Intrigued by the art of cloud architecture? Discover how to design, develop, and manage robust, secure, scalable, and dynamic solutions on Google Cloud as you prepare for the Professional Cloud Architect exam!
Prepare and test your skills
Prepare and test your skills
Worked example. The correct answer is already marked and every option is explained below, so there is nothing to select here. To answer questions yourself, start the free trial.
A healthcare provider is designing an analytics data pipeline on Google Cloud to process electronic health records containing Protected Health Information (PHI) and Personally Identifiable Information (PII). The platform must comply with HIPAA and GDPR requirements.
The compliance architecture must satisfy the following criteria:
Which combination of Google Cloud controls should the organization implement?
This architecture combines Sensitive Data Protection (formerly Cloud DLP), Resource Location Organization Policies, and VPC Service Controls to establish a defense-in-depth security and compliance baseline for sensitive workloads governed by HIPAA and GDPR.
constraints/gcp.resourceLocations) define explicit geographic constraints at the organization, folder, or project level, preventing users from creating cloud resources and storing data outside compliant regions.This solution leverages native, enterprise-grade Google Cloud governance and security mechanisms designed specifically to address data privacy, residency, and exfiltration prevention systematically across all layers of the cloud environment.
Keep the momentum going with these hand-picked practice scenarios
Want more questions like this?
Get a free certification question every week.