exam questions

Exam Professional Cloud Architect All Questions

View all questions & answers for the Professional Cloud Architect exam

Exam Professional Cloud Architect topic 1 question 132 discussion

Actual exam question from Google's Professional Cloud Architect
Question #: 132
Topic #: 1
[All Professional Cloud Architect Questions]

Your company sends all Google Cloud logs to Cloud Logging. Your security team wants to monitor the logs. You want to ensure that the security team can react quickly if an anomaly such as an unwanted firewall change or server breach is detected. You want to follow Google-recommended practices. What should you do?

  • A. Schedule a cron job with Cloud Scheduler. The scheduled job queries the logs every minute for the relevant events.
  • B. Export logs to BigQuery, and trigger a query in BigQuery to process the log data for the relevant events.
  • C. Export logs to a Pub/Sub topic, and trigger Cloud Function with the relevant log events.
  • D. Export logs to a Cloud Storage bucket, and trigger Cloud Run with the relevant log events.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
kopper2019
Highly Voted 3 years, 3 months ago
I think C using BigQuery can get expensive if you have somehow check the logs for anomalies https://cloud.google.com/blog/products/management-tools/automate-your-response-to-a-cloud-logging-event check there is a diagram
upvoted 48 times
poseidon24
3 years, 3 months ago
Thanks for pointing out the reference. C is the correct one. Nevertheless the question and all the answers are missleading, even C) sounds like sending all the logs to pub/sub, it should mention about "filtering" prior to send to Pub/Sub.
upvoted 10 times
...
AzureDP900
2 years, 1 month ago
C is absolutely make sense, Thank you for sharing the link.
upvoted 3 times
...
amxexam
3 years, 1 month ago
It may get expensive but GCP recommended way , they not asking for self alternative for cheap solution.
upvoted 4 times
...
Urban_Life
2 years, 10 months ago
cloud function is also key point
upvoted 2 times
...
...
manmohan15
Highly Voted 3 years, 3 months ago
c) is correct as quickly action is required for unwanted event/access should be actioned.
upvoted 9 times
...
plumbig11
Most Recent 3 months, 3 weeks ago
Selected Answer: C
Notifications tools pub sub is always the best pratice.
upvoted 1 times
...
thewalker
11 months, 3 weeks ago
Selected Answer: C
Option is C The clean and neat way to architect the solution is C.
upvoted 2 times
...
Bhargav2000
1 year, 4 months ago
One of your key employees received a job offer from another cloud company. S/he left the Organization without giving notice. His Google Account was kept active for 3 weeks. How can you find out if the employee accessed any sensitive data after s/he left?
upvoted 1 times
Romio2023
9 months, 3 weeks ago
use user activity log
upvoted 2 times
...
...
surajkrishnamurthy
1 year, 10 months ago
Selected Answer: C
C Is the correct answer
upvoted 1 times
...
megumin
1 year, 11 months ago
Selected Answer: C
C is ok
upvoted 1 times
...
Mahmoud_E
2 years ago
Selected Answer: C
C is correct
upvoted 1 times
...
minmin2020
2 years ago
Selected Answer: C
C - check https://cloud.google.com/blog/products/management-tools/automate-your-response-to-a-cloud-logging-event
upvoted 2 times
...
DrishaS4
2 years, 2 months ago
Selected Answer: C
https://cloud.google.com/blog/products/management-tools/automate-your-response-to-a-cloud-logging-event
upvoted 2 times
...
AzureDP900
2 years, 3 months ago
Pub/Sub & Cloud Function serves the purpose , I am choosing C as right !
upvoted 1 times
...
ss909098
2 years, 7 months ago
Selected Answer: C
C is the correct one
upvoted 1 times
...
azureaspirant
2 years, 8 months ago
2/15/21 exam
upvoted 2 times
ahsangh
2 years, 8 months ago
21 or 22 ?
upvoted 2 times
...
...
[Removed]
2 years, 8 months ago
Selected Answer: C
I got similar question on my exam. Answered C.
upvoted 3 times
...
DoVale
2 years, 9 months ago
B is correct because exported logs can be analyzed in Bigquery to identity anomalies by executing scheduled queries on the exported data.
upvoted 2 times
...
DoVale
2 years, 9 months ago
B is correct because exported logs can be analyzed in Bigquery to identity anomalies by executing scheduled queries on the exported data.
upvoted 2 times
...
ehgm
2 years, 10 months ago
The logs already on Cloud Logging, we can just create a metric and an alert for it. No need any development.
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago