https://www.examtopics.com/discussions/google/view/68866-exam-cloud-digital-leader-topic-1-question-59-discussion/
Topic 3
Your organization consists of many teams. Each team has many Google Cloud projects. Your organization wants to simplify
the management of identity and access policies for these projects.
How can you group these projects to meet this goal?
C
Topic 3
Your organization recently migrated its compute workloads to Google Cloud. You want these workloads in Google Cloud to
privately and securely access your large volume of on-premises data, and you also want to minimize latency.
What should your organization do?
B
Topic 3
Your large and frequently changing organizations user information is stored in an on-premises LDAP database. The
database includes user passwords and group and organization membership.
How should your organization provision Google accounts and groups to access Google Cloud resources?
C
Explanation:
You can run a single instance of Google Cloud Directory Sync to synchronize user accounts and groups to Google Cloud.
Reference: https://cloud.google.com/architecture/identity/federating-gcp-with-active-directory-introduction
Topic 3
How do Migrate for Compute Engine and Migrate for Anthos differ?
D
Explanation:
Reference: https://cloud.google.com/migrate/anthos
Topic 3
Your company needs to segment Google Cloud resources used by each team from the others. The teams efforts are
changing frequently, and you need to reduce operational risk and maintain cost visibility. Which approach does Google
recommend?
A
Explanation:
Reference: https://cloud.google.com/security/infrastructure/design
Topic 3
Your team is publishing research results and needs to make large amounts of data available to other researchers within the
professional community and the public at minimum cost.
How should you host the data?
D
Topic 3
Your organization needs to allow a production job to have access to a BigQuery dataset. The production job is running on a
Compute Engine instance that is part of an instance group.
What should be included in the IAM Policy on the BigQuery dataset?
A
Explanation:
Reference: https://cloud.google.com/compute/docs/instance-groups
Topic 3
Your organization meant to purchase a 3-year Committed Use Discount, but accidentally purchased a 1-year Committed Use
Discount instead. What should your organization do?
B
https://www.examtopics.com/discussions/google/view/68866-exam-cloud-digital-leader-topic-1-question-59-discussion/
Topic 3
Your organization is defining the resource hierarchy for its new application in Google Cloud. You need separate development
and production environments. The production environment will be deployed in Compute Engine in two regions. Which
structure should your organization choose?
D
Topic 3
Your organization needs to ensure that the Google Cloud resources of each of your departments are segregated from one
another. Each department has several environments of its own: development, testing, and production. Which strategy should
your organization choose?
D
Explanation:
Reference: https://cloud.google.com/identity/docs/setup
The recommended strategy for ensuring segregation of Google Cloud resources for each department with multiple environments (development, testing, and production) would be to create a folder per department, and create a project per environment in each folder.
This strategy provides a clear and organized structure for managing resources. By creating a folder per department, you can logically group projects and enforce access controls and policies at the folder level. Within each folder, you can then create separate projects for each environment (development, testing, and production). This allows for better isolation and control of resources within each environment.
Topic 3
Your organization needs to process large amounts of data from an online application that operates continuously. You do not
want to be required to provision infrastructure or create server clusters. What should your organization choose?
A
Topic 3
Your organization wants to be sure that is expenditures on cloud services are in line with the budget. Which two Google
Cloud cost management features help your organization gain greater visibility into its cloud resource costs? (Choose two.)
B D
Explanation:
Reference: https://cloud.google.com/cost-management#section-6
Topic 3
Your company security team manages access control to production systems using an LDAP directory group.
How is this access control managed in the Google Cloud production project?
C
Explanation:
Reference: https://cloud.google.com/blog/products/identity-security/achieving-identity-and-access-governance-on-google-
cloud
Topic 3
Your organization wants to migrate your on-premises environment to Google Cloud. The on-premises environment consists
of containers and virtual machine instances. Which Google Cloud products can help to migrate the container images and the
virtual machine disks?
A
Explanation:
Reference: https://cloud.google.com/compute/docs/import/importing-virtual-disks
Topic 3
Your organization needs to minimize how much it pays for data traffic from the Google network to the internet. What should
your organization do?
C
Explanation:
Reference: https://cloud.google.com/blog/products/networking/networking-cost-optimization-best-practices
C. Use folders to group each team’s projects
Use folders to group each team’s projects
Folders are a sub group within Projects