1Z0-1104-25 exam dumps

1Z0-1104-25 practice question 94 of 174

Oracle Cloud Infrastructure 2025 Security Professional. Professional level, Oracle. Free question with the correct answer and a full explanation.

1Z0-1104-25 Question 94

Single answer

You are responsible for securing a fleet of frequently launched and terminated Linux compute instances in Oracle Cloud Infrastructure (OCI). The security team requires automatic OS-level vulnerability scanning and timely patching to maintain compliance with minimal manual effort. Which approach best meets these requirements?

  1. A

    Enable OS Management Service on each instance, configure scheduled automatic updates, and integrate with OCI Vulnerability Scanning for regular reports and remediation

  2. B

    Log in manually to each instance, run system updates monthly, and re-image instances only when necessary

  3. C

    Rely on the ephemeral nature of the workloads to avoid OS patching, since the instances will be replaced frequently

  4. D

    Use Oracle Cloud Guard alone to patch and remediate OS vulnerabilities on ephemeral instances without any additional configuration

Show answer and explanation

Correct answer: A

Explanation

Using the OCI OS Management Service together with OCI Vulnerability Scanning is a best practice for automatically identifying and remediating OS-level security issues across dynamic or ephemeral workloads. OS Management Service provides automated patch scheduling and management, while Vulnerability Scanning surfaces potential issues in real time. For more details, consult Oracle� documentation at https://docs.oracle.com/en-us/iaas/Content/os-management/home.htm.

  • A. Correct.

    Correct. OS Management Service can automate the patching of Linux instances and schedule updates. Integrating with OCI Vulnerability Scanning identifies vulnerabilities early, ensuring that ephemeral workloads remain secure with minimal manual overhead.

  • B. Incorrect.

    Incorrect. Relying on manual updates is labor-intensive and prone to human error, especially for ephemeral workloads that may be created or destroyed frequently. It does not fulfill the requirement for minimal manual effort.

  • C. Incorrect.

    Incorrect. Even if instances are short-lived, vulnerabilities can be exploited quickly. You must still detect and patch your OS to comply with security requirements and prevent potential breaches.

  • D. Incorrect.

    Incorrect. Oracle Cloud Guard helps identify and report security risks and misconfigurations but it does not directly patch or remediate OS-level vulnerabilities. Patch management requires OS Management Service or similar tooling.

Timed practice exam

Take a 1Z0-1104-25 practice test under exam conditions

70 questions in 90 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam