Courseiva
Why cloud technology is transforming businesseasyMultiple ChoiceObjective-mapped

Cloud Digital Leader Why cloud technology is transforming business Practice Question

An organization is considering cloud adoption. Their CTO argues that 'the cloud is just someone else's computers — why should we trust it?' Which is the strongest counterargument for cloud trust and reliability?

⚠ Common exam trap

Watch out — candidates often choose Option A because they overestimate government mandates or SLAs as guarantees of zero downtime, or Option D because they confuse valid caution with outright rejection, missing the nuanced argument that cloud providers offer superior reliability through scale and professional management.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Google Cloud operates at a scale enabling reliability (multiple 9s SLAs, redundant infrastructure, third-party audits) that most organizations cannot achieve with their own data centers.

It directly addresses the CTO's concern by highlighting that major cloud providers like Google Cloud operate at a scale that enables reliability metrics (e.g., 99.99% uptime SLAs) and infrastructure redundancy (e.g., multi-region deployments, automatic failover) that most on-premises data centers cannot match. This is supported by third-party audits (e.g., SOC 2, ISO 27001) that validate security and operational practices, making the cloud not just 'someone else's computers' but a professionally managed, highly resilient environment.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Cloud providers can be fully trusted because governments require them to guarantee zero downtime.

    Why it's wrong here

    Government regulations mandate business continuity, not zero-downtime guarantees; no statute requires cloud providers to ensure perfect uptime. Cloud SLAs instead specify availability percentages (e.g., 99.99% for Compute Engine) and offer credits if targets are missed, while explicitly allowing for planned maintenance and unplanned failures. Trust is therefore derived from audited commitments and technical redundancy, not from any regulatory zero-downtime obligation.

  • Google Cloud operates at a scale enabling reliability (multiple 9s SLAs, redundant infrastructure, third-party audits) that most organizations cannot achieve with their own data centers.

    Why this is correct

    Google Cloud's global infrastructure spans multiple regions and zones, with redundant power, networking, storage, and cooling, plus a private fiber backbone and dedicated reliability engineering teams. This scale yields industry-leading SLAs (multiple 9s), and independent third-party audits (ISO 27001, SOC 2) verify the effectiveness of security and resilience controls. Most organizations would find it economically and operationally infeasible to replicate this level of redundancy, expertise, and compliance testing in their own data centers.

  • Google employees are more trustworthy than the company's own IT staff.

    Why it's wrong here

    Trustworthiness of a cloud provider is not established by comparing employee qualities, which is unprovable and irrelevant. Instead, it rests on enforceable contracts, isolation boundaries, access controls, employee screening, separation of duties, audit logs, and independent certifications like SOC 2 Type II. The proper question is whether the provider's governance and transparency mechanisms meet the organization's security requirements, not whether one set of employees is 'nicer' than another.

  • The CTO's concern is valid — companies should never move sensitive data to the cloud.

    Why it's wrong here

    The CTO's concern conflates 'sensitive' with 'should never leave my premises'; regulated industries like banking, health, and government routinely run sensitive workloads in the cloud using encryption at rest and in transit, IAM, VPC Service Controls, and organizational policies. Cloud providers also offer data residency, CMEK, and compliance certifications (e.g., HIPAA, PCI) tailored to sensitive data. The valid response is a risk-based assessment of controls, not a blanket prohibition.

About these practice questions

Courseiva writes every GCDL question from scratch — 829 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This GCDL practice question is part of Courseiva's free Google Cloud certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the GCDL exam.