Cover Page: i About the Author Page: i Title Page Page: iii Copyright Page Page: iv Dedication Page: v Contents at a Glance Page: vi Contents Page: viii Acknowledgments Page: xv Introduction Page: xvi Chapter 1 Introduction to the Professional Cloud Architect Certification Page: xxvi Reasons to Take the Professional Cloud Architect Exam Page: 1 Prerequisite Knowledge Page: 4 Case Studies Page: 8 Mountkirk Games Page: 8 Dress4Win Page: 9 TerramEarth Page: 11 General Tips on Taking Technical Certification Exams Page: 13 How to Use the Supplementary Resources Page: 15 Chapter Review Page: 16 Questions Page: 17 Answers Page: 19 Chapter 2 Overview of Cloud Computing and Google Cloud Page: 21 Overview of Cloud Computing Page: 23 Google Cloud vs. Other Clouds Page: 26 Security First Page: 26 Open Cloud Page: 27 Analytics and Artificial Intelligence Page: 27 Global Data Centers and Network Page: 27 Principles of System Design Page: 27 A 10,000-Foot Overview of GCP Page: 29 Compute Solutions Page: 30 Storage Solutions Page: 31 Database Solutions Page: 32 Data Analytics Page: 33 Networking Solutions Page: 34 Operations Solutions Page: 37 Developer Tools Page: 37 Hybrid Cloud and Multi-Cloud Solutions Page: 38 Migration Solutions Page: 38 Security and Identity Solutions Page: 39 Interacting with the GCP Page: 40 Google Cloud Console Page: 40 Command-Line Interface Page: 40 Exercise 2-1: CLI Example Page: 41 Client Libraries Page: 42 Business and Technical Context for the Google Cloud Architect Page: 42 Assessing Business Requirements Page: 42 Assessing Technical Requirements Page: 44 Chapter Review Page: 47 Additional References Page: 48 Questions Page: 48 Answers Page: 51 Chapter 3 Cloud Identity Page: 53 Setting Up a Cloud Identity and Admin Account Page: 53 Security Principles in the Cloud Page: 55 The AAA Security Model Page: 55 Least Privilege and Separation of Duties Page: 56 Cloud Identity Overview Page: 58 Managing Users in Cloud Identity Page: 58 How Users Authenticate to GCP Page: 60 2-Step Verification Page: 61 Security Auditing Page: 62 Chapter Review Page: 62 Additional References Page: 63 Questions Page: 64 Answers Page: 66 Chapter 4 Resource Management Page: 69 Cloud Resource Manager Overview Page: 70 Organization Hierarchy Page: 70 Organization, Folders, Projects, and Resources Page: 71 Organization Policies Page: 76 Best Practices Page: 76 Exercise 4-1: Creating a Project Page: 77 Chapter Review Page: 77 Additional References Page: 79 Questions Page: 79 Answers Page: 82 Chapter 5 Cloud Identity and Access Management Page: 84 Cloud IAM Overview Page: 86 Members, Roles, and Policies Page: 87 Google Accounts Page: 89 Groups Page: 89 Service Accounts Page: 89 IAM Roles Page: 91 IAM Policies Page: 93 IAM Conditions Page: 94 Accounting and Technical Compliance Page: 95 Chapter Review Page: 96 Additional References Page: 97 Questions Page: 97 Answers Page: 99 Chapter 6 Networking Page: 101 Networking Deep Dive Page: 102 Google’s Global Network Page: 102 Network Tiers Page: 104 Virtual Private Cloud, Subnets, Regions, and Zones Page: 105 Subnet Ranges and IP Addressing Page: 107 Routes and Firewall Rules Page: 110 Private Access Page: 113 Cross-Project Communication Page: 114 Cloud DNS Page: 117 Connectivity to Your Cloud Page: 118 Cloud Router Page: 119 Cloud VPN Page: 119 Cloud Interconnect Page: 121 Cloud Load Balancing Page: 123 Overview Page: 124 Cloud CDN Page: 125 Network Security Page: 125 Network Security Principles Page: 126 Google Front End Page: 127 Firewalls Page: 128 Cloud Armor Page: 131 Cloud NAT Page: 131 VPC Service Controls Page: 132 Identity-Aware Proxy Page: 132 Network Logging Page: 133 Chapter Review Page: 135 Additional References Page: 137 Questions