ASSOCIATE-CLOUD-ENGINEER Exam Details

  • Exam Code
    :ASSOCIATE-CLOUD-ENGINEER
  • Exam Name
    :Associate Cloud Engineer
  • Certification
    :Google Certifications
  • Vendor
    :Google
  • Total Questions
    :427 Q&As
  • Last Updated
    :May 24, 2026

Google ASSOCIATE-CLOUD-ENGINEER Online Questions & Answers

  • Question 151:

    You are running an application on multiple virtual machines within a managed instance group and have autoscaling enabled. The autoscaling policy is configured so that additional instances are added to the group if the CPU utilization of instances goes above 80%. VMs are added until the instance group reaches its maximum limit of five VMs or until CPU utilization of instances lowers to 80%. The initial delay for HTTP health checks against the instances is set to 30 seconds. The virtual machine instances take around three minutes to become available for users. You observe that when the instance group autoscales, it adds more instances then necessary to support the levels of end-user traffic. You want to properly maintain instance group sizes when autoscaling. What should you do?

    A. Set the maximum number of instances to 1.
    B. Decrease the maximum number of instances to 3.
    C. Use a TCP health check instead of an HTTP health check.
    D. Increase the initial delay of the HTTP health check to 200 seconds.

  • Question 152:

    You've just created a new Google Cloud account. You're eager to start working with resources such as App Engine and Cloud Storage. However, you know that resources have requirements. Which of the following is required by Google Cloud in order to enable and use resources?

    A. A Stackdriver account
    B. An Organization
    C. A Project
    D. A Folder

  • Question 153:

    You have a number of applications that have bursty workloads and are heavily dependent on topics to decouple publishing systems from consuming systems. Your company would like to go serverless to enable developers to focus on writing code without worrying about infrastructure. Your solution architect has already identified Cloud Pub/Sub as a suitable alternative for decoupling systems. You have been asked to identify a suitable GCP Serverless service that is easy to use with Cloud Pub/Sub. You want the ability to scale down to zero when there is no traffic in order to minimize costs. You want to follow Google recommended practices. What should you suggest?

    A. Cloud Run for Anthos
    B. Cloud Run
    C. App Engine Standard
    D. Cloud Functions.

  • Question 154:

    You are building an application that will run in your data center. The application will use Google Cloud Platform (GCP) services like AutoML. You created a service account that has appropriate access to AutoML. You need to enable authentication to the APIs from your on-premises environment. What should you do?

    A. Use service account credentials in your on-premises application.
    B. Use gcloud to create a key file for the service account that has appropriate permissions.
    C. Set up direct interconnect between your data center and Google Cloud Platform to enable authentication for your on-premises applications.
    D. Go to the IAM and admin console, grant a user account permissions similar to the service account permissions, and use this user account for authentication from your data center.

  • Question 155:

    Your company has a single sign-on (SSO) identity provider that supports Security Assertion Markup Language (SAML) integration with service providers. Your company has users in Cloud Identity. You would like users to authenticate using your company's SSO provider. What should you do?

    A. In Cloud Identity, set up SSO with Google as an identity provider to access custom SAML apps.
    B. In Cloud Identity, set up SSO with a third-party identity provider with Google as a service provider.
    C. Obtain OAuth 2.0 credentials, configure the user consent screen, and set up OAuth 2.0 for Mobile and Desktop Apps.
    D. Obtain OAuth 2.0 credentials, configure the user consent screen, and set up OAuth 2.0 for Web Server Applications.

  • Question 156:

    You need to deploy a single stateless web application with a web interface and multiple endpoints. For security reasons, the web application must be reachable from an internal IP address from your company's private VPC and on-premises network. You also need to update the web application multiple times per day with minimal effort and want to manage a minimal amount of cloud infrastructure.

    What should you do?

    A. Deploy the web application on Google Kubernetes Engine standard edition with an internal ingress.
    B. Deploy the web application on Cloud Run with Private Google Access configured.
    C. Deploy the web application on Cloud Run with Private Service Connect configured.
    D. Deploy the web application to GKE Autopilot with Private Google Access configured.

  • Question 157:

    You are creating an application that will run on Google Kubernetes Engine. You have identified MongoDB as the most suitable database system for your application and want to deploy a managed MongoDB environment that provides a support SLA. What should you do?

    A. Create a Cloud Bigtable cluster, and use the HBase API.
    B. Deploy MongoDB Atlas from the Google Cloud Marketplace.
    C. Download a MongoDB installation package, and run it on Compute Engine instances.
    D. Download a MongoDB installation package, and run it on a Managed Instance Group.

  • Question 158:

    You are developing a new web application that will be deployed on Google Cloud Platform. As part of your release cycle, you want to test updates to your application on a small portion of real user traffic. The majority of the users should still be directed towards a stable version of your application. What should you do?

    A. Deploy the application on App Engine. For each update, create a new version of the same service. Configure traffic splitting to send a small percentage of traffic to the new version.
    B. Deploy the application on App Engine. For each update, create a new service. Configure traffic splitting to send a small percentage of traffic to the new service.
    C. Deploy the application on Kubernetes Engine. For a new release, update the deployment to use the new version.
    D. Deploy the application on Kubernetes Engine. For a new release, create a new deployment for the now version. Update the service to use the new deployment.

  • Question 159:

    You installed the Google Cloud CLI on your workstation and set the proxy configuration. However, you are worried that your proxy credentials will be recorded in the gcloud CLI logs. You want to prevent your proxy credentials from being logged.

    What should you do?

    A. Configure username and password by using gcloud configure set proxy/username and gcloud configure set proxy/ proxy/password commands.
    B. Encode username and password in sha256 encoding, and save it to a text file. Use filename as a value in the gcloud configure set core/custom_ca_certs_file command.
    C. Provide values for CLOUDSDK_USERNAME and CLOUDSDK_PASSWORD in the gcloud CLI tool configure file.
    D. Set the CLOUDSDK_PROXY_USERNAME and CLOUDSDK_PROXY PASSWORD properties by using environment variables in your command line tool.

  • Question 160:

    Your continuous integration and delivery (CI/CD) server can't execute Google Cloud actions in a specific project because of permission issues. You need to validate whether the used service account has the appropriate roles in the specific project.

    What should you do?

    A. Open the Google Cloud console, and check the Identity and Access Management (IAM) roles assigned to the service account at the project or inherited from the folder or organization levels.
    B. Open the Google Cloud console, and check the organization policies.
    C. Open the Google Cloud console, and run a query to determine which resources this service account can access.
    D. Open the Google Cloud console, and run a query of the audit logs to find permission denied errors for this service account.

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Google exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your ASSOCIATE-CLOUD-ENGINEER exam preparations and Google certification application, do not hesitate to visit our Vcedump.com to find your solutions here.