top of page

Oracle Cloud Infrastructure Architect Associate Certification Exam Questions & 1Z0-1072-25 Prep

  • CertiMaan
  • Oct 16, 2025
  • 26 min read

Updated: May 29

The Oracle Cloud Infrastructure Architect Associate Certification certification is designed for IT professionals, cloud engineers, architects, system administrators, and technology enthusiasts who want to validate their understanding of cloud infrastructure concepts within the Oracle Corporation ecosystem. This certification focuses on core Oracle Cloud Infrastructure ( OCI ) services, including compute, networking, storage, identity and access management, security, databases, monitoring, governance, and cloud architecture fundamentals. It helps candidates demonstrate their ability to design and implement secure, scalable, high-performing, and cost-effective cloud solutions using OCI services.

The Oracle Cloud Infrastructure Architect Associate certification is ideal for professionals preparing for cloud-focused roles such as Cloud Architect, OCI Administrator, Cloud Engineer, Infrastructure Specialist, Solutions Consultant, and DevOps Engineer. Whether you are transitioning from traditional infrastructure environments or expanding your multi-cloud expertise, this certification helps build foundational and practical OCI knowledge aligned with modern enterprise cloud adoption strategies.

This page provides carefully structured Oracle Cloud Infrastructure Architect Associate certification exam questions, practice-focused learning guidance, conceptual explanations, and preparation insights to help you strengthen your exam readiness. The sample questions are intended to simulate real certification-style thinking, helping you understand how Oracle tests cloud architecture concepts, deployment strategies, networking design, security controls, high availability, and operational best practices.

Using practice questions regularly can significantly improve certification preparation because they help identify weak knowledge areas, improve time management, reinforce technical concepts, and build confidence before the actual exam. Instead of memorizing answers, candidates should focus on understanding OCI architecture principles, service integrations, cloud design decisions, and real-world implementation scenarios. Consistent practice combined with official Oracle documentation, hands-on OCI labs, and architecture-based learning can greatly improve success in the Oracle Cloud Infrastructure Architect Associate certification exam.


Table of Contents


Oracle Cloud Infrastructure Architect Associate Certification Exam Details

Exam Detail

Information

Certification

Oracle Cloud Infrastructure Architect Associate Certification

Provider

Oracle Corporation

Certification Level

Associate

Exam Focus

Oracle Cloud Infrastructure (OCI) Architecture & Core Cloud Services

Exam Code

1Z0-1072 (May vary by updated certification track)

Questions

Approximately 50–60 Questions

Exam Duration

Around 90 Minutes

Passing Score

Typically 68% or higher

Exam Format

Multiple Choice & Multiple Response

Exam Delivery

Pearson VUE Testing Center & Online Proctored Exam

Exam Language

English

Recommended Experience

Basic understanding of cloud computing, networking, virtualization, and infrastructure concepts

Key Technical Domains

OCI Compute, Networking, Storage, IAM, Security, Databases, Governance, Monitoring, High Availability

Difficulty Level

Beginner to Intermediate Cloud Architecture Level

Ideal Candidates

Cloud Engineers, Solution Architects, Infrastructure Administrators, DevOps Engineers, IT Professionals

Hands-On Requirement

Strongly Recommended — Practical OCI console and service experience improves success rate

Certification Validity

Subject to Oracle Certification policy updates

Exam Cost

Varies by region and Oracle certification program updates

Recommended Preparation Resources

Oracle University, OCI Documentation, Hands-On Labs, Practice Questions, Architecture Learning Paths

Career-Oriented Roles

OCI Architect Associate, Cloud Consultant, Cloud Infrastructure Engineer, Oracle Cloud Administrator

This exam details table helps certification aspirants quickly understand the Oracle Cloud Infrastructure Architect Associate certification structure, exam expectations, core domains, and preparation requirements. It also improves search visibility for queries related to Oracle Cloud certification exam pattern, OCI Architect Associate exam format, Oracle cloud certification details, and OCI certification preparation.


How to Prepare for the Oracle Cloud Infrastructure Architect Associate Certification

Preparing for the Oracle Cloud Infrastructure Architect Associate Certification exam requires a combination of conceptual learning, hands-on Oracle Cloud practice, architecture understanding, and exam-oriented preparation strategies. Since this certification focuses on real-world cloud infrastructure design and OCI service implementation, candidates should prioritize practical learning rather than relying only on theoretical reading.

Start by building a strong understanding of core Oracle Corporation services. Focus on key domains such as OCI Compute, Virtual Cloud Networks (VCN), Load Balancers, Block Storage, Object Storage, Identity and Access Management (IAM), Security Lists, Compartments, Monitoring, Databases, and High Availability architecture. Understanding how these services interact in enterprise cloud environments is essential for solving scenario-based certification questions.

Hands-on practice is one of the most important preparation methods for this certification. Create an Oracle Cloud Free Tier account and explore the OCI Console directly. Practice tasks such as:

  • Launching compute instances

  • Configuring VCNs and subnets

  • Setting IAM policies

  • Creating Object Storage buckets

  • Managing security rules

  • Deploying load balancers

  • Monitoring OCI resources

Practical exposure helps candidates understand architecture workflows, cloud networking behavior, and OCI operational concepts more effectively than passive learning alone.

Using Oracle Cloud Infrastructure Architect Associate practice questions regularly can significantly improve exam readiness. Practice exams help identify weak knowledge areas, improve question interpretation skills, strengthen time management, and increase confidence before the actual certification exam. Instead of memorizing answers, focus on understanding why a specific OCI service or architecture approach is the correct solution for a business requirement.

Candidates should also study official Oracle learning paths, architecture diagrams, and OCI documentation. Pay special attention to:

  • Shared Responsibility Model

  • OCI security best practices

  • Fault domains & availability domains

  • Scalability and disaster recovery

  • Cost optimization strategies

  • Networking and connectivity models

A structured preparation plan combining theory, hands-on OCI labs, mock exams, and architecture-focused revision can greatly improve success in the Oracle Cloud Infrastructure Architect Associate certification exam while also building practical cloud skills valuable in real enterprise environments.


Reviewed & Verified by CertiMaan Certification Support Team

This Oracle Cloud Infrastructure Architect Associate Certification exam questions page has been carefully reviewed by the CertiMaan Certification Support Team to ensure technical accuracy, certification relevance, and alignment with the latest Oracle Corporation certification objectives. The sample questions, preparation guidance, and architecture-focused explanations provided on this page are designed to help certification aspirants strengthen their Oracle Cloud Infrastructure knowledge, improve practical understanding, and prepare confidently for the OCI Architect Associate certification exam.

Our review process focuses on maintaining high-quality, exam-oriented educational content that reflects modern cloud infrastructure practices, Oracle Cloud service usage patterns, and real-world architecture scenarios commonly encountered in enterprise environments. Each topic is reviewed for conceptual clarity, cloud terminology accuracy, technical consistency, and alignment with Oracle Cloud Infrastructure best practices.

The CertiMaan Certification Support Team continuously evaluates evolving OCI services, cloud security standards, infrastructure deployment models, networking principles, governance strategies, scalability practices, and operational management concepts to keep this certification preparation content updated and relevant for cloud professionals, infrastructure engineers, administrators, architects, and certification candidates.

This page is intended to support candidates preparing for Oracle Cloud certification exams through educational practice and structured learning. Candidates are encouraged to combine these practice questions with official Oracle learning resources, hands-on OCI labs, architecture exercises, and practical cloud implementation experience for the best preparation outcome.

Topics Reviewed: OCI Compute Services, Virtual Cloud Networks (VCN), Identity & Access Management (IAM), OCI Storage Services, Networking & Connectivity, Security Architecture, Load Balancing, Availability Domains, Fault Domains, Monitoring, Governance, Cloud Architecture Design, Disaster Recovery Concepts, OCI Best Practices, Scalability & High Availability Strategies.


Career Benefits of Oracle Cloud Infrastructure Architect Associate Certification

Earning the Oracle Cloud Infrastructure Architect Associate Certification can provide strong career advantages for professionals looking to build expertise in cloud computing, infrastructure architecture, and enterprise cloud operations. As organizations continue adopting cloud-first strategies, the demand for professionals with practical cloud architecture skills and Oracle Cloud Infrastructure knowledge continues to grow across industries such as banking, healthcare, retail, telecommunications, manufacturing, and enterprise IT services.

This certification validates your understanding of core Oracle Corporation services, cloud networking, compute resources, storage architecture, security implementation, governance models, scalability strategies, and OCI operational best practices. It demonstrates to employers that you possess foundational cloud architecture knowledge and can work with Oracle Cloud environments in real-world business scenarios.

Professionals who complete the OCI Architect Associate certification often pursue roles such as:

  • Cloud Infrastructure Engineer

  • OCI Administrator

  • Cloud Solutions Architect

  • DevOps Engineer

  • Systems Engineer

  • Cloud Operations Specialist

  • Infrastructure Consultant

  • Technical Support Engineer

  • Multi-Cloud Engineer

One of the major benefits of this certification is its relevance in modern enterprise cloud transformation projects. Many organizations running Oracle workloads, enterprise databases, ERP systems, analytics platforms, and hybrid cloud environments increasingly rely on OCI services for scalability, security, performance, and cost optimization. Having OCI certification credentials can improve professional credibility during cloud migration, infrastructure modernization, and digital transformation initiatives.

The certification also helps candidates strengthen practical skills beyond exam preparation. Through hands-on OCI learning, professionals gain exposure to:

  • Cloud networking architecture

  • Identity and access management

  • Disaster recovery planning

  • High availability configuration

  • Secure infrastructure deployment

  • Resource monitoring and governance

  • Cloud cost management strategies

For professionals already working with other cloud platforms such as Amazon Web Services, Microsoft Corporation, or Google LLC, the Oracle Cloud Infrastructure Architect Associate certification can expand multi-cloud expertise and improve adaptability in hybrid enterprise environments.

Beyond technical validation, this certification also supports long-term professional development by building confidence in cloud architecture decision-making, infrastructure planning, and enterprise cloud operations. It can serve as a strong foundation for advanced Oracle Cloud certifications and more specialized cloud architecture career paths in the future.


Get Free Oracle Cloud Infrastructure Architect Associate Certification Sample Questions, Dumps - CertiMaan

40+ Oracle Cloud Infrastructure Architect Associate Certification Exam QuestionsList :


1. Why are two subnets required to create a public load balancer when additional subnets are often used for back-end servers? (Choose two.)

  1. Routing is simpler when the load balancer is not in the same subnet as the back-end server.

  2. Performance is higher when more subnets are used.

  3. Additional subnets for back-end servers allow for separate route tables for these servers.

  4. Additional subnets for back-end servers allow for separate security lists for these servers.

2. Which two statements are true about Oracle Cloud Infrastructure Compute Service? (Choose two.)

  1. You can launch a virtual or bare metal instance by using the same LaunchInstance API.

  2. You cannot launch a bare metal server in Oracle Cloud Infrastructure Compute Service.

  3. You can attach a block volume in an Availability Domain other than your compute instance.

  4. You can share custom images across tenancies and regions.

3. You are responsible for setting up access for all the cloud users of a large enterprise. You log in to the Phoenix region and start creating users and policies. You then realize that some users might be creating resources in the Ashburn region. Which step should you perform to enable those users?

  1. You can assign a region to each of the users at the time of creation.

  2. IAM users are global and non-admin users can add resources to any region by default.

  3. You need to log in to each region separately to create users for that particular region.

  4. IAM users are global. As an administrator, make sure that you subscribe to the Ashburn region.

4. Which two options are true for Autonomous Transaction Processing (ATP) database? (Choose two.)

  1. You can add/remove Diskgroup in ATP

  2. You can scale storage up or down in ATP

  3. You can scale CPU up or down in ATP

  4. You can add more Pluggable Database for consolidating multiple databases in ATP

  5. You can add new ORACLE_HOME for bringing older versions of on-premises databases to ATP

5. You deployed a web server in Oracle Cloud Infrastructure using an ephemeral public IP. After a few changes in your web server configuration, you rebooted the server and a new public IP was associated to your instance. What should you do to prevent this from happening again?

  1. Create a reserved public IP and associate it with the security list that your complete instance is using

  2. Create a reserved public IP and associate it with the subnet of your compute instance

  3. Create a reserved public IP and associate it with the VNIC of your compute instance

  4. Create a reserved public IP and associate it with the hosts file of your web server

6. You have created a public subnet in a VCN, and your public subnet has a Route Table, a Security List, and an Internet Gateway. However, none of the compute instances can connect to the Internet. Which two are possible reasons for the connectivity issue? (Choose two.)

  1. There is no Dynamic Routing Gateway (DRG) associated with the VCN.

  2. The Route Table has no default route for routing traffic to the Internet Gateway.

  3. There is no stateful ingress rule in the Security List associated with the public subnet.

  4. There is no stateful egress rule in the Security List associated with the public subnet.

7. You currently manage an e-commerce application that utilizes 25 identical compute resources to handle customer traffic. The stakeholders have asked you to create another 25 identical compute resources in order to deploy and test a new version of the software? What is the most efficient process to create 25 additional compute resources that are identical to the first 25?

  1. Create a custom image from 1 of the 25 servers. Use this custom image to provision 25 more servers

  2. Create a manual backup of each boot volume belonging to the 25 servers. Restore each backup to create 25 new boot volumes, from which you will provision 25 more servers

  3. Provision a new server and configure it to be identical to the first 25. Create a custom image from the new server, then use the custom image to provision 24 more servers

  4. Clone the boot volume of 1 of the 25 servers. Use the boot volume clone to provision 25 more servers

8. Which two are true for achieving High Availability on Oracle Cloud Infrastructure? (Choose two.)

  1. Store your database across multiple regions so that half of the data resides in one region and the other half resides in another region.

  2. Attach your block volume form Availability Domain 1 to a compute instance in Availability Domain 2 (and vice versa) so that they are highly available.

  3. Configure your database to have Data Guard in another Availability Domain in Sync mode within a region.

  4. Store your database files on Object Storage so that they are available in all Availability Domains in all regions.

  5. Distribute your application servers across all Availability Domains within a region.

9. You are deploying a highly available web application in Oracle Cloud Infrastructure and have decided to use a public load balancer. The back-end web servers will be distributed across all three availability domains (ADs). How many subnets should you create to deliver a secure highly available application?

  1. three subnets in total; one subnet in each AD

  2. five subnets in total; two subnets each in the first and second AD with a single subnet in the third AD

  3. six subnets in total; two subnets in each AD; one for the load balancer and one for the web servers

  4. four subnets in total; one subnet in each AD for the web servers and a single subnet in any one AD for the load balancer

10. You are in the process of setting up a highly available student registration website on Oracle Cloud Infrastructure (OCI). You use a load balancer and a database service on OCI. You launch two compute instances each in a different subnet and add them to the back end set of a public load balancer. The load balancer is configured correctly and working. You then deploy the student registration application on these two compute instances. The application can communicate with the database service. However, when you type the URL of this student registration application in your browser, no web page appears. What could be the cause?

  1. The security lists of the subnets on which the two instances are located do not have “allow” rules for port 80 and 443.

  2. The load balancer performed a health check on the application and found that compute instances were not in a healthy state and terminated the instances.

  3. The client requested https access to the application and the load balancer service does not support end-to-end SSL from the client to the listener to the back-end set.

  4. The Dynamic Routing Gateway is preventing the client traffic from your data center network from reaching the public IP of the load balancer.

11. Which statement is true about cloning a volume?

  1. You need to detach a volume before cloning from it.

  2. A cloned volume is the same as a snapshot that has a dependency on the source volume.

  3. You cannot change the block volume size when cloning a volume.

  4. You can create a clone for a volume across regions.

12. When terminating a compute instance, you want to preserve the boot volume and its data. Which step will you need to perform?

  1. You cannot preserve the boot volume; it will always be deleted when you terminate the instance.

  2. Reboot the instance first, and then terminate the instance.

  3. Disable the default option to delete the boot volume when terminating an instance.

  4. Before terminating the instance, you must detach the boot volume.

13. How can you provide users access to an existing compartment?

  1. by granting users access to a compartment when the compartment is created

  2. by adding users to a group and defining a policy to provide the group access to the compartment

  3. by adding users to a compartment. All users in the compartment will have access to the objects in the compartment.

  4. by granting access directly to the user when the user is created

14. You have been notified of an application failure indicating that one or more of the Oracle Cloud Infrastructure (OCI) resources have become unavailable. After scanning the Compute and Database consoles, you notice that one of the DB Systems is missing. What would you do to identify the reason for this missing resource?

  1. Navigate to the Audit console and search the previous 24 hours for all Delete actions to get a list of any resource that was deleted in the past 24 hours.

  2. Create a serial console connection to the DB System that does not appear in the management console. Connect to the serial console connection, and then review the system logs under /var/log/messages.

  3. View the service limits associated with your account to ensure that you have not exceeded the available number of DB system in your tenancy.

  4. Navigate to the Audit console and search the previous 24 hours for all List actions to get a list of every event that occurred in the past 24 hours.

15. Which two statements are true about policies?

  1. You can use read, write, manage, and inspect as verbs for defining a policy.

  2. A policy is a document that specifies who can access which Oracle Cloud Infrastructure resources that your company has, and how.

  3. Users need not do anything but still have to be added to a group with appropriate policies defined.

  4. You can deny access to a group via policies.

16. You have an application deployed in Oracle Cloud Infrastructure running only in the Phoenix region. You were asked to create a disaster recovery (DR) plan that will protect against the loss of critical data. The DR site must be at least 500 miles from your primary site and data transfer between the two sites must not traverse the public Internet. Which is the recommended disaster recovery plan?

  1. Create a new virtual cloud network (VCN) in the Phoenix region and create a subnet in one availability domain (AD) that is not currently being used by your production systems. Establish VCN peering between the production and DR sites.

  2. Create a DR environment in Ashburn. Associate a DRG with the VCN in each region and create a remote peering connection between the two VCNs.

  3. Create a DR environment in Ashburn and provision a FastConnect virtual circuit using DRG between the regions.

  4. Create a DR environment in Ashburn. Associate a dynamic routing gateway (DRG) with the VCN in each region and configure an IPsec VPN connection between the two regions.

17. Which three actions need to be performed before attempting a data transfer service job?

  1. Obtain an available host machine which can run the dts utility on-premise with SATA or USB drives attached for the transfer job.

  2. Get access to a high-speed internet connection

  3. Data Transfer Service and Storage Service Limits should be checked and raised if required.

  4. Set up SSH access to a host on OCI to coordinate the transfer job.

  5. Create an object bucket to receive the job.

18. A customer has established an Oracle Cloud Infrastructure (OCI) FastConnect connection to OCI. The virtual circuit is up and routes are being advertised from the customer’s end, however the customer is unable to ping from compute instances inside the virtual cloud network (VCN) to servers residing in its on-premises data center. Which two options on OCI would remedy this situation? (Choose two.)

  1. Modify the route table associated with the VCN subnet in which the instance resides. Add a route to the customer’s on-premises network via the Dynamic Routing Gateway (DRG).

  2. Modify the security list associated with the VCN subnet in which the instance resides. Add a stateful egress rule to allow ICMP traffic to the customer’s on-premises network.