Page: 137 Answers Page: 140 Chapter 7 Compute and Containers Page: 142 Google Compute Engine Page: 144 Virtual Machine Instances Page: 144 Images Page: 149 Instance Templates and Instance Groups Page: 150 Storage Options Page: 150 OS Login Page: 151 Google App Engine Page: 151 App Engine Flex vs. App Engine Standard Page: 152 Google Kubernetes Engine Page: 153 Cluster Architecture Page: 154 Configuration Page: 155 Node Upgrades Page: 156 Cloud Functions Page: 156 Cloud Run Page: 157 API Management Page: 157 Apigee Page: 158 Cloud Endpoints Page: 158 Secure Your APIs Page: 158 Chapter Review Page: 159 Additional References Page: 160 Questions Page: 160 Answers Page: 163 Chapter 8 Storage, Databases, and Data Analytics Page: 165 Storage Page: 166 Google Cloud Storage Page: 167 Cloud Filestore Page: 169 Persistent Disk Page: 170 Local SSD Page: 170 Databases Page: 171 Cloud SQL Page: 171 Cloud Spanner Page: 173 Cloud Bigtable Page: 173 Cloud Firestore Page: 174 Cloud Memorystore Page: 174 Data Analytics Page: 175 BigQuery Page: 175 Cloud Dataproc Page: 176 Cloud Dataflow Page: 177 Cloud Pub/Sub Page: 177 Data Security Page: 178 Data Classification Page: 178 Cloud DLP Page: 180 Encryption Page: 180 Chapter Review Page: 181 Additional References Page: 182 Questions Page: 183 Answers Page: 185 Chapter 9 DevOps Page: 187 The DevOps Philosophy Page: 188 Continuous Integration and Continuous Deployment Page: 189 Continuous Integration Page: 190 Continuous Deployment Page: 191 Infrastructure as Code Page: 192 Deployment Strategies Page: 193 Blue-Green Deployment Page: 194 Rolling Deployment Page: 194 Canary Deployment Page: 194 A/B Deployment Page: 194 Deployment Tools Page: 195 Google Cloud Deployment Manager Page: 195 Cloud Build Page: 195 Cloud Source Repositories Page: 196 Container Registry Page: 196 Chapter Review Page: 196 Additional References Page: 198 Questions Page: 198 Answers Page: 200 Chapter 10 Cloud Operations Page: 201 Cloud Logging Page: 203 Log Types Page: 205 Cloud Trace, Cloud Profiler, and Cloud Debugger Page: 207 Cloud Monitoring Page: 207 Workspaces Page: 208 Monitoring Agent Page: 208 Uptime Checks Page: 209 Metrics and Alerts Page: 209 Dashboards Page: 210 The Importance of Resilience Page: 210 Chapter Review Page: 212 Additional References Page: 213 Questions Page: 214 Answers Page: 216 Chapter 11 Security Page: 218 Security Fundamentals Page: 221 CIA Triad Page: 222 Control Categories Page: 222 Control Functions Page: 223 Asset × Threat × Vulnerability = Risk Page: 224 Security Modernization Page: 225 Compliance Page: 226 Infrastructure Security Highlights Page: 229 Identity Security Page: 229 Resource Management Security Page: 229 IAM Security Page: 230 Network Security Page: 231 Application Layer Security Page: 232 Data Security Page: 232 DevOps Security Page: 233 Security Operations Page: 234 Cloud Asset Inventory Page: 236 Security Command Center Page: 236 Chapter Review Page: 238 Additional References Page: 239 Questions Page: 240 Answers Page: 242 Chapter 12 Billing, Migration, and Support Page: 244 Billing Fundamentals Page: 246 Cost Control Page: 247 Migration Planning Page: 248 Resource Quotas vs. Capacity Page: 248 Transferring Applications and Data Page: 249 Training and Enablement Page: 250 Google Cloud Support Page: 251 Chapter Review Page: 252 Questions Page: 253 Answers Page: 255 Closing Thoughts Page: 255 Appendix A Objective Map Page: 255 Appendix B About the Online Content Page: 255 System Requirements Page: 255 Your Total Seminars Training Hub Account Page: 255 Privacy Notice Page: 255 Single User License Terms and Conditions Page: 255 TotalTester Online Page: 255 Technical Support Page: 255 Glossary Page: 255 Index Page: 255
Description: