Medium1 markMultiple Choice
This question is part of a case study — click to read the full scenario(Case 16)

CASE STUDY: HealthSecure. 50M patient records. Legacy mainframe, on-prem SAN (100TB), .NET portal. Req: Modernize portal, secure hospital sharing, fast audits. CEO: Modern UX. CFO: Automate audits. CISO: Zero breaches. Tech: HIPAA, CMEK, audit logging, API gateway, DR (1h RPO/4h RTO). Constraints: No public DB IPs, Dev/Ops separation, US data only, mainframe stays on-prem via VPN.

To meet the 1-hour RPO and 4-hour RTO for the modernized portal database, which architecture should you implement?

GCP PCA · Question 19 · Domain 4: Analyzing and Optimizing Technical and Business Processes

CASE STUDY: HealthSecure. 50M patient records. Legacy mainframe, on-prem SAN (100TB), .NET portal. Req: Modernize portal, secure hospital sharing, fast audits. CEO: Modern UX. CFO: Automate audits. CISO: Zero breaches. Tech: HIPAA, CMEK, audit logging, API gateway, DR (1h RPO/4h RTO). Constraints: No public DB IPs, Dev/Ops separation, US data only, mainframe stays on-prem via VPN.

To satisfy the CFO's requirement to automate and speed up compliance audits, how should you handle Cloud Audit Logs?

Answer options:

A.

Keep logs in Cloud Logging with default 30-day retention.

B.

Create a log sink to export all Data Access and Admin Activity logs to BigQuery.

C.

Export logs to a Pub/Sub topic and read them manually.

D.

Disable Data Access logs to save storage costs.

How to approach this question

Identify the best GCP destination for querying large volumes of log data.

Full Answer

B.Create a log sink to export all Data Access and Admin Activity logs to BigQuery.✓ Correct
Create a log sink to export all Data Access and Admin Activity logs to BigQuery for SQL-based auditing.
Exporting Cloud Audit Logs to BigQuery enables auditors to use SQL to quickly search years of access records, automating and drastically speeding up the audit process.

Common mistakes

Relying on default Cloud Logging retention.

Practice the full GCP Professional Cloud Architect Practice Exam 2

50 questions · hints · full answers · grading

More questions from this exam