Skip to content

1Z0-1084-25 OCI 2025 Developer Professional Practice Questions

Prepare for 1Z0-1084-25 with more than an answer.

255 questions in the full set20 sample questionsUpdated Jan 23, 2026
Exam fee
$245 USD
Level
Professional
Valid for
Until next major version release (typically 1 year)
Domains covered on the exam 5
  1. Cloud Native Fundamentals11%
  2. Cloud Native Applications and Containerization33%
  3. Leveraging Serverless Technologies for Cloud Native Development33%
  4. Testing and Securing Cloud Native Applications13%
  5. Monitoring & Troubleshooting Cloud Native Applications10%
  1. 1

    A media processing company has a workflow where large video files are uploaded and need to be processed by a series of microservices for transcoding, watermarking, and packaging. The processing for a single video can take over 30 minutes. The services are decoupled and communicate asynchronously. Which OCI service is most appropriate for managing the state and orchestration of this long-running, multi-step workflow?

    Show answer details

    Correct answer: B

    While OCI does not have a dedicated state machine service like AWS Step Functions, the most robust way to build this long-running workflow using the available serverless components is with OCI Queue. Each step of the workflow can be a microservice (or function) that consumes a task from an input queue. Upon completion, it places a message in the next service's input queue. This pattern, often called queue-based workflow or choreography, is highly resilient, scalable, and suitable for long-running processes, as it decouples the services and avoids timeout limitations of services like OCI Functions.

  2. 2

    A developer is using the OCI Logging service to collect custom application logs from a compute instance. They want to be able to search for logs based on specific fields within their JSON log entries, such as userId and transactionId. What must the developer do to enable this field-based searching capability?

    Show answer details

    Correct answer: C

    OCI Logging automatically detects and parses log entries that are formatted as valid, single-line JSON objects. When it parses the JSON, it indexes the key-value pairs, allowing you to use them in search queries (e.g., where data.userId = '12345'). This practice is known as structured logging and is essential for effective log analysis in cloud environments.

  3. 3

    An architect is designing a microservices-based application on OKE. They need a solution that provides not only service discovery and load balancing but also advanced capabilities like canary releases, fault injection for testing, and mutual TLS (mTLS) for security. Which of the following options provides the most comprehensive solution for these requirements?

    graph TD subgraph OKE Cluster ServiceA -->|gRPC| ServiceB ServiceB -->|HTTP| ServiceC ServiceA -->|HTTP| ServiceC end APIGW[API Gateway] --> ServiceA Internet --> APIGW

    Show answer details

    Correct answer: C

    OCI Service Mesh, which is built on open-source Istio, is specifically designed to provide these advanced capabilities. It injects sidecar proxies alongside each service to control all ingress and egress traffic, enabling features like fine-grained traffic shifting (for canary releases), fault injection (delaying or aborting requests for chaos testing), and automatic mTLS encryption between services, all without modifying the application code. Standard Kubernetes services and Ingress do not offer this level of control.

  4. 4

    A developer is creating a deployment manifest for a stateless web application on an Oracle Kubernetes Engine cluster. They want to ensure that three replicas of the application are always running and that Kubernetes can perform rolling updates automatically when a new version of the application image is specified. Which Kubernetes object kind should be used in the manifest file?

    Show answer details

    Correct answer: D

    A Deployment is the standard and recommended Kubernetes object for managing stateless applications. It provides declarative updates to Pods and ReplicaSets. By defining the desired state in a Deployment manifest (e.g., 3 replicas, container image v1), you can simply update the manifest (e.g., change image to v2), and the Deployment controller will automatically manage a rolling update to the new version with zero downtime. While a Deployment uses a ReplicaSet underneath, you should manage the Deployment directly.

  5. 5

    True or False: In OCI Queue service, a message retrieved by a consumer is immediately deleted from the queue to prevent other consumers from processing it.

    Show answer details

    Correct answer: B

    The statement is false. When a consumer retrieves a message from an OCI Queue, the message is not deleted. Instead, it becomes invisible for a configurable period called the 'visibility timeout'. This prevents other consumers from processing it. The consumer is responsible for explicitly deleting the message after it has been successfully processed. If the consumer fails to process and delete the message before the timeout expires, the message becomes visible again and can be picked up by another consumer, ensuring at-least-once delivery.

  6. 6

    A developer needs to implement distributed tracing for a set of microservices running on OKE to diagnose latency issues. They want to use an open-source, vendor-neutral standard for collecting trace data before sending it to OCI Application Performance Monitoring (APM). Which standard should they instrument their applications with?

    Show answer details

    Correct answer: C

    OpenTelemetry (OTel) is an open-source, vendor-neutral observability framework for instrumenting, generating, collecting, and exporting telemetry data (traces, metrics, logs). OCI APM has native support for the OpenTelemetry protocol (OTLP). By instrumenting applications with OpenTelemetry SDKs, developers can avoid vendor lock-in and send trace data to any compatible backend, including OCI APM.

  7. 7

    When comparing microservices architecture to a traditional monolithic architecture, which statement accurately describes a primary advantage of the microservices approach?

    Show answer details

    Correct answer: C

    A key advantage of microservices is that each service can be developed, tested, deployed, and scaled independently. This allows small, autonomous teams to work on different services in parallel, using different technology stacks if needed. It accelerates delivery because a change to one service does not require rebuilding and redeploying the entire application.

  8. 8

    A financial services company is modernizing its payment processing gateway using a microservices architecture on Oracle Kubernetes Engine (OKE). To comply with security policies, all inter-service communication within the cluster must be encrypted, and traffic routing rules for A/B testing must be centrally managed without altering application code. Which OCI service should be integrated with OKE to meet these specific requirements?

    Show answer details

    Correct answer: C

    OCI Service Mesh is the correct choice as it is designed to manage, secure, and observe microservices. It provides features like mutual TLS (mTLS) for encrypting inter-service communication and sophisticated traffic management capabilities (e.g., traffic splitting for A/B testing) without requiring changes to the application code. A Network Load Balancer operates at L4 and doesn't manage internal service-to-service traffic rules. An API Gateway is for managing north-south traffic (from clients to the cluster), not east-west traffic (between services). Kubernetes Network Policies can restrict traffic but don't offer advanced routing or automatic mTLS.

  9. 9

    A development team is building an event-driven application where a producer service running on a VM needs to send messages to multiple independent consumer services. One consumer handles data archiving, another performs real-time analytics, and a third triggers alerts. Each consumer service must process every message independently and at its own pace. Which OCI serverless technology is best suited for this fan-out messaging pattern?

    Show answer details

    Correct answer: B

    OCI Streaming is the ideal service for this scenario. It supports a publish-subscribe model where a message published to a stream can be consumed by multiple independent consumer groups. Each consumer group maintains its own offset, allowing it to read all messages from the stream at its own pace. OCI Queue is designed for one-to-one message delivery, where a message is consumed by only one consumer. OCI Events Service is for reacting to state changes in OCI resources, not for custom application messaging. OCI Notifications is for simple fan-out to endpoints like email or PagerDuty but doesn't offer the persistent, replayable log semantics required by the consumer services.

  10. 10

    A developer is tasked with securing a containerized application deployed on OKE. The application requires access to a database password, an API key for a third-party service, and a TLS private key for its web server. According to OCI best practices for managing sensitive information, which TWO actions should be taken? (Select TWO)

    Show answer details

    Correct answer: A, D

    Storing secrets in OCI Vault is the most secure and recommended approach. Vault provides a centralized, managed, and highly available service for secrets and encryption keys, with fine-grained access control via IAM policies.

    Using an instance principal allows the application running on OKE worker nodes to securely authenticate with OCI Vault without needing to store long-lived credentials. This is a best practice for service-to-service authentication within OCI.

Create an account to continue.