Professional Cloud DevOps Engineer
Prepare and test your skills
Prepare and test your skills
Worked example. The correct answer is already marked and every option is explained below, so there is nothing to select here. To answer questions yourself, start the free trial.
A DevOps engineer is designing an automated CI/CD pipeline on Google Cloud to deploy containerized microservices to Google Kubernetes Engine (GKE). The organization mandates strict supply chain security and deployment governance:
Which combination of Google Cloud services and architectural components satisfies these requirements?
Configure Cloud Workstations to compile container images, use Security Command Center Event Threat Detection to block unsigned container deployments, and execute gcloud container clusters update commands to roll back failed GKE releases.
Configure Cloud Build to package applications into virtual repositories in Artifact Registry, enable Assured Open Source Software for all internal containers, and enforce GKE cluster admission using PodSecurityPolicies with manual rollback procedures.
Configure Cloud Build to run automated tests and generate attestations, store images in Artifact Registry with Artifact Analysis automated scanning, enforce deploy-time signature validation on GKE using Binary Authorization, and orchestrate progressive multi-target rollouts with automated rollbacks using Cloud Deploy.
Configure Cloud Build to push images to Artifact Registry remote repositories, configure Web Security Scanner to scan containers for runtime vulnerabilities, deploy workloads using Deployment Manager templates, and configure Cloud Monitoring alerts to trigger automated rollbacks via Cloud Functions.
Keep the momentum going with these hand-picked practice scenarios
Want more questions like this?
Get a free certification question every week.
Still curious? Scout, our AI tutor, can explain this concept further and answer your follow-up questions.