  3. Modify the security list associated with the VCN subnet in which the instance resides. Add a stateful ingress rule to allow ICMP traffic from anywhere.

  4. Modify the default VCN route table to add a route back to the customer’s on-premises network via the DRG.

19. You have five different company locations spread across the US. For a proof-of-concept (POC) you need to setup secure and encrypted connectivity to your workloads running in a single virtual cloud network (VCN) in the Oracle Cloud Infrastructure Ashburn region from all company locations. What would meet this requirement?

  1. Create five internet gateways in your VCN and have separate route table for each internet gateway.

  2. Create five virtual circuits using FastConnect for each company location and terminate those connections on a single dynamic routing gateway (DRG). Attach that DRG to your VCN.

  3. Create five IPsec connections with each company location and terminate those connections on a single DRG. Attach that DRG to your VCN.

  4. Create five IPsec VPN connections with each company location and terminate those connections on five separate DRGs. Attach those DRGs to your VCN.

20. Which statement is true about DB Systems?

  1. Data Guard as a Service is offered between regions.

  2. You cannot manage the database as sys/sysdba.

  3. You have full control over the automatic backup schedule and retention periods.

  4. You can manage Oracle database initialization parameters at a global level.


Get Free Oracle Cloud Infrastructure Architect Associate Certification Certification Exam Questions PDF.

Exam Tips Oracle Cloud Infrastructure Architect Associate Certification

Preparing for the Oracle Cloud Infrastructure Architect Associate Certification exam becomes much easier when candidates follow a structured exam strategy instead of relying only on memorization. Since the certification focuses heavily on cloud architecture concepts, OCI services, networking, security, scalability, and operational best practices, understanding how Oracle Cloud services work together is more important than remembering isolated facts.

One of the most effective exam preparation techniques is to first understand the overall exam blueprint and domain weightage. Candidates should identify high-priority topics such as:

  • OCI Compute

  • Virtual Cloud Networks (VCN)

  • Identity and Access Management (IAM)

  • Load Balancers

  • OCI Storage Services

  • Security & Governance

  • Monitoring & Logging

  • High Availability & Disaster Recovery

These core domains frequently appear in architecture-based and scenario-driven certification questions.

Hands-on OCI practice is extremely valuable for improving confidence during the exam. Candidates should spend time using the Oracle Corporation to create compute instances, configure VCNs, apply IAM policies, manage storage services, and monitor resources. Practical experience helps you understand how OCI services behave in real-world environments, making it easier to answer implementation-focused questions accurately.

Time management is another important success factor during the certification exam. While practicing mock tests, try simulating actual exam conditions. Avoid spending too much time on a single difficult question. Instead:

  • Answer straightforward questions first

  • Mark difficult questions for review

  • Return to complex scenario-based questions later

  • Eliminate obviously incorrect answers before selecting the best option

Candidates should also focus on understanding OCI architecture terminology such as:

  • Availability Domains

  • Fault Domains

  • Compartments

  • Security Lists

  • Route Tables

  • Dynamic Routing Gateways

  • Shared Responsibility Model

These concepts are commonly tested because they directly impact cloud architecture design decisions.

Another useful strategy is weak-area analysis. After completing practice tests, carefully review incorrect answers and identify recurring knowledge gaps. If networking questions are difficult, spend more time understanding VCN design and connectivity models. If security questions are challenging, review IAM policies, OCI security best practices, and governance concepts.

Finally, remain calm and confident during the exam. Consistent preparation using official Oracle learning resources, architecture-based practice questions, hands-on OCI labs, and revision sessions can significantly improve both technical understanding and exam performance. The goal should not only be passing the certification exam, but also developing practical Oracle Cloud Infrastructure skills that are valuable in real enterprise cloud environments.

21. Your company has decided to move a few applications to Oracle Cloud Infrastructure and you have been asked to design it for Disaster Recovery (DR). One of the items of your design is to deploy the DR at least 300 miles from the home site and minimize the network latency as much as possible. Based on that, what will be the recommended deployment?

  1. Deploy applications in two separated VCNs in different Availability Domains and use VCN Remote Peering

  2. Deploy applications in different regions and have them connected using VCN Remote Peering

  3. Deploy applications in two separated VCNs in different regions and use VCN Local Peering

  4. Deploy applications on the same region splitting workloads across Availability Domains.

22. Your company is moving an Internet-facing, 2-tier web application into Oracle Cloud Infrastructure. The application must have a highly available architecture. Which two design options would you consider? (Choose two.)

  1. Configure a Dynamic Route Gateway in your VCN and make it highly available.

  2. Configure a NAT instance in your Virtual Cloud Network (VCN). Create a route rule by using the private IP of the NAT instance as a route target for all the private subnets in your VCN.

  3. Create an Internet Gateway and attach it to your VCN. Deploy public load balancer nodes into two Available Domains.

  4. Place all web servers behind a public load balancer.

23. You have created a virtual cloud network (VCN) with three private subnets. Two of the subnets contain application servers and the third subnet contains a DB System. The application requires a shared file system so you have provisioned one using the file storage service (FSS). You also created the corresponding mount target in one of the application subnets. The VCN security lists are properly configured so that both application servers and the DB System can access the file system. The security team determines that the DB System should have read-only access to the file system. What change would you make to satisfy this requirement?

  1. Create an NFS export option that allows READ_ONLY access where the source is the CIDR range of the DB System subnet.

  2. Connect via SSH to one of the application servers where the file system has been mounted. Use the Unix command chmod to change permissions on the file system directory, allowing the database user read only access.

  3. Modify the security list associated with the subnet where the mount target resides. Change the ingress rules corresponding to the DB System subnet to be stateless.

  4. Create an instance principal for the DB System. Write an Identity and Access Management (IAM) policy that allows the instance principal read-only access to the file storage service.

24. You are the Cloud Architect of a company, and are designing a solution on Oracle Cloud Infrastructure where you want to have all your compute instances resistant to hardware failure. Which two are recommended best practices to achieve the requirement on Oracle Cloud Infrastructure? (Choose two.)

  1. Create a custom image of your system drive each time you change the image.

  2. Attach block volumes from different Availability Domains to compute instances in different Availability Domains for high availability.

  3. Design your system with redundant compute modes in different Availability Domains to support the failover capability.

  4. Create backups of your block volumes that are associated with compute instances in different regions.

25. Your organization has deployed a large, complex application across multiple compute instances in Oracle Cloud Infrastructure (OCI). These compute instances also have block volume storage attached to them. You want to create a time consistent backup of these block volume storage.\Which implementation strategy should be used?

  1. Create a manual backup of each volume

  2. Use scripts available in OCI to backup block volume storage

  3. Group volumes in a volume group first and then use available scripts in OCI

  4. Group volumes in a volume group and create a manual backup of the volume group

26. Within your tenancy you have a compute instance with a boot volume and a block volume attached. The boot volume contains the OS and the attached block volume contains the instance’s important data. Logs on the boot volume have filled the boot volume and are causing issues with the OS. What should you do to resolve this situation?

  1. Stop the instance that is full. Create a manual backup of the block storage before making changes. Detach the block volume, create a new instance of the same shape with a larger custom boot volume and attach the block volume to the new instance. Configure the OS and any related application(s) to access the block volume under the same mount point as before.

  2. Create a new instance with a larger boot volume size as well a new block volume which is the same size or larger than the one attached to the full instance. rsync the state of the boot volume and the state of the block volume between the two instances.

  3. Detach the block volume from the full instance. Create a new instance of the same shape with a larger boot volume and rsync the state of the boot volume between the instances. Attach the block volume to the new instance.

  4. Create a manual backup of the block storage instance. Create a custom image of the full instance. Once that completes deploy the custom image to a new instance.

27. Which two use Oracle dynamic routing gateway (DRG) for connectivity? (Choose two.)

  1. Remote virtual cloud network (VCN) peering across region

  2. Oracle IPsec VPN

  3. Local VCN peering

  4. Oracle Cloud Infrastructure FastConnect public peering

28. You have an external facing web server running in the Oracle Cloud Infrastructure (OCI) London region. You are notified that customers in North America and Australia are facing high latency while connecting to your web server. Which services are available on OCI that can help you get current latency statistics to your web server from these markets?

  1. Use DNS Zone Management service to check latency over that connection

  2. Setup an IPsec VPN with customers in those markets and check latency over that connection

  3. Use the Internet Intelligence tool. Run tests using the web server’s public IP address and review traceroute details from different vantage points

  4. Setup a FastConnect with customers in those markets and check latency over that connection

29. At the end of a terraform apply operation, what is the default output?

  1. nothing by default

  2. statistics about what was added, changed, and destroyed

  3. the entire state file

  4. statistics about what was added, changed, and destroyed, and the values of outputs

30. You have a shared file system between two web servers using File Storage Service (FSS) and you were tasked to create a backup plan for this environment to protect the data placed into the shared file system. What is the recommended approach to create this backup using FSS features?

  1. Implement a backup policy to execute a snapshot of the shared volume.

  2. Implement a backup policy to copy data from the shared volume to object storage.

  3. Compress the data that is in the shared volume and copy it into a different folder on the boot volume disk.

  4. Use the rsync tool to send data from the shared volume to a boot volume disk.

  5. Use the rsync tool to send data from the shared volume to a block volume.

31. A company currently uses Microsoft Active Directory as its identity provider. The company recently purchased Oracle Cloud Infrastructure (OCI) to leverage the cloud platform for its test and development operations. As the administrator, you are now tasked with giving access only to developers so that they can start creating resources in their OCI accounts. Which step will you perform to achieve this requirement?

  1. Create a group for developers on OCI and map the group to a similar group in Microsoft Active Directory during the federation process.

  2. Federate all Microsoft Active Directory groups with OCI to allow users to use their existing credentials.

  3. Create a new user account for each user, and then create policies to provide access to developers.

  4. Create a group for developers on OCI, export all the developers from Microsoft Active Directory, and then import them into the Identity and Access Management (IAM) group.

32. You have successfully configured identity federation between Oracle Cloud Infrastructure (OCI) and Oracle Identity Cloud Services (IDCS). A new project manager wants access to OCI for her team and provides the name of an existing group within IDCS to use when granting access. How do you configure federation to allow the project team access to OCI resources?

  1. Create a new IAM group in OCI and map it to the existing IDCS group. Create a new policy in IDCS and reference the name of the IAM group.

  2. Create a new Identity and Access Management (IAM) policy in OCI and reference the name of the IDCS group in each policy statement.

  3. Create a new compartment in OCI with the same name as the existing IDCS group. Create an IAM policy that references the new compartment and the name of the IDCS group.

  4. Create a new IAM group in OCI and map it to the existing IDCS group. Create a new IAM policy and reference the name of the IAM group in each policy statement.

33. Which three are capabilities of the dbaascli utility? (Choose three.)

  1. Patching the primary database deployment

  2. Open port 1521 in the VCN to allow for traffic to the listener

  3. Start and open the database instance

  4. Switchover and failover in an Oracle Guard configuration

  5. .E. Clone a DB

34. As the Cloud Architect for your company, you have been tasked with designing a high performance (HPC) cluster in Oracle Cloud Infrastructure (OCI). The following requirements have been defined: The cluster must be a minimum of three nodes, but may increase to six nodes when demand requires. The cluster must be resilient to any potential infrastructure failures. To minimize latency, all nodes must be deployed within the same availability domain (AD). Adding or replacing nodes within the cluster should take no more than 30 minutes. Which two steps should be performed to satisfy these requirements in OCI? (Choose two.)

  1. Deploy the cluster in a single AD with a shared file system that leverages the file storage service (FSS). Deploy a standby cluster in another AD and configure it to use the same shared file system.

  2. Deploy the cluster in a single AD. Place each of the nodes in one of the three different fault domains in that AD.

  3. Create a backup of your HPC node compute instance boot volume. Launch new compute instances directly from the backup reduce provisioning time.

  4. Create a custom image of your HPC node compute instance. Launch new compute instances using this image to reduce provisioning time.

  5. Deploy the cluster in a single AD. Place each of the nodes in a different virtual cloud network (VCN) subnet.

35. Which two statements about the Oracle File Storage Service (FSS) Security are accurate? (Choose two.)

  1. Oracle IAM controls which filesystems are mountable by which instances.

  2. Security lists can be used as a virtual firewall to prevent an instance from mounting an FSS mount target within a subnet.

  3. Encryption of file storage in FSS is optional.

  4. Data in transit to an FSS mount target is encrypted.

  5. FSS leverages UNIX user group and permission checking for file access security.

36. You had an outage in your application caused by the loss of a shared volume provisioned by File Storage Service (FSS). At this point, you need to restore the data from a snapshot you created of the FSS. What are the steps to restore the data?

  1. Access the directory where the shared volume is mounted, then cd into .snapshot folder, find the snapshot folder you want to recover and use cp or rsync tool to copy the files to the original location.

  2. Open OCI Console, select File Storage Service, find the shared storage, then click on snapshot and restore.

  3. Open OCI Console, select File Storage Service, find the snapshot you created and click restore.

  4. Access the directory, where you mounted the shared volume, then cd into .snapshot folder and find the snapshot folder you want to recover and rename that folder to the original folder name.

37. When terminating a compute instance, which statement is true?

  1. The instance needs to be stopped first, and then terminated.

  2. The boot volume is always deleted.

  3. All block volumes attached to the instance are terminated.

  4. Users can preserve the boot volume associated with the instance.

38. Which two statements are true about subnets within a VCN? (Choose two.)

  1. You can have multiple subnets in an Availability Domain for a given VCN.

  2. Private and Public subnets cannot reside in the same Availability Domain for a given VCN.

  3. Subnets can have their IP addresses overlap with other subnets in another network for a given VCN.

  4. Instances obtain their private IP and the associated security list from their subnets.

39. Which statement is true about Oracle Cloud Identifiers (OCID)?

  1. mytenancy.oc.ocid is a valid OCID.

  2. If you delete a user, and them create a new user with the same name, the user will be considered a different user because of different OCIDs.

  3. Users can customize OCIDs for all the resources in their compartments.

  4. If you delete a user, and then create a new user with the same name, the new user will be assigned the exact same OCIDs as the system remembers.

40. Which two statements are true about data guard service on DB Systems in Oracle Cloud Infrastructure (OCI)? (Choose two.)

  1. Data guard implementation requires two DB Systems, one running the primary database on a virtual machine and the standby database running on bare metal

  2. Data guard configuration on the OCI is limited to one standby database per primary database

  3. Data guard configuration on the OCI is limited to a virtual machine only

  4. Data guard implementation requires two DB Systems, one containing the primary database and one containing the standby database


CertiMaan provide Oracle Cloud Infrastructure Architect Associate certification Support to clear your examination at first attempt with help of exam questions, practice tests, Dumps - CertiMaan

Frequently Asked Questions ( FAQs ) — Oracle Cloud Infrastructure Architect Associate Certification


1. What is the Oracle Cloud Infrastructure Architect Associate certification?

The Oracle Cloud Infrastructure Architect Associate Certification certification validates foundational knowledge of Oracle Cloud Infrastructure services, cloud architecture concepts, networking, compute, storage, security, governance, and OCI deployment best practices. It is designed for professionals who want to demonstrate practical cloud infrastructure skills within the Oracle Cloud ecosystem.

2. Who should take the Oracle Cloud Infrastructure Architect Associate certification exam?

This certification is ideal for cloud engineers, infrastructure administrators, DevOps professionals, system engineers, architects, IT graduates, and technology professionals interested in building Oracle Cloud Infrastructure expertise. It is also suitable for candidates transitioning into cloud computing roles.

3. Is the Oracle Cloud Infrastructure Architect Associate exam difficult?

The difficulty level is generally considered beginner-to-intermediate. Candidates with hands-on OCI experience, cloud networking knowledge, and familiarity with Oracle Cloud services usually find the exam manageable. Practical OCI labs and consistent practice questions significantly improve exam readiness.

4. What topics are covered in the OCI Architect Associate certification exam?

The certification exam typically covers:

  • OCI Compute

  • Virtual Cloud Networks (VCN)

  • Storage Services

  • Identity and Access Management (IAM)

  • Security & Governance

  • Load Balancing

  • Monitoring & Logging

  • High Availability

  • Disaster Recovery

  • OCI Architecture Best Practices

5. How should I prepare for the Oracle Cloud Infrastructure Architect Associate exam?

Candidates should combine:

  • Official Oracle learning resources

  • Hands-on OCI practice

  • Architecture-based learning

  • Mock exams

  • Practice questions

  • OCI documentation review

  • Cloud networking and security study

A structured study plan with practical OCI implementation exercises is highly recommended.

6. Are practice questions useful for Oracle Cloud Infrastructure certification preparation?

Yes. Practice questions help candidates understand exam patterns, improve time management, identify weak knowledge areas, and strengthen cloud architecture concepts. Scenario-based questions are especially useful for understanding real-world OCI design decisions.

7. Does Oracle provide a free environment for OCI practice?

Yes. Oracle Corporation offers a free OCI environment where candidates can practice launching compute instances, configuring networking, managing storage, and exploring Oracle Cloud services without additional cost.

8. What jobs can I apply for after earning the OCI Architect Associate certification?

After earning this certification, professionals may pursue roles such as:

  • OCI Cloud Engineer

  • Cloud Infrastructure Engineer

  • Oracle Cloud Administrator

  • Cloud Solutions Architect

  • DevOps Engineer

  • Infrastructure Consultant

  • Systems Administrator

The certification can also strengthen multi-cloud career opportunities.

9. How long does it take to prepare for the Oracle Cloud Infrastructure Architect Associate exam?

Preparation time varies depending on prior cloud experience. Beginners may require several weeks of structured learning and hands-on practice, while experienced cloud professionals may prepare more quickly through focused revision and mock exams.

10. Is hands-on Oracle Cloud experience necessary for passing the exam?

Hands-on experience is strongly recommended. Many certification questions are scenario-based and require understanding how OCI services behave in practical environments. Working directly within the OCI Console improves both technical understanding and exam confidence.

11. What is the best official resource for Oracle Cloud Infrastructure certification preparation?

The best official resources include:

  • Oracle University

  • OCI Documentation

  • Oracle Learning Library

  • Oracle Architecture Center

  • Oracle Cloud Free Tier

  • Official Oracle Certification Exam Pages

These resources provide accurate and up-to-date OCI learning content.

12. Does the Oracle Cloud Infrastructure Architect Associate certification help in cloud careers?

Yes. The certification validates cloud infrastructure knowledge and demonstrates practical OCI skills relevant to enterprise cloud environments. It can improve professional credibility during cloud migration projects, infrastructure modernization initiatives, and cloud operations roles.


Comments

Rated 0 out of 5 stars.
No ratings yet

Add a rating
CertiMaan Logo

​​

Terms Of Use     |      Privacy Policy     |      Refund Policy    

   

 Copyright © 2011 - 2026  Ira Solutions -   All Rights Reserved

Disclaimer:: 

The content provided on this website is for educational and informational purposes only. We do not claim any affiliation with official certification bodies, including but not limited to Pega, Microsoft, AWS, IBM, SAP , Oracle , PMI, or others.

All practice questions and study materials are intended to help learners understand exam patterns and enhance their preparation. We do not guarantee certification results and discourage the misuse of these resources for unethical purposes.

PayU logo
Razorpay logo
bottom of page