CASE STUDY: ShopGlobal
Overview: Retailer, 2000 employees, $500M revenue. US-Central co-lo, Java/Tomcat monolith, Oracle RAC 20TB, batch inventory sync.
Business Req: Handle 10x Black Friday spikes, personalized recommendations, modernize to microservices.
Execs: CEO wants omnichannel; CFO needs predictable spend; CTO demands zero downtime cutover.
Tech Req: PCI-DSS compliance, automated image processing, real-time inventory, CI/CD.
Constraints: Complex Oracle stored procedures, team learning containers, strict bi-annual audits.
QUESTION:
Which compute platform should you recommend for the modernized microservices architecture, considering the team is just learning containers?
GCP PCA · Question 08 · Compliance Design
CASE STUDY: ShopGlobal
Overview: Retailer, 2000 employees, $500M revenue. US-Central co-lo, Java/Tomcat monolith, Oracle RAC 20TB, batch inventory sync.
Business Req: Handle 10x Black Friday spikes, personalized recommendations, modernize to microservices.
Execs: CEO wants omnichannel; CFO needs predictable spend; CTO demands zero downtime cutover.
Tech Req: PCI-DSS compliance, automated image processing, real-time inventory, CI/CD.
Constraints: Complex Oracle stored procedures, team learning containers, strict bi-annual audits.
QUESTION:
To meet the strict PCI-DSS compliance requirements and prepare for bi-annual audits, which security architecture should you implement?
Answer options:
Place all microservices in a single flat network and rely on IAM for access control.
Isolate the payment environment in a separate VPC, use VPC Service Controls, and enable Cloud Audit Logs.
Use Cloud VPN to route all payment traffic back to the on-premises data center for processing.
Encrypt all data with Google-managed keys and disable external IP addresses on all VMs.
50 questions · hints · full answers · grading