Google Associate Cloud Engineer exam dumps

Google Associate Cloud Engineer practice question 110 of 375

Associate Cloud Engineer. Free level, Google Cloud. Free question with the correct answer and a full explanation.

Google Associate Cloud Engineer Question 110

Select 3Google Cloud Platform

You are a Google Cloud engineer responsible for managing a fleet of virtual machines (VMs) across multiple projects. You need to ensure that all VMs are compliant with your company's security policies by applying the latest security updates automatically. Which of the following steps would you take to achieve this using VM Manager?

  1. A

    Enable the OS Patch Management feature in VM Manager.

  2. B

    Create a VM Manager patch deployment to schedule automatic updates.

  3. C

    Install the Google Cloud Logging agent on each VM.

  4. D

    Configure Identity and Access Management (IAM) roles to grant permissions to VM Manager.

  5. E

    Set up a Google Cloud Armor policy for the VMs.

Show answer and explanation

Correct answers: A, B, D

Explanation

To ensure VMs are automatically updated with the latest security patches using VM Manager, you need to enable OS Patch Management, create patch deployments for automation, and ensure that VM Manager has the necessary permissions via IAM roles. These steps collectively allow you to maintain compliance with security policies by keeping your VMs updated.

  • A. Correct.

    Enabling the OS Patch Management feature in VM Manager allows you to manage and automate the patching of your VMs to keep them updated with the latest security patches.

  • B. Correct.

    Creating a VM Manager patch deployment allows you to schedule and automate the patching process, ensuring that all VMs receive the necessary updates according to your schedule.

  • C. Incorrect.

    Installing the Google Cloud Logging agent is not directly related to patch management; it is used for collecting and analyzing logs from your VMs.

  • D. Correct.

    Configuring IAM roles is necessary to ensure that VM Manager has the appropriate permissions to manage and apply patches to your VMs.

  • E. Incorrect.

    Google Cloud Armor provides security at the network level, such as protecting against DDoS attacks, but does not manage operating system patches.

Timed practice exam

Take a Google Associate Cloud Engineer practice test under exam conditions

60 questions in 120 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam