Google Cloud Professional Cloud Architect · Free practice question 4 of 12
VM Manager OS patch management
Ashworth Bank runs 1,500 Compute Engine VMs across 40 projects running mixed Linux and Windows. Auditors require monthly OS patching with reports showing compliance for every VM. The deciding constraint is a Google-managed service rather than custom scripts. What should the architect recommend?
- A.Monthly recreation of every VM from a new custom image
- B.Startup scripts that install updates every time a VM reboots
- C.Cloud Scheduler jobs that SSH into each VM, run the update commands and write results to a spreadsheet
- D.VM Manager OS patch management with scheduled patch deployments and compliance reports
Show answer and explanation
Correct answer: D. VM Manager OS patch management with scheduled patch deployments and compliance reports
Why: VM Manager OS patch management schedules patch jobs across VM fleets for Linux and Windows and reports patch compliance, meeting both the automation and audit needs. Startup scripts patch only on reboot and give no compliance view. Monthly image rebuilds are disruptive for stateful VMs, and scheduled SSH scripts are custom tooling.
More free Google Cloud Professional Cloud Architect questions
- Config Sync GitOps across a cluster fleet
- Chirp speech model for call transcription
- AlloyDB read pools for read scaling
- BigQuery long-term storage pricing
- Feature Store against training-serving skew
- Autoclass for unpredictable object access
- Workflows orchestrating serverless steps
- Managed Service for Apache Airflow for complex DAGs
- Cloud DNS failover routing policy
- Datastream change data capture into BigQuery
- Cloud Asset Inventory IAM policy analysis