🔥 40% Off Crucial Exams Memberships — Deal ends today!

1 hour, 57 minutes remaining!

GCP Professional Cloud Architect Practice Question

Your company hosts its SaaS application in a single Google Cloud project that is attached as a service project to a central Shared VPC host. Developers complain that continuous integration jobs intermittently fail because project-level Cloud Build and Artifact Registry API quota is exhausted by production traffic. Internal auditors also need strict separation of IAM policies and audit logs between development and production environments. The networking topology must remain unchanged. Which design change best meets these requirements with minimal re-architecture?

  • Create two new folders named dev and prod under the organization and move the current project into the prod folder while granting environment-specific IAM at the folder level.

  • Register two additional Cloud Identity tenants to form separate organizations for dev and prod, then move resources so each organization owns its own project and VPC.

  • Create separate development and production projects under the existing folder, attach each as a service project to the current Shared VPC host, and migrate the respective workloads.

  • Retain a single project and isolate workloads through Kubernetes namespaces combined with VPC Service Controls to enforce environment separation.

GCP Professional Cloud Architect
Designing for security and compliance
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot