Quiz
2741 questions of the kind that actually get asked — in interviews, in architecture review boards, and by the person who has to run the thing at 3 AM. Every answer states the trade-off rather than the slogan, and says when the obvious choice is the wrong one.
All areas2741
Architecture Fundamentals81
Distributed Systems101
Data Architecture90
Cloud Architecture87
Networking86
API & Integration Architecture78
Reliability & Resilience99
Observability92
Performance & Capacity Engineering90
Security Architecture95
Cost Architecture & FinOps92
Business Architecture93
Architecture Communication91
Enterprise Architecture91
Legacy Modernization92
AI-Era Architecture96
Software Architecture & Engineering84
Architecture Patterns84
Architecture Decision-Making91
The Architect's Meta-Skills92
Delivery & Release Engineering93
Platform Engineering & Developer Experience92
Testing & Quality Architecture102
Data Platform Architecture98
Streaming & Real-Time Data93
Data Governance & Semantics91
Frontend & Experience Architecture91
Edge, Mobile & IoT88
Regulatory & Data Protection Architecture90
Assurance, Audit & Model Risk98
90 questions in Regulatory & Data Protection Architecture.
-
Sector Cloud Rules intermediate
Until 2025 a European firm's cloud exit plan priced the egress bill as the main barrier and assumed the migration window was negotiable. The EU Data Act has applied since 12 September 2025 and removes switching charges entirely from 12 January 2027 while capping the switching timetable. What changed for the architecture team and what did not?
3 min answer eu-data-actcloud-exitfunctional-equivalenceconcentration-risk -
Third-Party Risk advanced
A consumer finance platform depends on many third parties whose failures are its regulatory problem. What must the architecture provide?
2 min answer slicethird-partyisolationevidence -
Third-Party Risk beginner
A supplier provides an ISO 27001 certificate in response to your security assessment. What does the certificate actually tell you, and what does it not?
3 min answer certificationthird-party-riskassurancescope -
Third-Party Risk advanced
A supplier's compromise gives an attacker access to your systems. What should the architecture have done?
1 min answer third-party-risksupply-chainleast-privilegemonitoring -
Third-Party Risk advanced
In April 2022 a maintenance script at Atlassian permanently deleted 883 sites belonging to 775 customers inside 23 minutes, and the last customer was not restored until 18 April. Backups were fine and almost no data was lost. What made recovery the hard part, and what should that change in how you evaluate a vendor?
2 min answer atlassianmulti-tenantrestorerto -
Third-Party Risk intermediate
Your KYC verification vendor is down for six hours. Customer onboarding stops. The board asks why a vendor outage became your outage.
2 min answer vendorsresiliencedegradation