GCP Professional Cloud Architect Practice Question
Your company is migrating its CI/CD pipeline to Google Cloud. Build jobs create both Docker images for microservices and internal Maven packages that are consumed by other projects. Production runs in us-central1 and europe-west1, and the security team requires: repository-level IAM, automatic vulnerability scanning for container images, and minimal cross-region artifact egress. Which design best satisfies these requirements while keeping operational overhead low?
Commit Docker images and Maven artifacts to Cloud Source Repositories using Git LFS and cache them globally with Cloud CDN to reduce latency.
Store both Docker images and Maven JAR files in dual-region Cloud Storage buckets and run an open-source vulnerability scanner in Cloud Run on a nightly schedule.
Create two Artifact Registry repositories in multi-regional locations us and eu-one repository with Docker format and one with Maven format-and enable built-in vulnerability scanning and IAM roles on each repository.
Push Docker images to the global gcr.io Container Registry and store Maven packages in a Cloud Storage bucket secured with bucket-level IAM; enable Container Analysis for image scanning.
Artifact Registry is Google Cloud's managed artifact repository that supports multiple artifact formats. You can create separate repositories for each format, choose the closest multi-regional location (for example, "us" and "eu") to keep data near workloads, and manage access with repository-level IAM. Artifact Registry automatically scans pushed container images for vulnerabilities. Container Registry, Cloud Storage, or Source Repositories either lack Maven support, per-repository IAM, or built-in scanning, and would increase manual effort or egress.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is Artifact Registry and how does it differ from Container Registry?
Open an interactive chat with Bash
How does built-in vulnerability scanning in Artifact Registry work?
Open an interactive chat with Bash
Why is multi-regional location beneficial for cloud repositories?
Open an interactive chat with Bash
What is Artifact Registry and how does it differ from Container Registry?
Open an interactive chat with Bash
How does vulnerability scanning work in Artifact Registry for container images?
Open an interactive chat with Bash
What is repository-level IAM and why is it important for Artifact Registry?
Open an interactive chat with Bash
GCP Professional Cloud Architect
Ensuring solution and operations excellence
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99 $11.99
$11.99/mo
Billed monthly, Cancel any time.
$19.99 after promotion ends
3 Month Pass
$44.99 $26.99
$8.99/mo
One time purchase of $26.99, Does not auto-renew.
$44.99 after promotion ends
Save $18!
MOST POPULAR
Annual Pass
$119.99 $71.99
$5.99/mo
One time purchase of $71.99, Does not auto-renew.
$119.99 after promotion ends
Save $48!
BEST DEAL
Lifetime Pass
$189.99 $113.99
One time purchase, Good for life.
Save $76!
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .