストラクチャをお勧めしますか? (2つ選択)
- A. Google App Engineを使用してWebサイトを提供し、Google Cloud Datastoreを使用してユーザーデータを保存します。
- B. マネージドインスタンスグループを使用してウェブサイトを提供し、Google Cloud Bigtableを使用してユーザーデータを保存します。
- C. Google Container Engineクラスターを使用して、ウェブサイトを提供し、永続ディスクにデータを保存します。
- D. 単一のCompute Engine仮想マシン(VM)を使用して、Google Cloud SQLがサポートするWebサーバーをホストします。
正解:A、B
解説:
参照:https://cloud.google.com/storage-options/
参照:https://cloud.google.com/storage-options/
質問 # 58
......
Professional-Cloud-Architect日本語認定ガイドPDFは100%カバー率でリアル試験問題:https://www.passtest.jp/Google/Professional-Cloud-Architect-JPN-shiken.html