Skip to content

Oracle Cloud Infrastructure Operations Associate Fact Sheet

Exam Overview

Exam Code: 1Z0-1067-24 (Latest version) Exam Name: Oracle Cloud Infrastructure 2024 Operations Associate Duration: 90 minutes Questions: 55 questions Question Format: Multiple choice and multiple select Passing Score: 68% Cost: $150 USD (may vary by region) Valid For: 18 months (Oracle typically releases new exam versions annually) Language: English, Japanese Delivery: Pearson VUE (online proctored or testing center)

πŸ“– Official Exam Page - Registration and official details πŸ“– Certification Overview - OCI Operations certification path πŸ“– Exam Topics - Detailed exam objectives

Target Audience

This certification is designed for: - Cloud operations engineers managing OCI environments - System administrators transitioning to cloud - Site reliability engineers (SREs) working with OCI - DevOps engineers focused on operations - IT professionals managing cloud infrastructure

πŸ“– Operations Learning Path - Official Oracle learning path

Exam Domains

Domain 1: OCI Operations Fundamentals (10%)

Key Topics: - OCI regions and availability domains - Compartments and resource organization - Tenancy and compartment hierarchy - Resource tagging strategies - Limits and quotas

πŸ“– OCI Overview - Introduction to OCI πŸ“– Regions and ADs - Region architecture πŸ“– Compartments - Managing compartments πŸ“– Resource Tagging - Tagging strategies πŸ“– Service Limits - Understanding limits and quotas

Domain 2: Compute Operations (15%)

Instance Management

  • Creating and managing compute instances
  • Instance shapes and configurations
  • Boot volumes and block volumes
  • Instance lifecycle operations
  • Capacity reservations

πŸ“– Compute Overview - Compute service concepts πŸ“– Creating Instances - Instance creation πŸ“– Instance Shapes - Available shapes πŸ“– Managing Instances - Lifecycle operations πŸ“– Boot Volumes - Boot volume management

Instance Configurations and Pools

  • Creating instance configurations
  • Managing instance pools
  • Auto-scaling configurations
  • Load balancer integration

πŸ“– Instance Configurations - Configuration templates πŸ“– Instance Pools - Pool management πŸ“– Autoscaling - Auto-scaling setup πŸ“– Pool Metrics - Monitoring pools

Custom Images and Snapshots

  • Creating custom images
  • Image management
  • Boot volume backups
  • Cross-region image copy

πŸ“– Custom Images - Managing images πŸ“– Image Import/Export - Image transfer πŸ“– Boot Volume Backups - Backup operations πŸ“– Cross-Region Copy - Image replication

Domain 3: Storage Operations (15%)

Block Volume Management

  • Creating and attaching block volumes
  • Volume performance tiers
  • Volume backups and cloning
  • Volume groups
  • Boot volume management

πŸ“– Block Volumes Overview - Block storage concepts πŸ“– Creating Volumes - Volume creation πŸ“– Attaching Volumes - Attachment methods πŸ“– Volume Backups - Backup and restore πŸ“– Volume Groups - Consistent backups πŸ“– Performance Tiers - Performance options

Object Storage Operations

  • Bucket management
  • Object lifecycle policies
  • Pre-authenticated requests
  • Storage tiers (Standard, Infrequent Access, Archive)
  • Replication

πŸ“– Object Storage Overview - Object storage concepts πŸ“– Managing Buckets - Bucket operations πŸ“– Lifecycle Policies - Automated tiering πŸ“– Storage Tiers - Tier comparison πŸ“– Replication - Cross-region replication πŸ“– Pre-authenticated Requests - Temporary access

File Storage

  • Creating file systems
  • Mount targets and exports
  • Snapshots and cloning
  • File system metrics

πŸ“– File Storage Overview - File storage concepts πŸ“– Creating File Systems - File system creation πŸ“– Mount Targets - Mounting file systems πŸ“– File System Snapshots - Snapshot management

Domain 4: Network Operations (15%)

Virtual Cloud Networks (VCN)

  • Creating and managing VCNs
  • Subnets (public and private)
  • Route tables
  • Internet and NAT gateways
  • Service gateway and DRG

πŸ“– VCN Overview - Networking concepts πŸ“– Creating VCNs - VCN creation πŸ“– Subnets - Subnet configuration πŸ“– Gateways - Gateway setup πŸ“– Route Tables - Routing configuration πŸ“– DRG - Dynamic routing gateway

Security Lists and NSGs

  • Security list configuration
  • Network security groups
  • Security rules best practices
  • Stateful vs stateless rules

πŸ“– Security Lists - Subnet-level security πŸ“– Network Security Groups - Resource-level security πŸ“– Security Rules - Rule configuration πŸ“– NSG Best Practices - Security best practices

Load Balancers

  • Creating load balancers
  • Backend sets and health checks
  • Listener configuration
  • SSL certificate management
  • Traffic management

πŸ“– Load Balancing Overview - Load balancer concepts πŸ“– Creating Load Balancers - Load balancer creation πŸ“– Backend Sets - Backend configuration πŸ“– Health Checks - Health check setup πŸ“– SSL Certificates - Certificate management

Domain 5: Observability and Management (20%)

Monitoring Service

  • Understanding metrics and namespaces
  • Creating metric queries
  • Setting up alarms
  • Alarm dimensions and triggers
  • Custom metrics

πŸ“– Monitoring Overview - Monitoring service πŸ“– Service Metrics - Available metrics πŸ“– Creating Alarms - Alarm setup πŸ“– Alarm Messages - Notification configuration πŸ“– Custom Metrics - Publishing metrics πŸ“– Metrics Query Language - MQL syntax

Logging Service

  • Log categories (audit, service, custom)
  • Log groups and log objects
  • Creating log searches
  • Log retention and archival
  • Streaming logs

πŸ“– Logging Overview - Logging concepts πŸ“– Service Logs - OCI service logs πŸ“– Custom Logs - Application logging πŸ“– Log Search - Searching logs πŸ“– Log Analytics - Advanced analytics πŸ“– Log Connectors - Log streaming

Notifications Service

  • Creating topics
  • Managing subscriptions
  • Publishing messages
  • Integration with Events and Alarms
  • Subscription protocols

πŸ“– Notifications Overview - Notification concepts πŸ“– Managing Topics - Topic management πŸ“– Subscriptions - Subscription setup πŸ“– Publishing Messages - Message publishing

Events Service

  • Understanding event types
  • Creating event rules
  • Event patterns and filters
  • Event actions (Functions, Notifications, Streaming)
  • Event-driven automation

πŸ“– Events Overview - Event service concepts πŸ“– Event Types - Available events πŸ“– Creating Rules - Rule configuration πŸ“– Event Patterns - Pattern matching πŸ“– Event Actions - Action configuration

Domain 6: Database Operations (10%)

Database Cloud Service

  • Provisioning DB systems
  • Backup and recovery
  • Patching and upgrades
  • Database maintenance
  • Cloning databases

πŸ“– DB Systems Overview - Database service πŸ“– Provisioning DB Systems - Creating databases πŸ“– Backup and Recovery - Backup operations πŸ“– Patching - Patch management πŸ“– Database Maintenance - Maintenance windows

Autonomous Database Operations

  • Provisioning Autonomous Database
  • Backup and restore
  • Scaling compute and storage
  • Starting, stopping, and terminating
  • Monitoring performance

πŸ“– Autonomous Database - ADB overview πŸ“– Provisioning - Creating ADB πŸ“– Backup and Restore - Backup operations πŸ“– Scaling - Scaling resources πŸ“– Performance Hub - Monitoring performance

Domain 7: Security Operations (15%)

Identity and Access Management (IAM)

  • Managing users and groups
  • Writing IAM policies
  • Dynamic groups
  • Authentication and federation
  • MFA configuration

πŸ“– IAM Overview - Identity concepts πŸ“– Managing Users - User management πŸ“– IAM Policies - Policy syntax πŸ“– Dynamic Groups - Resource identity πŸ“– Federation - Identity federation πŸ“– MFA - Multi-factor authentication

Vault and Key Management

  • Creating vaults
  • Managing encryption keys
  • Key rotation
  • Managing secrets
  • Encrypting volumes and buckets

πŸ“– Vault Overview - Key management πŸ“– Creating Vaults - Vault management πŸ“– Managing Keys - Key operations πŸ“– Key Rotation - Rotating keys πŸ“– Managing Secrets - Secret management πŸ“– Volume Encryption - Encrypting storage

Cloud Guard

  • Enabling Cloud Guard
  • Target configuration
  • Detector recipes
  • Responder recipes
  • Security zones

πŸ“– Cloud Guard Overview - Threat detection πŸ“– Enabling Cloud Guard - Setup guide πŸ“– Detector Recipes - Detection configuration πŸ“– Responder Recipes - Automated responses πŸ“– Security Zones - Preventive security

Audit Logging

  • Audit log events
  • Viewing audit logs
  • Audit log retention
  • Compliance reporting

πŸ“– Audit Overview - Audit logging πŸ“– Audit Events - Event types πŸ“– Viewing Logs - Log access πŸ“– Retention - Log retention policy

Domain 8: Cost Management and Optimization (10%)

Budgets and Cost Tracking

  • Creating budgets
  • Budget alerts
  • Cost analysis
  • Usage reports
  • Cost allocation tags

πŸ“– Budgets Overview - Budget management πŸ“– Creating Budgets - Budget setup πŸ“– Cost Analysis - Analyzing costs πŸ“– Usage Reports - Usage tracking πŸ“– Cost Allocation - Tagging for cost

Resource Optimization

  • Right-sizing compute instances
  • Auto-scaling configurations
  • Storage tier optimization
  • Identifying unused resources
  • Reserved capacity

πŸ“– Compute Advisor - Optimization recommendations πŸ“– Right Sizing - Resource sizing πŸ“– Reserved Capacity - Capacity reservations πŸ“– Storage Optimization - Storage tiering

Domain 9: Disaster Recovery and Backup (10%)

Backup Strategies

  • Block volume backups
  • Boot volume backups
  • Database backups
  • Object Storage replication
  • Cross-region backups

πŸ“– Backup Overview - Backup concepts πŸ“– Volume Backup Policies - Automated backups πŸ“– Cross-Region Backup - Backup replication πŸ“– DB Backup - Database backups πŸ“– Object Replication - Object replication

Disaster Recovery Planning

  • DR strategies (backup/restore, pilot light, warm standby)
  • Cross-region architecture
  • Recovery time objectives (RTO) and recovery point objectives (RPO)
  • Failover and failback procedures

πŸ“– DR Architecture - DR patterns πŸ“– Cross-Region DR - DR design πŸ“– Full Stack DR - DR service πŸ“– DR Switchover - Failover procedures

Hands-On Skills

Required Command-Line Tools

OCI CLI: πŸ“– OCI CLI Installation - Installing CLI πŸ“– CLI Configuration - Configuring CLI πŸ“– CLI Command Reference - Command reference

Essential Practical Tasks

  1. Create and manage compute instances with custom configurations
  2. Set up VCN with public/private subnets and gateways
  3. Configure load balancers with health checks
  4. Implement automated backups for volumes and databases
  5. Create monitoring alarms and notification topics
  6. Configure IAM policies for least-privilege access
  7. Set up auto-scaling instance pools
  8. Implement log aggregation and analysis
  9. Configure Cloud Guard and security zones
  10. Create and test disaster recovery procedures

πŸ“– OCI Free Tier - Always Free resources πŸ“– Hands-On Labs - Oracle Learning Library

Official Study Resources

Documentation

πŸ“– OCI Documentation - Complete documentation πŸ“– Operations Learning Path - Official training πŸ“– Best Practices - OCI best practices πŸ“– Troubleshooting Guide - Common issues

Training

πŸ“– Oracle University - Official courses πŸ“– Cloud Coaching - Expert webinars πŸ“– YouTube Channel - Video tutorials

Practice

πŸ“– Practice Exams - Official practice πŸ“– Certification FAQ - Common questions πŸ“– Pearson VUE - Schedule exam

Study Strategy

Weeks 1-2: Foundations - Complete Oracle Learning Path modules 1-3 - Set up OCI Free Tier account - Practice with OCI CLI basics - Understand compartments, regions, and IAM

Weeks 3-4: Core Operations - Deep dive into Compute, Storage, and Networking - Practice creating and managing resources - Set up monitoring and logging - Implement security controls

Weeks 5-6: Advanced Topics - Study disaster recovery and backups - Configure auto-scaling and load balancing - Implement cost management - Practice Cloud Guard and security zones

Weeks 7-8: Review and Practice - Take practice exams - Review weak areas - Complete hands-on scenarios - Final exam preparation

Key Study Tips

  1. Hands-on practice is critical - Use OCI Free Tier extensively
  2. Master the OCI CLI - Many questions test CLI knowledge
  3. Understand monitoring and logging - Heavily tested area
  4. Know IAM policies - Critical for security questions
  5. Practice disaster recovery - Understand backup and restore
  6. Study cost optimization - Know how to reduce costs
  7. Review service limits - Understand quotas and limits
  8. Use official documentation - Most reliable resource

Common Question Patterns

  • Troubleshooting: Identify the cause of operational issues
  • Best practices: Choose optimal configurations
  • CLI commands: Select correct commands for tasks
  • Monitoring setup: Configure appropriate alarms and metrics
  • Security: Implement proper access controls
  • Cost optimization: Choose cost-effective solutions

Exam Day Tips

Preparation

  • Review OCI CLI command syntax
  • Review key metrics and alarm thresholds
  • Practice troubleshooting scenarios
  • Get adequate rest
  • Prepare ID and testing environment

During Exam

  • Read questions carefully - watch for "MOST", "LEAST", "BEST"
  • Eliminate obviously wrong answers
  • Flag uncertain questions for review
  • Manage time - ~1.6 minutes per question
  • Apply operational thinking based on experience

Technical Setup (Online)

  • Stable internet (minimum 2 Mbps)
  • Webcam and microphone
  • Clear workspace
  • Government photo ID
  • Chrome or Firefox browser

After Certification

Career Opportunities

  • Cloud Operations Engineer
  • Site Reliability Engineer (SRE)
  • Cloud Systems Administrator
  • DevOps Engineer
  • Cloud Infrastructure Manager

Next Certifications

πŸ“– OCI Architect Associate - Architecture path πŸ“– OCI Architect Professional - Advanced architecture πŸ“– OCI DevOps Professional - DevOps specialization

Continuous Learning

  • Attend Oracle CloudWorld
  • Join OCI community forums
  • Stay updated with service releases
  • Practice with new features
  • Share knowledge with community

πŸ“– OCI Community - Community forums πŸ“– OCI Blogs - Latest updates πŸ“– Release Notes - New features

Quick Reference

Common OCI CLI Commands

# Compute
oci compute instance launch --compartment-id <id> --shape VM.Standard2.1
oci compute instance list --compartment-id <id>
oci compute instance terminate --instance-id <id>

# Block Storage
oci bv volume create --compartment-id <id> --size-in-gbs 50
oci bv backup create --volume-id <id>
oci bv volume attach --instance-id <id> --volume-id <id>

# Networking
oci network vcn create --compartment-id <id> --cidr-block 10.0.0.0/16
oci network subnet create --vcn-id <id> --cidr-block 10.0.1.0/24
oci network security-list update --security-list-id <id>

# Monitoring
oci monitoring alarm create --compartment-id <id>
oci monitoring metric-data post --metric-data file://metrics.json

# IAM
oci iam user create --name john.doe --email john@example.com
oci iam policy create --compartment-id <id> --statements file://policy.json

πŸ“– CLI Cheat Sheet - Quick command reference

Key Metrics to Monitor

Service Key Metrics
Compute CPU Utilization, Memory Utilization, Disk I/O
Block Volume VolumeReadThroughput, VolumeWriteThroughput
Load Balancer HealthyBackendServers, UnhealthyBackendServers
VCN VnicBytesIn, VnicBytesOut
Database CpuUtilization, StorageUtilization

πŸ“– Metrics Reference - All available metrics


Final Notes

  • Certification valid for: 18 months
  • Exam updates: New versions released annually
  • Practice environment: OCI Free Tier sufficient
  • Support: OCI Community Forums
  • Badge: Digital badge upon passing

πŸ“– Register for Exam - Schedule your exam

Good luck with your OCI Operations Associate certification! πŸŽ‰