GCP Professional Cloud Architect Practice Question

A global retail company wants to let hundreds of development teams deploy only pre-approved Google Cloud configurations-such as a standard 3-tier GKE application stack and a BigQuery dataset with predefined IAM policies-without giving them owner rights on the organization's projects. Security architects also need a single place to update base images and enforce labels across all deployments. Which approach best meets these requirements?

  • Store standard Terraform modules in Cloud Source Repositories and rely on a policy that only permits terraform apply from those repos while architects update the modules.

  • List the required solutions on Google Cloud Marketplace private offers and instruct teams to subscribe; security architects update images through Marketplace vendor updates.

  • Publish container images and deployment YAML files to Artifact Registry and Cloud Storage, then give teams Storage Object Viewer access to deploy them with kubectl apply commands.

  • Create products in Google Cloud Service Catalog backed by Terraform configurations for each approved stack, grant teams the Service Catalog Consumer role, and let architects manage template versions.

GCP Professional Cloud Architect
Analyzing and optimizing technical and business processes
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot