Cloud-Digital-Leader日本語練習試験と学習ガイドは厳密検証された最新な413問題 [Q226-Q247]

Share

Cloud-Digital-Leader日本語練習試験と学習ガイドは厳密検証されたPassTest最新な413問題

2025年最新のな厳密検証された合格させるCloud-Digital-Leader日本語学習ガイドベズトお試しセット

質問 # 226
組織は、GoogleCloudでコンテナベースのアプリケーションを実行したいと考えています。このアプリケーションは、複雑さが増すことが予想されます。コンテナ間のトラフィックをきめ細かく制御するためのセキュリティが必要です。また、アプリケーションのスケーリングポリシーをきめ細かく制御する必要があります。
組織で使用する必要があるGoogleCloudの製品または機能は何ですか。

  • A. ComputeEngine仮想マシン
  • B. Google KubernetesEngineクラスター
  • C. クラウドラン
  • D. App Engine

正解:B

解説:
Google Kubernetes Engine GKE seems a better fit since the requirement is for "security need for fine-grained control of traffic between the containers" and "fine-grained control over scaling policies". Such level of control is easier on GKE that Cloud Run.
Text Description automatically generated

Reference link- https://cloud.google.com/blog/products/containers-kubernetes/when-to-use-google- kubernetes-engine-vs-cloud-run-for-containers


質問 # 227
オンプレミス環境をクラウドに移行することにしました。どのリソースコンポーネントに所有権を割り当てる必要があるかを判断する必要があります。
パブリッククラウドプロバイダーが所有する2つの機能はどれですか? (2つ選択してください。)

  • A. インフラストラクチャ展開の自動化
  • B. アプリケーションのセキュリティ問題を修正する
  • C. ハードウェア容量管理
  • D. インフラストラクチャアーキテクチャ
  • E. ハードウェアのメンテナンス

正解:C、E

解説:
In a shared responsible model, hardware maintence and capacity management cloud provider is the responsible part.


質問 # 228
顧客は、一定量のコンピューティングと分析を使用することを示す信頼できる情報を持っています。ワークロードは重要であり、ピーク時に VM や BigQuery スロットが使用できなくなる可能性を冒したくありません。容量を確実に割り当てるにはどうすればよいでしょうか?

  • A. Compute Engine と BigQuery で予約を作成します。
  • B. 必要な Compute Engine と BigQuery のリソースを予約するために、記入済みのフォームを Google Cloud サポートに送信します。
  • C. Google Cloud はリソースに柔軟です。事前にリソースを予約することはできません。従量制です。
  • D. 容量が必要な日に、必要な数のリソースをプロビジョニングしてロックするスケジュールされたジョブを設定します。

正解:A

解説:
Create reservations on Compute Engine and BigQuery. You can reserve capacity in advance and use it over a period of time. You could also get a cost advantage.
=> There is no need for involved support. It is self-serve via the console.
=> You can reserve resources in advance when you have the need for it. And when you want to take a pay-per-use approach, that is also possible.
=> It is not a good idea to be lock in/hoard resources; you'll pay unnecessarily for resources. Also, it is difficult to time exactly when the demand will be.
Reference:
https://cloud.google.com/compute/docs/instances/reserving-zonal-resources
https://cloud.google.com/bigquery/docs/reservations-intro


質問 # 229
組織は、戦略的なクラウド導入の成熟度レベルから変革的な成熟度レベルに移行したいと考えています。組織はスケール方法をどのように変更する必要がありますか?

  • A. 手動で変更を確認します。
  • B. これらのどれも
  • C. 問題が発生したときに変更を展開します。
  • D. プログラムで変更を展開します。

正解:D

解説:
Because automation is a transformational approach which ensures changes are constant and low-risk.


質問 # 230
ある組織には、顧客とサービス担当者との会話のテキスト記録を含む大規模なデータセットがあります。組織は、顧客が最も関心のあるトピックを識別するための自動化ソリューションを求めています。組織はどのサービスを使用すべきでしょうか?

  • A. 音声テキスト変換API
  • B. クラウド翻訳 API
  • C. 自然言語API
  • D. ビジョンAPI

正解:C


質問 # 231
あなたは、アニメーションスタジオ向けのレンダリングソフトウェアを提供するSoftware as a Service(SaaS)会社のプログラムマネージャーです。チームには、シーンを自由にスケジュールし、後で再開するためにいつでも中断できるようにする機能が必要です。個々のシーンのレンダリングは完了するのに12時間未満かかり、すべてのシーンの完了時間に関するサービスレベルアグリーメント(SLA)はありません。結果はグローバルクラウドストレージバケットに保存されます。コンピューティングリソースは、単一の地理的な場所にバインドされていません。このソフトウェアは、コストを最適化した方法でGoogleCloud上で実行する必要があります。
あなたは何をするべきか?

  • A. プリエンプティブインスタンスを使用してComputeEngineにアプリケーションをデプロイします
  • B. 使用するComputeEngineインスタンスの最小数の予約を作成します
  • C. アンマネージドインスタンスグループで実行できるようにアプリケーションを開発します
  • D. より多くのvCPUを備えたより少ないインスタンスではなく、より少ない仮想集中処理装置(vCPU)でより多くのインスタンスを開始します

正解:A

解説:

https://cloud.google.com/compute/docs/instances/preemptible


質問 # 232
組織は、戦術的なクラウド導入アプローチから変革的アプローチに移行したいと考えています。
クラウド セキュリティをどのように変更する必要がありますか?

  • A. Identity Access Management の 3 つの主な役割 (所有者、編集者、閲覧者) を強調します。
  • B. ゼロトラスト モデルを使用して、複数層のネットワーク セキュリティを提供します。
  • C. 強力な境界セキュリティとプライベート ネットワークへの信頼を強調します。
  • D. Google Cloud 認証のみを使用してスタッフ ID を提供します。

正解:B

解説:
https://www.crowdstrike.com/cybersecurity-101/zero-trust-security/
Zero Trust is a security framework requiring all users, whether in or outside the organization's network, to be authenticated, authorized, and continuously validated for security configuration and posture before being granted or keeping access to applications and data


質問 # 233
Cloud Logging は組織で何をするのに役立ちますか?

  • A. カスタム VM イメージのストレージを管理します。
  • B. インフラストラクチャをコードとしてデプロイします。
  • C. ライブ ソース コードを分析し、コードの更新をログに記録します。
  • D. ログを分析し、アプリケーションのトラブルシューティングを加速します。

正解:D


質問 # 234
Cloud SQL のスタンバイ インスタンスのコア機能について、正しい選択肢はどれですか?

  • A. 上記のいずれでもない。
  • B. スタンバイ インスタンスは高可用性で使用され、フェイルオーバーが発生したときにプライマリ インスタンスを置き換えます。スタンバイ インスタンスは Google Cloud Console に表示されますが、課金されません。フェイルオーバーが発生すると、プライマリ インスタンスへの接続は自動的にスタンバイ インスタンスに転送されます。
  • C. スタンバイ インスタンスは高可用性で使用され、フェイルオーバーが発生したときにプライマリ インスタンスを置き換えます。スタンバイ インスタンスは Google Cloud Console に表示されますが、課金されません。フェイルオーバーが発生すると、プライマリ インスタンスへの接続をスタンバイ インスタンスに手動で転送する必要があります。
  • D. スタンバイ インスタンスは高可用性で使用され、フェイルオーバーが発生したときにプライマリ インスタンスを置き換えます。スタンバイ インスタンスは Google Cloud Console に表示されません。フェイルオーバーが発生すると、プライマリ インスタンスへの接続はスタンバイ インスタンスに自動的に転送されます。

正解:D

解説:
The standby instance is used in high availability to replace the primary instance when failover occurs. The standby instance doesn't appear in the Google Cloud Console. When failover occurs, connections to the primary instance are automatically transferred to the standby instance.
Cloud SQL Key Terms:
Cloud SQL instance
A Cloud SQL instance corresponds to one virtual machine (VM). The VM includes the database instance and accompanying software containers to keep the database instance up and running.
Database instance
A database instance is the set of software and files that operate the databases: MySQL, PostgreSQL or SQL Server.
High availability
Cloud SQL instances using high availability (HA) provide greater reliability than non-HA instances.
HA in Cloud SQL works by having two synchronized instances: a primary instance and a standby instance. Each instance has exactly one VM. Each instance is in a different zone in the same region.
Failover
A failover is when Cloud SQL switches serving from the original primary instance to the standby instance.
Autofailover is a mechanism that automatically triggers failover when a Cloud SQL instance didn't issue a heartbeat in the previous interval.
Standby instances
The standby instance is used in high availability to replace the primary instance when failover occurs. The standby instance doesn't appear in the Google Cloud Console. When failover occurs, connections to the primary instance are automatically transferred to the standby instance.
Clone
When you clone a Cloud SQL instance, you create a new instance that is a copy of the source instance, but is completely independent. After cloning is complete, changes to the source instance are not reflected in the clone, and changes in the clone are not reflected in the source instance.
Replication
Replication is the ability to create copies of a Cloud SQL instance or an on-premises database, and offload work to the copies. The main reason for using replication is to scale the use of data in a database without degrading performance on the primary instance.
Read replica
The read replica is an exact copy of the primary instance. Data and other changes on the primary instance are updated in almost real time on the read replica. Send your write transactions to the primary instance, and your read requests to the read replica. The read replica processes queries, read requests, and analytics traffic, thus reducing the load on the primary instance.
Source server
Replication copies transactions from a primary instance to one or more read replicas. The primary instance is also called the source server. The source server can be a Cloud SQL primary instance, or a server outside of Google Cloud, such as an on-premises server or a server running in a different cloud. If the source server is outside of Google Cloud, we call it Replication from an external server.
Cloud SQL Auth proxy client
The Cloud SQL Auth proxy client is open source software maintained by Cloud SQL. It connects to a companion process, the Cloud SQL Auth proxy server, running on your Cloud SQL instance. You run the Cloud SQL Auth proxy client on your own servers. The Cloud SQL Auth proxy client can be used to establish a secure SSL/TLS connection to the database instance, and/or to avoid having to open the firewall. Authentication is done through Identity and Access Management (IAM).


質問 # 235
あなたは、アニメーションスタジオ向けのレンダリングソフトウェアを提供するSoftware as a Service(SaaS)会社のプログラムマネージャーです。チームには、シーンを自由にスケジュールし、後で再開するためにいつでも中断できるようにする機能が必要です。個々のシーンのレンダリングは完了するのに12時間未満かかり、すべてのシーンの完了時間に関するサービスレベルアグリーメント(SLA)はありません。結果はグローバルクラウドストレージバケットに保存されます。コンピューティングリソースは、単一の地理的な場所にバインドされていません。このソフトウェアは、コストを最適化した方法でGoogleCloud上で実行する必要があります。
あなたは何をするべきか?

  • A. プリエンプティブインスタンスを使用してComputeEngineにアプリケーションをデプロイします
  • B. 使用するComputeEngineインスタンスの最小数の予約を作成します
  • C. アンマネージドインスタンスグループで実行できるようにアプリケーションを開発します
  • D. より多くのvCPUを備えたより少ないインスタンスではなく、より少ない仮想集中処理装置(vCPU)でより多くのインスタンスを開始します

正解:A


質問 # 236
複数のプロジェクトをカバーするために、Google Cloud組織全体のコンプライアンスを報告および維持できるGoogleCloud製品はどれですか。

  • A. クラウドロギング
  • B. IDおよびアクセス管理
  • C. Google Cloud Armor
  • D. セキュリティコマンドセンター

正解:B


質問 # 237
組織は、機械学習を使用して、静止画像の大規模なグループにオブジェクトを分類する必要があります。組織で使用する必要があるGoogleCloudの製品またはサービスはどれですか。

  • A. AutoMLビデオインテリジェンス
  • B. AutoMLテーブル
  • C. BigQuery ML
  • D. Cloud Vision API

正解:B


質問 # 238
次の記述のうち、Google Cloud BigTable について正しい/正しいものはどれですか?

  • A. リレーショナルおよび非リレーショナル機能を提供するエンタープライズ レベルのデータベースです。
  • B. Giga Byte から Peta Byte までダウンタイムなしでスケーリングします。
  • C. Hadoop には対応していません。
  • D. リアルタイムの広告分析や数千の IoT デバイス データの追跡には使用できません。

正解:B

解説:
Cloud Bigtable
A fully managed, scalable NoSQL database service for large analytical and operational workloads with up to
99.999% availability.
- Consistent sub-10ms latency-handle millions of requests per second
- Ideal for use cases such as personalization, ad tech, fintech, digital media, and IoT
- Seamlessly scale to match your storage needs; no downtime during reconfiguration
- Designed with a storage engine for machine learning applications leading to better predictions
- Easily connect to Google Cloud services such as BigQuery or the Apache ecosystem


質問 # 239
Google Cloud IAM: プロジェクト レベルで適用されたポリシーが所有者権限を付与する場合、そのプロジェクト内の個々のリソースへのアクセスは、より制限の厳しいポリシーをそのリソースに直接適用すると、表示権限に制限される可能性があります。選択肢の下で正しいもの

  • A. 上記のいずれでもない。
  • B. GCP では定義されていません。
  • C. 真
  • D. いいえ

正解:D

解説:
Explanation
Policies are a union of those applied to resources themselves and those inherited from higher levels in the hierarchy. If a parent policy is less restrictive, it overrides a more restrictive policy applied to the resource. If a parent policy is more restrictive, it does not override a less restrictive policy applied to the resource. Therefore, access granted at a higher level in the hierarchy cannot be taken away by policies applied at a lower level in the hierarchy.


質問 # 240
次のうち、Anthos のコア コンポーネントはどれですか?

  • A. 安全なソフトウェア サプライ チェーン
  • B. マルチクラスタ & 構成管理
  • C. 上記はすべて正しいです。
  • D. インフラストラクチャ、コンテナー、およびクラスターの管理

正解:C

解説:
Table Description automatically generated


質問 # 241
組織は、GoogleCloudの新しいアプリケーションのリソース階層を定義しています。個別の開発環境と本番環境が必要です。実稼働環境は、2つのリージョンのComputeEngineにデプロイされます。組織はどの構造を選択する必要がありますか?

  • A. すべての環境に対して単一のプロジェクトを作成します。ラベルを使用して、環境ごとにリソースを分離します。
  • B. すべての環境に対して単一のプロジェクトを作成します。タグを使用して、環境ごとにリソースを分離します。
  • C. 開発環境用に1つのプロジェクトを作成し、実稼働環境用に1つのプロジェクトを作成します。
  • D. 開発環境用に2つのプロジェクトを作成し、本番環境用に2つのプロジェクト(各リージョンに1つ)を作成します。

正解:C

解説:
Explanation
Many organizations have separate development and production environments so they can build and test new features without disturbing production traffic. In Optimizely, you can create separate projects for each environment to help with governance.
With separate development and production projects, your organization can safely build and QA experiments and Personalization campaigns in a development environment before deploying to production. This approach allows multiple stakeholders in your organization to act as gatekeepers for running new experiments in production.
Graphical user interface, text Description automatically generated with medium confidence

Reference link-
https://support.optimizely.com/hc/en-us/articles/4410284353805-Set-up-projects-for-development-and-producti


質問 # 242
Google は Firebase を提供しています。Firebase Console に関して言えば、顧客に配信する必要のある特定のメッセージは、ある程度の動作の変化で _________________ を介して管理できます。

  • A. 通知作成者
  • B. A/B テスト
  • C. 上記のいずれでもない
  • D. Firebase リモート構成。

正解:A

解説:
You can send notification messages using the Notifications composer in the Firebase console. Though this does not provide the same flexibility or scalability as sending messages with the Admin SDK or the HTTP and XMPP protocols, it can be very useful for testing or for highly targeted marketing and user engagement. The Firebase console provides analytics-based A/B testing to help refine and improve marketing messages.
After you have developed logic in your app to receive messages, you can allow non-technical users to send messages per the instructions on the Notifications page in the Firebase Help Center.


質問 # 243
お客様は、Google Cloud に移行するかどうかを決定しています。彼らの主な関心事は、110 を超えるアプリケーションで使用される IT インフラストラクチャの一部である約 10,000 の VM です。彼らは、この段階であまりにも多くの変化を恐れています。彼らは、中断を最小限に抑えて、できるだけ簡単な方法で Google Cloud にアクセスしたいと考えています。彼らにどのオプションをお勧めしますか?

  • A. Migrate for Compute を使用する
  • B. Migrate for Anthos を使用する
  • C. VM を App Engine Flex などのサーバーレス オプションにリフト アンド シフトします。
  • D. オンプレミスを再設計して Kubernetes を使用し、オンプレミス データセンターを徐々に拡張して Google Cloud データセンターにブリッジします。

正解:A

解説:
Migrate for Compute Engine's advanced replication migration technology copies instance data to Google Cloud in the background with no interruptions to the source workload that's running.

https://cloud.google.com/migrate/compute-engine


質問 # 244
ある組織では、ある従業員が機密性の高い Cloud Storage バケットを一般公開したため、データ漏洩の恐れがありました。会社のビジネスの性質を考えると、ファイルへの直接アクセスを一般に許可する理由は決してないことが理解されています。セキュリティ責任者は、そのようなイベントが二度と発生しないようにしたいと考えています。どうすればこれを保証できますか?

  • A. Cloud Scheduler を使用して、指定した間隔でジョブを実行し、バケットをスキャンします。すべてのパブリック アクセス許可は、プログラムで変更できます。
  • B. Cloud Storage に接続された Cloud Functions コードを記述します。すべての変更は、公開アクセスをリセットするために使用できる関数に通知されます。
  • C. 組織のポリシー制約を設定して、パブリックに設定されたバケット アクセスを制限します。
  • D. すべての Cloud Storage バケットの編集アクセス権を削除して、ユーザーが編集できないようにします。

正解:C

解説:
The straightforward way to set it is using Organizational Policy constraint. Any attempts to change the organizational setting will be rejected for any project and resource.

References link:
-> https://cloud.google.com/resource-manager/docs/organization-policy/overview
-> https://cloud.google.com/resource-manager/docs/organization-policy/org-policy-constraints


質問 # 245
顧客は、仮想マシンで実行されているアプリケーションを持っています。彼らはこのアプリケーションを Google Cloud に移行しています。VM を事前に割り当てる必要があるため、オンプレミスの場合、以前はスケーリングの問題がありました。キャパシティ プランニングは、VM が多すぎるか少なすぎるために、何度も目標を達成できませんでした。彼らは、アプリケーションを常に実行し続けながら、容量を需要に合わせたいと考えています。現時点では、コンテナと Kubernetes を使用してシステムを再構築する時間や予算がありません。あなたのおすすめは何ですか?

  • A. サーバーレス オプションを使用するとスケーリングが行われ、Cloud Run または App Engine に移行できることを伝えます。
  • B. Compute Engine VM で負荷テストを実行します。使用量の見積もりを取得します。次に、負荷テスト値を 25% 上回る VM 容量を計画します。
  • C. Compute Engine でマネージド インスタンス グループを使用する
  • D. 新時代の企業がマイクロサービス、コンテナー、および Kubernetes を使用しており、アプリを迅速に書き直すことを計画できることを伝えます。

正解:C

解説:
Scalability. When your apps require additional compute resources, autoscaled MIGs can automatically grow the number of instances in the group to meet demand. If demand drops, autoscaled MIGs can automatically shrink to reduce your costs

https://cloud.google.com/compute/docs/instance-groups


質問 # 246
あなたの組織は、パブリックモバイルアプリとウェブサイトを提供しています。ユーザーのユーザー名とパスワードを確認および維持し、ユーザーのIDに基づいてさまざまなリソースへのアクセスを制御するために、GoogleCloudベースのソリューションに移行する必要があります。
あなたの組織はどちらを選ぶべきですか?

  • A. Compute Engine firewall rules
  • B. Private Google Access
  • C. VPN tunnels
  • D. Identity Platform

正解:D

解説:
An identity platform is a modern solution for managing the identities of users and devices in a centralized fashion.


質問 # 247
......

究極のガイドはCloud-Digital-Leader日本語最新時間限定今すぐダウンロード!:https://www.passtest.jp/Google/Cloud-Digital-Leader-JPN-shiken.html