Cloud Audit Logs — Google Cloud Professional Cloud Architect Practice Questions

Cloud Audit Logs is the Google Cloud service that records administrative activity, data access events, system events, and policy-denied actions across Google Cloud resources, providing an immutable audit trail for security and compliance. The Professional Cloud Architect exam tests how architects configure and use audit logs to meet governance requirements, investigate incidents, and satisfy regulatory mandates such as PCI-DSS or HIPAA. Key design decisions include which log types to enable (Admin Activity is on by default; Data Access must be explicitly enabled), how to export logs to Cloud Storage or BigQuery for long-term retention, and how to restrict access to audit log data using IAM. Understanding the cost implications of enabling verbose Data Access logging at scale is also relevant.

Free questions on cloud audit logs

You want to log all API calls and resource changes for audit purposes. Which GCP service should you use?
Free question · medium · full answer + explanation

More cloud audit logs questions in the full bank

Practice Google Cloud Professional Cloud Architect Questions Free