Git Product home page Git Product logo

f-calderon-jurado / amazon-web-services-aws-certified-cloud-practitioner-clf-c02-practice-tests-exams-questions-answers Goto Github PK

View Code? Open in Web Editor NEW

This project forked from ditectrev/amazon-web-services-aws-certified-cloud-practitioner-clf-c02-practice-tests-exams-questions-answers

0.0 0.0 0.0 8.31 MB

⛳️ PASS: Amazon Web Services Certified (AWS Certified) Cloud Practitioner (CLF-C02) by learning based on our Questions & Answers (Q&A) Practice Tests Exams.

Home Page: https://education.ditectrev.com

amazon-web-services-aws-certified-cloud-practitioner-clf-c02-practice-tests-exams-questions-answers's Introduction

⬆️ Amazon Web Services Certified (AWS Certified) Cloud Practitioner (CLF-C02) Practice Tests Exams Questions & Answers

Promotional image

Udemy & Etsy

❣️ Please support us by purchasing this course on Udemy in an interactive version with the discounted link. If you're working for a company, you could most probably easily claim this expense during preparation for your exam. For us, it's to be, or not to be, in the game.

🛍️ Alternatively, you can buy the PDF with those questions on Etsy.

✨ This course is unlike any Amazon Web Services Certified (AWS Certified) Cloud Practitioner (CLF-C02) course you will find online.

✋ Join a live online community and a course taught by industry experts and pass the Amazon Web Services Certified (AWS Certified) Cloud Practitioner (CLF-C02) confidently. We aim to build an ecosystem of Information Technology (IT) certifications and online courses in cooperation with the technology industry. We believe it will give our students 100% confidence in the pacing market in an open-source environment. We are just at the beginning of our way, so it's even better for you to join now!

Join our Discord

⌛️ Short and to the point; why should you take the course:

  1. Always happy to answer your questions on Udemy's Q&A's and outside :)
  2. Failed? Please submit a screenshot of your exam result and request a refund (via our upcoming platform, not possible on Udemy); we'll always accept it.
  3. Learn about topics, such as:
    • Access Control;
    • Amazon Aurora;
    • Amazon CloudFront;
    • Amazon CloudWatch;
    • Amazon Connect;
    • Amazon DynamoDB;
    • Amazon Elastic Block Store (Amazon EBS);
    • Amazon Elastic Compute Cloud (Amazon EC2);
    • Amazon Elastic Map Reduce (Amazon EMR);
    • Amazon Inspector;
    • Amazon Redshift;
    • Amazon Relational Database Service (Amazon RDS);
    • Amazon Simple Storage Service (Amazon S3);
    • Authentication & Authorization;
    • Availability Zones;
    • AWS Budgets;
    • AWS CloudFormation;
    • AWS CloudTrail;
    • AWS Command Line Interface (AWS CLI);
    • AWS Cost Explorer;
    • AWS Direct Connect;
    • AWS Health Dashboard;
    • AWS Identity and Access Management (AWS IAM);
    • AWS Key Management Service (AWS KMS);
    • AWS Lambda;
    • AWS Pricing Calculator;
    • AWS Trusted Advisor;
    • AWS Web Application Firewall (AWS WAF);
    • Capital Expenditure (CapEx) & Operational Expenditure (OpEx);
    • Cloud Concepts;
    • Compliancy, Governance, Identity & Privacy;
    • Inbound Data Traffic & Outbound Data Traffic;
    • Infrastructure as a Service (IaaS);
    • Platform as a Service (PaaS);
    • Public & Private Cloud;
    • Resource Groups;
    • Serverless;
    • Service Level Agreement (SLA);
    • Software as a Service (SaaS);
    • Virtual Private Clouds (VPC);
    • Much More!
  4. Questions are similar to the actual exam, without duplications (like in other courses ;-)).
  5. The Practice Tests Exams simulate the actual exam's content, timing, and percentage required to pass the exam.
  6. This course is not a Amazon Web Services Certified (AWS Certified) Cloud Practitioner (CLF-C02) Exam Dump. Some people use brain dumps or exam dumps, but that's absurd, which we don't practice.
  7. 597 unique questions.

☝️ Course Updates

v1.0.0: December 7, 2022.

  • Launch of the course.

v1.1.0: January 8, 2023.

  • Fix several questions with minor improvements.

v1.1.1: March 7, 2023.

  • Fix several typos.

v1.1.2: June 19, 2023.

  • Fix 1 question correct answer.

v1.1.3: July 13, 2023.

  • Fix 1 question correct answer and several typos.

v1.1.4: August 14, 2023.

  • Remove from 2 answers '(Correct)' word.

v1.2.0: October 2, 2023.

  • Add 2 new questions and fix 6 questions with incorrect answers.

v1.2.1: November 22, 2023.

  • Fix all remaining typos with support of automated proofreading software.

v1.2.2: April 11, 2024.

  • Fix 1 question with a wrong answer.

🙋‍♀️ & 🙋‍♂️ Contribution

We are so thankful for every contribution, which makes sure we can deliver top-notch content. Whenever you find a missing resource, broken link in a Table of Contents, the wrong answer, please submit an issue. Even better would be a Pull Request (PR).

Who this course is for:

  • 👨‍🎓 Students preparing for the Amazon Web Services Certified (AWS Certified) Cloud Practitioner (CLF-C02) Exam;
  • 👨‍🎓 AWS Engineers;
  • 👨‍🎓 Azure Engineers;
  • 👨‍🎓 Cloud Architects;
  • 👨‍🎓 Cloud Engineers;
  • 👨‍🎓 DevOps Engineers;
  • 👨‍🎓 Enterprise Architects;
  • 👨‍🎓 Google Cloud Platform (GCP) Engineers;
  • 👨‍🎓 Infrastructure Engineers;
  • 👨‍🎓 IT Professionals;
  • 👨‍🎓 Lead Engineers;
  • 👨‍🎓 Product Architects;
  • 👨‍🎓 Product Managers;
  • 👨‍🎓 Product Owners;
  • 👨‍🎓 Project Managers;
  • 👨‍🎓 Scrum Masters;
  • 👨‍🎓 Security Engineers;
  • 👨‍🎓 Site Reliability Engineers;
  • 👨‍🎓 Software Developers/Engineers;
  • 👨‍🎓 Software Testers;
  • 👨‍🎓 Solution Architects;
  • 👨‍🎓 Team Leaders.

Requirements

  • 🤩 Excitement to learn!
  • 0️⃣ Prior knowledge is required;
  • ✅ You can pass the Amazon Web Services Certified (AWS Certified) Cloud Practitioner (CLF-C02) Exam solely based on our Practice Tests Exams.

Table of Contents

No. Questions
1 AWS allows users to manage their resources using a web based user interface. What is the name of this interface?
2 Which of the following is an example of horizontal scaling in the AWS Cloud?
3 You have noticed that several critical Amazon EC2 instances have been terminated. Which of the following AWS services would help you determine who took this action?
4 Which of the below options are related to the reliability of AWS? (Choose TWO)
5 Which statement is true regarding the AWS Shared Responsibility Model?
6 You have set up consolidated billing for several AWS accounts. One of the accounts has purchased a number of reserved instances for 3 years. Which of the following is true regarding this scenario?
7 A company has developed an eCommerce web application in AWS. What should they do to ensure that the application has the highest level of availability?
8 What does AWS Snowball provide? (Choose TWO)
9 A company has an AWS Enterprise Support plan. They want quick and efficient guidance with their billing and account inquiries. Which of the following should the company use?
10 A Japanese company hosts their applications on Amazon EC2 instances in the Tokyo Region. The company has opened new branches in the United States, and the US users are complaining of high latency. What can the company do to reduce latency for the users in the US while minimizing costs?
11 An organization has a large number of technical employees who operate their AWS Cloud infrastructure. What does AWS provide to help organize them into teams and then assign the appropriate permissions for each team?
12 A company has decided to migrate its Oracle database to AWS. Which AWS service can help achieve this without negatively impacting the functionality of the source database?
13 Adjusting compute capacity dynamically to reduce cost is an implementation of which AWS cloud best practice?
14 What are the benefits of having infrastructure hosted in AWS? (Choose TWO)
15 What is the advantage of the AWS-recommended practice of 'decoupling' applications?
16 Which of the following helps a customer view the Amazon EC2 billing activity for the past month?
17 What do you gain from setting up consolidated billing for five different AWS accounts under another master account?
18 What should you do in order to keep the data on EBS volumes safe? (Choose TWO)
19 One of the most important AWS best-practices to follow is the cloud architecture principle of elasticity. How does this principle improve your architecture's design?
20 A startup company is operating on limited funds and is extremely concerned about cost overruns. Which of the below options can be used to notify the company when their monthly AWS bill exceeds $2000? (Choose TWO)
21 What does Amazon CloudFront use to distribute content to global users with low latency?
22 What does the 'Principle of Least Privilege' refer to?
23 Which of the following does NOT belong to the AWS Cloud Computing models?
24 The identification process of an online financial services company requires that new users must complete an online interview with their security team. The completed recorded interviews are only required in the event of a legal issue or a regulatory compliance breach. What is the most cost-effective service to store the recorded videos?
25 Which service provides DNS in the AWS cloud?
26 Hundreds of thousands of DDoS attacks are recorded every month worldwide. What service does AWS provide to help protect AWS Customers from these attacks? (Choose TWO)
27 A company is deploying a new two-tier web application in AWS. Where should the most frequently accessed data be stored so that the application's response time is optimal?
28 You want to run a questionnaire application for only one day (without interruption), which Amazon EC2 purchase option should you use?
29 You are working on a project that involves creating thumbnails of millions of images. Consistent uptime is not an issue, and continuous processing is not required. Which EC2 buying option would be the most cost-effective?
30 Which of the following can be described as a global content delivery network (CDN) service?
31 Which of the following services allows customers to manage their agreements with AWS?
32 Which of the following are examples of AWS-Managed Services, where AWS is responsible for the operational and maintenance burdens of running the service? (Choose TWO)
33 Your company has a data store application that requires access to a NoSQL database. Which AWS database offering would meet this requirement?
34 As part of the Enterprise support plan, who is the primary point of contact for ongoing support needs?
35 How can you view the distribution of AWS spending in one of your AWS accounts?
36 Which of the following must an IAM user provide to interact with AWS services using the AWS Command Line Interface (AWS CLI)?
37 You have AWS Basic support, and you have discovered that some AWS resources are being used maliciously, and those resources could potentially compromise your data. What should you do?
38 Select TWO examples of the AWS shared controls.
39 In order to implement best practices when dealing with a 'Single Point of Failure,' you should attempt to build as much automation as possible in both detecting and reacting to failure. Which of the following AWS services would help? (Choose TWO)
40 A company is planning to host an educational website on AWS. Their video courses will be streamed all around the world. Which of the following AWS services will help achieve high transfer speeds?
41 A developer is planning to build a two-tier web application that has a MySQL database layer. Which of the following AWS database services would provide automated backups for the application?
42 What is the AWS service that enables AWS architects to manage infrastructure as code?
43 Under the shared responsibility model, which of the following is the responsibility of AWS?
44 What does the AWS Health Dashboard provide? (Choose TWO)
45 You have deployed your application on multiple Amazon EC2 instances. Your customers complain that sometimes they can't reach your application. Which AWS service allows you to monitor the performance of your EC2 instances to assist in troubleshooting these issues?
46 Your company is developing a critical web application in AWS, and the security of the application is a top priority. Which of the following AWS services will provide infrastructure security optimization recommendations?
47 Which of the following is not a benefit of Amazon S3? (Choose TWO)
48 In the AWS Shared responsibility Model, which of the following are the responsibility of the customer? (Choose TWO)
49 What does AWS provide to deploy popular technologies such as IBM MQ on AWS with the least amount of effort and time?
50 An organization has decided to purchase an Amazon EC2 Reserved Instance (RI) for three years in order to reduce costs. It is possible that the application workloads could change during the reservation period. What is the EC2 Reserved Instance (RI) type that will allow the company to exchange the purchased reserved instance for another reserved instance with higher computing power if they need to?
51 A global company with a large number of AWS accounts is seeking a way in which they can centrally manage billing and security policies across all accounts. Which AWS Service will assist them in meeting these goals?
52 Which service provides object-level storage in AWS?
53 A company is concerned that they are spending money on underutilized compute resources in AWS. Which AWS feature will help ensure that their applications are automatically adding/removing EC2 compute capacity to closely match the required demand?
54 Which S3 storage class is best for data with unpredictable access patterns?
55 What is the AWS database service that allows you to upload data structured in key-value format?
56 Which of the following is NOT correct regarding Amazon EC2 On-demand instances?
57 A company has moved to AWS recently. Which of the following AWS Services will help ensure that they have the proper security settings? (Choose TWO)
58 What is the AWS feature that provides an additional level of security above the default authentication mechanism of usernames and passwords?
59 A company is introducing a new product to their customers, and is expecting a surge in traffic to their web application. As part of their Enterprise Support plan, which of the following provides the company with architectural and scaling guidance?
60 You work as an on-premises MySQL DBA. The work of database configuration, backups, patching, and DR can be time-consuming and repetitive. Your company has decided to migrate to the AWS Cloud. Which of the following can help save time on database maintenance so you can focus on data architecture and performance?
61 Which of the below is a best-practice when designing solutions on AWS?
62 According to the AWS Acceptable Use Policy, which of the following statements is true regarding penetration testing of EC2 instances?
63 Which service is used to ensure that messages between software components are not lost if one or more components fail?
64 The principle 'design for failure and nothing will fail' is very important when designing your AWS Cloud architecture. Which of the following would help adhere to this principle? (Choose TWO)
65 What is the AWS service that provides a virtual network dedicated to your AWS account?
66 According to the AWS Shared responsibility model, which of the following are the responsibility of the customer? (Choose TWO)
67 Which of the following AWS services can be used as a compute resource? (Choose TWO)
68 Your company is designing a new application that will store and retrieve photos and videos. Which of the following services should you recommend as the underlying storage mechanism?
69 Which of the following is equivalent to a user name and password and is used to authenticate your programmatic access to AWS services and APIs?
70 What does Amazon ElastiCache provide?
71 What is the AWS service that enables you to manage all of your AWS accounts from a single master account?
72 Which of the following EC2 instance purchasing options supports the Bring Your Own License (BYOL) model for almost every BYOL scenario?
73 Which of the following is one of the benefits of moving infrastructure from an on-premises data center to AWS?
74 Which of the following are important design principles you should adopt when designing systems on AWS? (Choose TWO)
75 Which AWS Service can be used to establish a dedicated, private network connection between AWS and your datacenter??
76 You are working on two projects that require completely different network configurations. Which AWS service or feature will allow you to isolate resources and network configurations?
77 Which of the following services can help protect your web applications from SQL injection and other vulnerabilities in your application code?
78 An organization needs to analyze and process a large number of data sets. Which AWS service should they use?
79 Based on the AWS Shared Responsibility Model, which of the following are the sole responsibility of AWS? (Choose TWO)
80 What is the AWS service that provides you the highest level of control over the underlying virtual infrastructure?
81 What are the default security credentials that are required to access the AWS management console for an IAM user account?
82 In your on-premises environment, you can create as many virtual servers as you need from a single template. What can you use to perform the same in AWS?
83 What are two advantages of using Cloud Computing over using traditional data centers? (Choose TWO)
84 Which of the following aspects of security are managed by AWS? (Choose TWO)
85 Which statement best describes the operational excellence pillar of the AWS Well-Architected Framework?
86 AWS has created a large number of Edge Locations as part of its Global Infrastructure. Which of the following is NOT a benefit of using Edge Locations?
87 What are the change management tools that helps AWS customers audit and monitor all resource changes in their AWS environment? (Choose TWO)
88 Which of the following services allows you to run containerized applications on a cluster of EC2 instances?
89 Which of the following services will help businesses ensure compliance in AWS?
90 Which of the following procedures will help reduce your Amazon S3 costs?
91 What are the AWS services/features that can help you maintain a highly available and fault-tolerant architecture in AWS? (Choose TWO)
92 Which of the following activities may help reduce your AWS monthly costs?
93 What is the AWS service/feature that takes advantage of Amazon CloudFront's globally distributed edge locations to transfer files to S3 with higher upload speeds?
94 Which of the following AWS security features is associated with an EC2 instance and functions to filter incoming traffic requests?
95 Which AWS services can be used to improve the performance of a global application and reduce latency for its users? (Choose TWO)
96 Using Amazon RDS falls under the shared responsibility model. Which of the following are customer responsibilities? (Choose TWO)
97 A company has a large amount of structured data stored in their on-premises data center. They are planning to migrate all the data to AWS, what is the most appropriate AWS database option?
98 A company has created a solution that helps AWS customers improve their architectures on AWS. Which AWS program may support this company?
99 What is the AWS serverless service that allows you to run your applications without any administrative burden?
100 Jessica is managing an e-commerce web application in AWS. The application is hosted on six EC2 instances. One day, three of the instances crashed; but none of her customers were affected. What has Jessica done correctly in this scenario?
101 Where can you store files in AWS? (Choose TWO)
102 Which AWS service can be used to store and reliably deliver messages across distributed systems?
103 Which of the following describes the payment model that AWS makes available for customers that can commit to using Amazon EC2 over a one or 3-year term to reduce their total computing costs?
104 A company is migrating its on-premises database to Amazon RDS. What should the company do to ensure Amazon RDS costs are kept to a minimum?
105 What is the primary storage service used by Amazon RDS database instances?
106 A company is developing a new application using a microservices framework. The new application is having performance and latency issues. Which AWS Service should be used to troubleshoot these issues?
107 Which of the following AWS services is designed with native Multi-AZ fault tolerance in mind? (Choose TWO)
108 What are the Amazon RDS features that can be used to improve the availability of your database? (Choose TWO)
109 Sarah has deployed an application in the Northern California (us-west-1) region. After examining the application's traffic, she notices that about 30% of the traffic is coming from Asia. What can she do to reduce latency for the users in Asia?
110 An organization runs many systems and uses many AWS products. Which of the following services enables them to control how each developer interacts with these products?
111 Using Amazon EC2 falls under which of the following cloud computing models?
112 Which of the below is a best-practice when building applications on AWS?
113 Your company is designing a new application that will store and retrieve photos and videos. Which of the following services should you recommend as the underlying storage mechanism?
114 Amazon Glacier is an Amazon S3 storage class that is suitable for storing [...] & [...]. (Choose TWO)
115 What does Amazon Elastic Beanstalk provide?
116 What is the AWS service that performs automated network assessments of Amazon EC2 instances to check for vulnerabilities?
117 Under the Shared Responsibility Model, which of the following controls do customers fully inherit from AWS? (Choose TWO)
118 A company needs to host a database in Amazon RDS for at least three years. Which of the following options would be the most cost-effective solution?
119 Your application has recently experienced significant global growth, and international users are complaining of high latency. What is the AWS characteristic that can help improve your international users' experience?
120 Savings Plans are available for which of the following AWS compute services? (Choose TWO)
121 A company has business critical workloads hosted on AWS and they are unwilling to accept any downtime. Which of the following is a recommended best practice to protect their workloads in the event of an unexpected natural disaster?
122 Which statement is correct with regards to AWS service limits? (Choose TWO)
123 What is the AWS tool that enables you to use scripts to manage all AWS services and resources?
124 What are the connectivity options that can be used to build hybrid cloud architectures? (Choose TWO)
125 A company has deployed a new web application on multiple Amazon EC2 instances. Which of the following should they use to ensure that the incoming HTTP traffic is distributed evenly across the instances?
126 Which of the following AWS offerings is a MySQL-compatible relational database service that can scale capacity automatically based on demand?
127 Which of the following can help protect your EC2 instances from DDoS attacks? (Choose TWO)
128 What is the AWS data warehouse service that supports a high level of query performance on large amounts of datasets?
129 Which of the following should be considered when performing a TCO analysis to compare the costs of running an application on AWS instead of on-premises?
130 How are AWS customers billed for Linux-based Amazon EC2 usage?
131 Which of the following will impact the price paid for an EC2 instance? (Choose TWO)
132 A customer spent a lot of time configuring a newly deployed Amazon EC2 instance. After the workload increases, the customer decides to provision another EC2 instance with an identical configuration. How can the customer achieve this?
133 A company uses AWS Organizations to manage all of its AWS accounts. Which of the following allows the company to restrict what services and actions are allowed in each individual account?
134 Which of the following statements describes the AWS Cloud's agility?
135 What are the benefits of using the Amazon Relational Database Service? (Choose TWO)
136 What is the connectivity option that uses Internet Protocol Security (IPSec) to establish encrypted connectivity between an on-premises network and the AWS Cloud?
137 What is the minimum level of AWS support that provides 24x7 access to technical support engineers via phone and chat?
138 Which of the following is used to control network traffic in AWS? (Choose TWO)
139 A company has developed a media transcoding application in AWS. The application is designed to recover quickly from hardware failures. Which one of the following types of instance would be the most cost-effective choice to use?
140 Which AWS Service provides the current status of all AWS Services in all AWS Regions?
141 Which AWS service or feature can be used to call AWS Services from different programming languages?
142 Which AWS Service can be used to register a new domain name?
143 App development companies move their business to AWS to reduce time-to-market and improve customer satisfaction, what are the AWS automation tools that help them deploy their applications faster? (Choose TWO)
144 Which AWS service provides cost-optimization recommendations?
145 A company has hundreds of VPCs in multiple AWS Regions worldwide. What service does AWS offer to simplify the connection management among the VPCs?
146 What is one benefit and one drawback of buying a reserved EC2 instance? (Select TWO)
147 Why does every AWS Region contain multiple Availability Zones?
148 What is the most cost-effective purchasing option for running a set of EC2 instances that must always be available for a period of two months?
149 Which of the following is a benefit of running an application in multiple Availability Zones?
150 Data security is one of the top priorities of AWS. How does AWS deal with old storage devices that have reached the end of their useful life?
151 A developer needs to set up an SSL security certificate for a client's eCommerce website in order to use the HTTPS protocol. Which of the following AWS services can be used to deploy the required SSL server certificates? (Choose TWO)
152 Which of the following AWS services scale automatically without your intervention? (Choose TWO)
153 A company is planning to migrate an application from Amazon EC2 to AWS Lambda to use a serverless architecture. Which of the following will be the responsibility of AWS after migration? (Choose TWO)
154 How do ELBs improve the reliability of your application?
155 A company needs to migrate their website from on-premises to AWS. Security is a major concern for them, so they need to host their website on hardware that is NOT shared with other AWS customers. Which of the following EC2 instance options meets this requirement?
156 A customer is planning to move billions of images and videos to be stored on Amazon S3. The customer has approximately 60 Petabytes of data to move. Which of the following AWS Services is the best choice to transfer the data to AWS?
157 A company plans to migrate a large amount of archived data to AWS. The archived data must be maintained for a period of 5 years and must be retrievable within 5 hours of a request. What is the most cost-effective AWS storage service to use?
158 Which AWS Service is used to manage user permissions?
159 Which support plan includes AWS Support Concierge Service?
160 A company needs to track resource changes using the API call history. Which AWS service can help the company achieve this goal?
161 What are the benefits of using an AWS-managed service? (Choose TWO)
162 Which of the following are use cases for Amazon S3? (Choose TWO)
163 What is the AWS' recommendation regarding access keys?
164 What is the AWS IAM feature that provides an additional layer of security on top of user-name and password authentication?
165 What is the benefit of using an API to access AWS Services?
166 A company is planning to migrate a database with high read/write activity to AWS. What is the best storage option to use?
167 How can AWS customers track and avoid over-spending on underutilized reserved instances?
168 What is the AWS service that provides five times the performance of a standard MySQL database?
169 What does AWS Service Catalog provide?
170 For managed services like Amazon DynamoDB, which of the below is AWS responsible for? (Choose TWO)
171 Which of the following AWS Services helps with planning application migration to the AWS Cloud?
172 A company is trying to analyze the costs applied to their AWS account recently. Which of the following provides them the most granular data about their AWS costs and usage?
173 Which statement best describes the concept of an AWS region?
174 A company has discovered that multiple S3 buckets were deleted, but it is unclear who deleted the buckets. Which of the following can the company use to determine the identity that deleted the buckets?
175 Which of the following are factors in determining the appropriate database technology to use for a specific workload? (Choose TWO)
176 What are the benefits of implementing a tagging strategy for AWS resources? (Choose TWO)
177 What are AWS shared controls?
178 Which design principles relate to performance efficiency in AWS? (Choose TWO)
179 Which of the below are responsibilities of the customer when using Amazon EC2? (Choose TWO)
180 Why would an organization decide to use AWS over an on-premises data center? (Choose TWO)
181 Which of the following AWS services can help you perform security analysis and regulatory compliance auditing? (Choose TWO)
182 Which of the following is NOT a characteristic of Amazon Elastic Compute Cloud (Amazon EC2)?
183 What is the AWS Compute service that executes code only when triggered by events?
184 Both AWS and traditional IT distributors provide a wide range of virtual servers to meet their customers' requirements. What is the name of these virtual servers in AWS?
185 What is the framework created by AWS Professional Services that helps organizations design a road map to successful cloud adoption?
186 TYMO Cloud Corp is looking forward to migrating their entire on-premises data center to AWS. What tool can they use to perform a cost-benefit analysis of moving to the AWS Cloud?
187 Which of the following activities supports the Operational Excellence pillar of the AWS Well-Architected Framework?
188 Why do many startup companies prefer AWS over traditional on-premises solutions? (Choose TWO)
189 What are the benefits of using DynamoDB? (Choose TWO)
190 Which of the following can be used to protect data at rest on Amazon S3? (Choose TWO)
191 As part of the AWS Migration Acceleration Program (MAP), what does AWS provide to accelerate Enterprise adoption of AWS? (Choose TWO)
192 AWS recommends some practices to help organizations avoid unexpected charges on their bill. Which of the following is NOT one of these practices?
193 What is the AWS tool that can help a company visualize their AWS spending in the last few months?
194 When running a workload in AWS, the customer is NOT responsible for: (Select TWO)
195 Which AWS service can be used to send promotional text messages (SMS) to more than 200 countries worldwide?
196 Which of the following allows you to create new RDS instances? (Choose TWO)
197 One of the major advantages of using AWS is cost savings. What does AWS provide to reduce the cost of running Amazon EC2 instances?
198 Which AWS Group assists customers in achieving their desired business outcomes?
199 Which AWS service or feature is used to manage the keys used to encrypt customer data?
200 Which AWS Service allows customers to download AWS SOC & PCI reports?
201 A company is using EC2 Instances to run their e-commerce site on the AWS platform. If the site becomes unavailable, the company will lose a significant amount of money for each minute the site is unavailable. Which design principle should the company use to minimize the risk of an outage?
202 You decide to buy a reserved instance for a term of one year. Which option provides the largest total discount?
203 What features does AWS offer to help protect your data in the Cloud? (Choose TWO)
204 An AWS customer has used one Amazon Linux instance for 2 hours, 5 minutes and 9 seconds, and one CentOS instance for 4 hours, 23 minutes and 7 seconds. How much time will the customer be billed for?
205 What is the AWS Support feature that allows customers to manage support cases programmatically?
206 Which methods can be used by customers to interact with AWS Identity and Access Management (IAM)? (Choose TWO)
207 Which of the following are types of AWS Identity and Access Management (IAM) identities? (Choose TWO)
208 Which of the following Amazon RDS features facilitates offloading of database read activity?
209 How does AWS notify customers about security and privacy events pertaining to AWS services?
210 Which IAM entity can best be used to grant temporary access to your AWS resources?
211 A company has a web application that is hosted on a single EC2 instance and is approaching 100 percent CPU Utilization during peak loads. Rather than scaling the server vertically, the company has decided to deploy three Amazon EC2 instances in parallel and to distribute traffic across the three servers. What AWS Service should the company use to distribute the traffic evenly?
212 Which of the following approaches will help you eliminate human error and automate the process of creating and updating your AWS environment?
213 A company is seeking to better secure its AWS account from unauthorized access. Which of the below options can the customer use to achieve this goal?
214 Which AWS Service offers volume discounts based on usage?
215 Which of the following factors should be considered when determining the region in which AWS Resources will be deployed? (Choose TWO)
216 You are running a financial services web application on AWS. The application uses a MySQL database to store the data. Which of the following AWS services would improve the performance of your application by allowing you to retrieve information from fast in-memory caches?
217 What are the advantages of using Auto Scaling Groups for EC2 instances?
218 The TCO gap between AWS infrastructure and traditional infrastructure has widened over the recent years. Which of the following could be the reason for that?
219 Which of the following are examples of the customer's responsibility to implement 'security IN the cloud'? (Choose TWO)
220 Which of the following is a type of MFA device that customers can use to protect their AWS resources?
221 A company is seeking to deploy an existing .NET application onto AWS as quickly as possible. Which AWS Service should the customer use to achieve this goal?
222 Which of the following is NOT a factor when estimating the costs of Amazon EC2? (Choose TWO)
223 Which AWS Service helps enterprises extend their on-premises storage to AWS in a cost-effective manner?
224 A company is building an online cloud storage platform. They need a storage service that can scale capacity automatically, while minimizing cost. Which AWS storage service should the company use to meet these requirements?
225 You have just hired a skilled sys-admin to join your team. As usual, you have created a new IAM user for him to interact with AWS services. On his first day, you ask him to create snapshots of all existing Amazon EBS volumes and save them in a new Amazon S3 bucket. However, the new member reports back that he is unable to create neither EBS snapshots nor S3 buckets. What might prevent him from doing this simple task?
226 An external auditor is requesting a log of all accesses to the AWS resources in the company's account. Which of the following services will provide the auditor with the requested information?
227 Which of the below options is true of Amazon Cloud Directory?
228 A user has opened a 'Production System Down' support case to get help from AWS Support after a production system disruption. What is the expected response time for this type of support case?
229 Which of the below options is a best practice for making your application on AWS highly available?
230 Which of the following should be taken into account when performing a TCO analysis regarding the costs of running an application on AWS VS on-premises? (Choose TWO)
231 Your company requires a response time of less than 15 minutes from support interactions about their business-critical systems that are hosted on AWS if those systems go down. Which AWS Support Plan should this company use?
232 Which of the following AWS offerings are serverless services? (Choose TWO)
233 Which AWS service enables you to quickly purchase and deploy SSL/TLS certificates?
234 Which AWS Service provides integration with Chef to automate the configuration of EC2 instances?
235 A customer is seeking to store objects in their AWS environment and to make those objects downloadable over the internet. Which AWS Service can be used to accomplish this?
236 Which of the following services can be used to monitor the HTTP and HTTPS requests that are forwarded to Amazon CloudFront?
237 A company is migrating a web application to AWS. The application's compute capacity is continually utilized throughout the year. Which of the below options offers the company the most cost-effective solution?
238 A company wants to grant a new employee long-term access to manage Amazon DynamoDB databases. Which of the following is a recommended best-practice when granting these permissions?
239 When granting permissions to applications running on Amazon EC2 instances, which of the following is considered best practice?
240 Which of the following will help AWS customers save on costs when migrating their workloads to AWS?
241 An organization has a legacy application designed using monolithic-based architecture. Which AWS Service can be used to decouple the components of the application?
242 Which of the following can be used to enable the Virtual Multi-Factor Authentication? (Choose TWO)
243 According to best practices, which of the below options is best suited for processing a large number of binary files?
244 A company is planning to use Amazon S3 and Amazon CloudFront to distribute its video courses globally. What tool can the company use to estimate the costs of these services?
245 What should you do if you see resources, which you don't remember creating, in the AWS Management Console? (Choose TWO)
246 A key practice when designing solutions on AWS is to minimize dependencies between components so that the failure of a single component does not impact other components. What is this practice called?
247 Which AWS Service offers an NFS file system that can be mounted concurrently from multiple EC2 instances?
248 Availability Zones within a Region are connected over low-latency links. Which of the following is a benefit of these links?
249 Which of the following are true regarding the languages that are supported on AWS Lambda? (Choose TWO)
250 What are the capabilities of AWS X-Ray? (Choose TWO)
251 Which of the following is true regarding the AWS availability zones and edge locations?
252 Which features are included in the AWS Business Support Plan? (Choose TWO)
253 A company is developing a mobile application and wants to allow users to use their Amazon, Apple, Facebook, or Google identities to authenticate to the application. Which AWS Service should the company use for this purpose?
254 Which AWS Service allows customers to create a template that programmatically defines policies and configurations of all AWS resources as code and so that the same template can be reused among multiple projects?
255 Which of the following are advantages of using AWS as a cloud computing provider? (Choose TWO)
256 A customer is planning to migrate their Microsoft SQL Server databases to AWS. Which AWS Services can the customer use to run their Microsoft SQL Server database on AWS? (Choose TWO)
257 Which AWS Service can perform health checks on Amazon EC2 instances?
258 A company is developing an application that will leverage facial recognition to automate photo tagging. Which AWS Service should the company use for facial recognition?
259 Which of the following are examples of AWS-managed databases? (Choose TWO)
260 A company's AWS workflow requires that it periodically perform large-scale image and video processing jobs. The customer is seeking to minimize cost and has stated that the amount of time it takes to process these jobs is not critical, but that cost minimization is the most important factor in designing the solution. Which EC2 instance class is best suited for this processing?
261 There is a requirement to grant a DevOps team full administrative access to all resources in an AWS account. Who can grant them these permissions?
262 You need to migrate a large number of on-premises workloads to AWS. Which AWS service is the most appropriate?
263 What are some key benefits of using AWS CloudFormation? (Choose TWO)
264 Which of the following is a cloud computing deployment model that connects infrastructure and applications between cloud-based resources and existing resources not located in the cloud?
265 A company is hosting business critical workloads in an AWS Region. To protect against data loss and ensure business continuity, a mirror image of the current AWS environment should be created in another AWS Region. Company policy requires that the standby environment must be available in minutes in case of an outage in the primary AWS Region. Which AWS service can be used to meet these requirements?
266 Which of the following S3 storage classes is most appropriate to host static assets for a popular e-commerce website with stable access patterns?
267 You want to create a backup of your data in another geographical location. Where should you create this backup?
268 Which statement is true in relation to the security of Amazon EC2?
269 What does AWS Cost Explorer provide to help manage your AWS spend?
270 Which of the following is a feature of Amazon RDS that performs automatic failover when the primary database fails to respond?
271 You are using several on-demand EC2 Instances to run your development environment. What is the best way to reduce your charges when these instances are not in use?
272 Which of the following strategies helps protect your AWS root account?
273 Which of the following are factors should be considered for Amazon EBS pricing? (Choose TWO)
274 You have just set up your AWS environment and have created six IAM user accounts for the DevOps team. What is the AWS recommendation when granting permissions to these IAM accounts?
275 Which of the following has the greatest impact on cost? (Choose TWO)
276 Who from the following will get the largest discount?
277 Which of the following is an available option when purchasing Amazon EC2 instances?
278 What does the term 'Economies of scale' mean?
279 A company experiences fluctuations in traffic patterns to their e-commerce website when running flash sales. What service can help the company dynamically match the required compute capacity to handle spikes in traffic during flash sales?
280 Which of the below options is true of Amazon VPC?
281 Which tool can a non-AWS customer use to compare the cost of on-premises environment resources to AWS?
282 Which of the following services provide real-time auditing for compliance and vulnerabilities? (Choose TWO)
283 Which of the following AWS services uses Puppet to automate how EC2 instances are configured?
284 An organization uses a hybrid cloud architecture to run their business. Which AWS service enables them to deploy their applications to any AWS or on-premises server?
285 Select the services that are server-based: (Choose TWO)
286 What best describes penetration testing?
287 Which of the following are use cases for Amazon EMR? (Choose TWO)
288 Your CTO has asked you to contact AWS support using the chat feature to ask for guidance related to EBS. However, when you open the AWS support center you can't see a way to contact support via Chat. What should you do?
289 A developer wants to quickly deploy and manage his application in the AWS Cloud, but he doesn't have any experience with cloud computing. Which of the following AWS services would help the developer achieve his goal?
290 Which statement best describes the AWS Pay-As-You-Go pricing model?
291 For Amazon RDS databases, what does AWS perform on your behalf? (Choose TWO)
292 Which of the following strategies help analyze costs in AWS?
293 A media company has an application that requires the transfer of large data sets to and from AWS every day. This data is business critical and should be transferred over a consistent connection. Which AWS service should the company use?
294 What is the main benefit of the AWS Storage Gateway service?
295 To protect against data loss, you need to backup your database regularly. What is the most cost-effective storage option that provides immediate retrieval of your backups?
296 Which service can you use to route traffic to the endpoint that provides the best application performance for your users worldwide?
297 Why are Serverless Architectures more economical than Server-based Architectures?
298 Which of the below options are use cases of the Amazon Route 53 service? (Choose TWO)
299 You want to transfer 200 Terabytes of data from on-premises locations to the AWS Cloud, which of the following can do the job in a cost-effective way?
300 You have a real-time IoT application that requires sub-millisecond latency. Which of the following services should you use?
301 Which of the following can help secure your sensitive data in Amazon S3? (Choose TWO)
302 Which AWS service helps developers compile and test their code?
303 Which of the following will affect how much you are charged for storing objects in S3? (Choose TWO)
304 What does the Amazon CloudFront service provide? (Choose TWO)
305 You are facing a lot of problems with your current contact center. Which service provides a cloud-based contact center that can deliver a better service for your customers?
306 You have migrated your application to AWS recently. How can you view the AWS costs applied to your account?
307 Which of the following are valid Amazon EC2 Reserved Instance types? (Choose TWO)
308 Which of the following services gives you access to all AWS auditor-issued reports and certifications?
309 You manage a blog on AWS that has different environments: development, testing, and production. What can you use to create a custom console for each environment to view and manage your resources easily?
310 Which AWS service collects metrics from running EC2 instances?
311 Your web application currently faces performance issues and suffers from long load times. Which of the following AWS services could help fix these issues and improve performance?
312 Which of the following compute resources are serverless? (Choose TWO)
313 For compliance and regulatory purposes, a government agency requires that their applications must run on hardware that is dedicated to them only. How can you meet this requirement?
314 Which AWS Cost Governance best practice recommends refining workloads regularly to make the most of existing AWS resources and reduce costs?
315 An organization needs to build a financial application that requires support for ACID transactions. Which AWS database service is most appropriate in this case?
316 What can you use to assign permissions directly to an IAM user?
317 The owner of an E-Commerce application notices that the compute capacity requirements vary heavily from time to time. What makes AWS more economical than traditional data centers for this type of application?
318 Amazon RDS supports multiple database engines to choose from. Which of the following is not one of them?
319 Which of the following AWS services would help you migrate on-premise databases to AWS?
320 For new AWS customers, what is the EASIEST way to launch a simple WordPress website on AWS?
321 Which of the following would you use to manage your encryption keys in the AWS Cloud? (Choose TWO)
322 Which of the following services allows you to install and run custom relational database software?
323 Your application requirements for CPU and RAM are changing in an unpredictable way. Which service can be used to dynamically adjust these resources based on load?
324 A company has infrastructure hosted in an on-premises data center. They currently have an operations team that takes care of identity management. If they decide to migrate to the AWS cloud, which of the following services would help them perform the same role in AWS?
325 What are some key design principles for designing public cloud systems? (Choose TWO)
326 Where can AWS account owners get a list of all users in their account, including the status of their AWS credentials?
327 Which of the following services enables you to easily generate and use your own encryption keys in the AWS Cloud?
328 You have developed a web application targeting a global audience. Which of the following will help you achieve the highest redundancy and fault tolerance from an infrastructure perspective?
329 For some services, AWS automatically replicates data across multiple Availability Zones to provide fault tolerance in the event of a server failure or Availability Zone outage. Select TWO services that automatically replicate data across Availability Zones.
330 Which of the following factors affect Amazon CloudFront cost? (Choose TWO)
331 Which of the following resources can an AWS customer use to learn more about prohibited uses of the services offered by AWS?
332 Which of the following security resources are available to any user for free? (Choose TWO)
333 How can you protect data stored on Amazon S3 from accidental deletion?
334 Which of the following is the responsibility of AWS according to the AWS Shared Responsibility Model?
335 Which of the following AWS support plans provides access to only the seven core AWS Trusted Advisor checks?
336 Which of the following is NOT a benefit of using AWS Lambda?
337 How does AWS help customers achieve compliance in the cloud?
338 Who is responsible for scaling a DynamoDB database in the AWS Shared Responsibility Model?
339 You are working as a web app developer. You are currently facing issues in media playback for mobile devices because your media format is not supported. Which of the following AWS services can help you convert your media into another format?
340 What are the benefits of the AWS Organizations service? (Choose TWO)
341 Which AWS service allows you to build a data warehouse in the cloud?
342 What AWS service allows you to buy third-party software solutions and services that run on AWS resources?
343 Which of the following services is an AWS repository management system that allows for storing, versioning, and managing your application code?
344 Which AWS service can be used to route end users to the nearest AWS Region to reduce latency?
345 Which feature enables users to sign into their AWS accounts with their existing corporate credentials?
346 According to the AWS shared responsibility model, what are the controls that customers fully inherit from AWS? (Choose TWO)
347 What can you access by visiting the URL: http://status.aws.amazon.com?
348 Which of the following procedures can reduce latency when your end users are retrieving data? (Choose TWO)
349 Which of the following are part of the seven design principles for security in the cloud? (Choose TWO)
350 A company is migrating production workloads to AWS, and they are concerned about cost management across different departments. Which option should the company implement to categorize and track AWS spending?
351 What is the main benefit of attaching security groups to an Amazon RDS instance?
352 A company wants to use Amazon Elastic Container Service (Amazon ECS) to run its containerized applications. For compliance reasons, the company wants to retain complete visibility and control over the underlying server cluster. Which Amazon ECS launch type will satisfy these requirements?
353 You have multiple standalone AWS accounts and you want to decrease your AWS monthly charges. What should you do?
354 You have been tasked with auditing the security of your VPC. As part of this process, you need to start by analyzing what inbound and outbound traffic is allowed on your EC2 instances. What two parts of the VPC do you need to check to accomplish this task?
355 What does the AWS 'Business' support plan provide? (Choose TWO)
356 You have just finished writing your application code. Which service can be used to automate the deployment and scaling of your application?
357 Which statement is true in relation to security in AWS?
358 Amazon EC2 instances are conceptually very similar to traditional servers. However, using Amazon EC2 server instances in the same manner as traditional hardware server instances is only a starting point. What are the main benefits of using the AWS EC2 instances instead of traditional servers? (Choose TWO)
359 Which statement is true regarding AWS pricing? (Choose TWO)
360 Which AWS service provides the EASIEST way to set up and manage a secure, well-architected, multi-account AWS environment?
361 A company is running a large web application that needs to always be available. The application tends to slow down when CPU usage is greater than 60%. How can they track when CPU usage goes above 60% for any of the EC2 Instances in their account?
362 What is the recommended storage option when hosting an often-changing database on an Amazon EC2 instance?
363 You are working as a site reliability engineer (SRE) in an AWS environment, which of the following services helps monitor your applications?
364 What factors determine how you are charged when using AWS Lambda? (Choose TWO)
365 What are the main differences between an IAM user and an IAM role in AWS? (Choose TWO)
366 Which of the following actions may reduce Amazon EBS costs? (Choose TWO)
367 What does Amazon GuardDuty do to protect AWS accounts and workloads?
368 Which database service should you use if your application and data schema require 'joins' or complex transactions?
369 Which of the following makes it easier for you to categorize, manage and filter your resources?
370 What should you consider when storing data in Amazon Glacier?
371 Engineers are wasting a lot of time and effort managing batch computing software in traditional data centers. Which of the following AWS services allows them to easily run thousands of batch computing jobs?
372 How can you increase your application's fault-tolerance while it is being hosted in AWS?
373 Which of the following AWS Support Plans gives you 24/7 access to Cloud Support Engineers via email & phone? (Choose TWO)
374 Which of the following requires an access key ID and a secret access key to get long-lived programmatic access to AWS resources? (Choose TWO)
375 Which of the following is a benefit of the 'Loose Coupling' architecture principle?
376 A company needs to host a big data application on AWS using EC2 instances. Which of the following AWS Storage services would they choose to automatically get high throughput to multiple compute nodes?
377 Which of the following Cloud Computing deployment models eliminates the need to run and maintain physical data centers?
378 What are the benefits of the AWS Marketplace service? (Choose TWO)
379 What is the benefit of Amazon EBS volumes being automatically replicated within the same availability zone?
380 You are planning to launch an advertising campaign over the coming weekend to promote a new digital product. It is expected that there will be heavy spikes in load during the campaign period, and you can't afford any downtime. You need additional compute resources to handle the additional load. What is the most cost-effective EC2 instance purchasing option for this job?
381 Which of the following AWS services integrates with AWS Shield and AWS Web Application Firewall (AWS WAF) to protect against network and application layer DDoS attacks?
382 Which of the following services is used when encrypting EBS volumes?
383 The AWS account administrator of your company has been fired. With the permissions granted to him as an administrator, he was able to create multiple IAM user accounts and access keys. Additionally, you are not sure whether he has access to the AWS root account or not. What should you do immediately to protect your AWS infrastructure? (Choose TWO)
384 What is the Amazon ElastiCache service used for? (Choose TWO)
385 The elasticity of the AWS Cloud enables customers to save costs when compared to traditional hosting providers. What can AWS customers do to benefit from the elasticity of the AWS Cloud? (Choose TWO)
386 What are some of the benefits of using On-Demand EC2 instances? (Choose TWO)
387 Each AWS Region is composed of multiple Availability Zones. Which of the following best describes what an Availability Zone is?
388 AWS provides disaster recovery capability by allowing customers to deploy infrastructure into multiple [...].
389 A financial services company decides to migrate one of its applications to AWS. The application deals with sensitive data, such as credit card information, and must run on a PCI-compliant environment. Which of the following is the company's responsibility when building a PCI-compliant environment in AWS? (Choose TWO)
390 What is the maximum amount of data that can be stored in S3 in a single AWS account?
391 Which pillar of the AWS Well-Architected Framework provides recommendations to help customers select the right compute resources based on workload requirements?
392 Which AWS service delivers data, videos, applications, and APIs to users globally with low latency and high transfer speeds?
393 Which of the following steps should be taken by a customer when conducting penetration testing on AWS?
394 Which AWS Cost Management tool allows you to view the most granular data about your AWS bill?
395 Which element of the AWS global infrastructure consists of one or more discrete data centers each with redundant power networking and connectivity which are housed in separate facilities?
396 How many Availability Zones should compute resources be provisioned across to achieve high availability?
397 The AWS Cloud's multiple Regions are an example of:
398 Which AWS service can be used to manually launch instances based on resource requirements?
399 Which is a recommended pattern for designing a highly available architecture on AWS?
400 Which AWS characteristics make AWS cost effective for a workload with dynamic user demand? (Select TWO)
401 An administrator needs to rapidly deploy a popular IT solution and start using it immediately. Where can the administrator find assistance?
402 What is one of the advantages of the Amazon Relational Database Service (Amazon RDS)?
403 Which of the following AWS Cloud services can be used to run a customer-managed relational database?
404 A user is planning to launch two additional Amazon EC2 instances to increase availability. Which action should the user take?
405 Which of the following can limit Amazon Storage Service (Amazon S3) bucket access to specific users?
406 Which AWS service allows companies to connect an Amazon VPC to an on-premises data center?
407 Which AWS service of feature can be used to monitor CPU usage?
408 Which task is AWS responsible for in the shared responsibility model for security and compliance?
409 Which of the following security-related actions are available at no cost?
410 Which storage service can be used as a low-cost option for hosting static websites?
411 According to the AWS shared responsibility model what is the sole responsibility of AWS?
412 Which of the following are pillars of the AWS Well-Architected Framework? (Select TWO)
413 Which AWS service identifies security groups that allow unrestricted access to a user's AWS resources?
414 Which design principles for cloud architecture are recommended when re-architecting a large monolithic application? (Select TWO)
415 When architecting cloud applications, which of the following are a key design principle?
416 A company has deployed several relational databases on Amazon EC2 instances Every month the database software vendor releases new security patches that need to be applied to the databases. What is the MOST efficient way to apply the security patches?
417 Which mechanism allows developers to access AWS sendees from application code?
418 Which AWS feature will reduce the customer's total cost of ownership (TCO)?
419 Which of the following is a benefit of using the AWS Cloud?
420 Which of the following are categories of AWS Trusted Advisor? (Select TWO)
421 What is Amazon CloudWatch?
422 Under the AWS shared responsibility model, which of the following activities are the customer's responsibility? (Select TWO)
423 Under the shared responsibility model, which of the following is a shared control between a customer and AWS?
424 Which AWS service is used to pay AWS bills, and monitor usage and budget costs?
425 How do customers benefit from Amazon's massive economies of scale?
426 Which AWS feature allows a company to take advantage of usage tiers for services across multiple member accounts?
427 Which AWS services provide a way to extend an on-premises architecture to the aws cloud? (Select TWO)
428 Which of the following services will automatically scale with an expected increase in web traffic?
429 Which service provides a virtually unlimited amount of online highly durable object storage?
430 Which AWS feature should a customer leverage to achieve high availability of an application?
431 Which AWS service or feature can enhance network security by blocking requests from a particular network for a web application on AWS? (Select TWO)
432 Which of the following is a cloud architectural design principle?
433 Which service enables risk auditing by continuously monitoring and logging account activity, including user actions in the AWS Management Console and AWS SDKs?
434 Where can AWS compliance and certification reports be downloaded?
435 The financial benefits of using AWS are: (Select TWO)
436 Which AWS service can serve a static website?
437 What are the benefits of using the AWS Cloud for companies with customers in many countries around the world (Select TWO)
438 Which of the following are main components of the AWS global infrastructure? (Select TWO)
439 What is the AWS customer responsible for according to the AWS shared responsibility model?
440 If each department within a company has its own AWS account, what is one way to enable consolidated billing?
441 What costs are included when comparing AWS Total Cost of Ownership (TCO) with on-premises TCO?
442 What is the benefit of using AWS managed services, such as Amazon ElastiCache and Amazon Relational Database Service (Amazon RDS)?
443 Which services can be used across hybrid AWS Cloud architectures? (Select TWO)
444 Which statement best describes Elastic Load Balancing?
445 Which of the following is a fast and reliable NoSQL database service?
446 Which AWS service would you use to obtain compliance reports and certificates?
447 Which AWS services are defined as global instead of regional? (Select TWO)
448 How would an AWS customer easily apply common access controls to a large set of users?
449 Which of the following is an important architectural design principle when designing cloud applications?
450 Which service allows a company with multiple AWS accounts to combine its usage to obtain volume discounts?
451 Which of the following can an AWS customer use to launch a new Amazon Relational Database Service (Amazon RDS) cluster? (Select TWO)
452 Which of the following Reserved Instance (RI) pricing models provides the highest average savings compared to On-Demand pricing?
453 Which of the following are features of Amazon CloudWatch Logs? (Select TWO)
454 Which of the following is an AWS-managed compute service?
455 A company wants to reduce the physical compute footprint that developers use to run code. Which service would meet that need by enabling serverless architectures?
456 Which of the following is the customer's responsibility under the AWS shared responsibility model?
457 According to the AWS shared responsibility model who is responsible for configuration management?
458 Which security service automatically recognizes and classifies sensitive data or intellectual property on AWS?
459 Which of the following BEST describe the AWS pricing model? (Select TWO)
460 Under the shared responsibility model, which of the following tasks are the responsibility of the AWS customer? (Select TWO)
461 A customer is using multiple AWS accounts with separate billing. How can the customer take advantage of volume discounts with minimal impact to the AWS resources?
462 Which Amazon EC2 pricing model offers the MOST significant discount when compared to OnDemand Instances?
463 Which AWS services should be used for read/write of constantly changing data? (Select TWO)
464 Which AWS service allows users to identify the changes made to a resource over time?
465 According to best practices, how should an application be designed to run in the AWS Cloud?
466 Which benefits are included with the AWS Business Support plan? (Select TWO)
467 Which of the following is an AWS managed Domain Name System (DNS) web service?
468 A user must meet compliance and software licensing requirements that state a workload must be hosted on a physical server. When Amazon EC2 instance pricing option will meet these requirements?
469 Which of the Reserved Instance (RI) pricing models can change the attributes of the RI as long as the exchange results in the creation of RIs of equal or greater value?
470 Which service is best for storing common database query results, which helps to alleviate database access load?
471 When should a company consider using Amazon EC2 Spot Instances? (Select TWO)
472 Which AWS tools assist with estimating costs? (Select three)
473 A company wants to focus on business activities instead of managing compute and capacity. Which AWS service can be used to automatically add or remove Amazon EC2 instances based on demand?
474 Which is the minimum AWS Support plan that includes Infrastructure Event Management without additional costs?
475 Access keys in AWS Identity and Access Management (IM1) are used to:
476 Which AWS service can be used to query stored datasets directly from Amazon S3 using standard SQL?
477 How does AWS shorten the time to provision IT resources?
478 Which AWS services can be used to gather information about AWS account activity? (Select TWO)
479 Which of the following are characteristics of Amazon S3? (Select TWO)
480 A user wants guidance on possible savings when migrating from on-premises to AWS. Which tool is suitable for this scenario?
481 Which of the following services is in the category of AWS serverless platform?
482 The use of what AWS feature or service allows companies to track and categorize spending on a detailed level?
483 Which of the following inspects AWS environments to find opportunities that can save money for users and also improve system performance?
484 Web servers running on Amazon EC2 access a legacy application running in a corporate data center. What term would describe this model?
485 What technology enables compute capacity to adjust as loads change?
486 Which AWS service is a managed NoSQL database?
487 Which of the following is a correct relationship between regions, Availability Zones, and edge locations?
488 What approach to transcoding a large number of individual video files adheres to AWS architecture principles?
489 Which AWS services can host a Microsoft SQL Server database? (Select TWO)
490 Which AWS IAM feature allows developers to access AWS services through the AWS CLI?
491 The user is fully responsible for which action when running workloads on AWS?
492 Which AWS support plan includes a dedicated Technical Account Manager?
493 What time-savings advantage is offered with the use of Amazon Rekognition?
494 Which AWS service can be used to automatically scale an application up and down without making capacity planning decisions?
495 Amazon Relational Database Service (Amazon RDS) offers which of the following benefits over traditional database management?
496 A company's web application currently has light dependencies on underlying components so when one component fails the entire web application fails. Applying which AWS Cloud design principle will address the current design issue?
497 A customer would like to design and build a new workload on AWS Cloud but does not have the AWS-related software technical expertise in-house. Which of the following AWS programs can a customer take advantage of to achieve that outcome?
498 Which service stores objects, provides real-time access to those objects, and offers versioning and lifecycle capabilities?
499 Distributing workloads across multiple Availability Zones supports which cloud architecture design principle?
500 Which service should a customer use to consolidate and centrally manage multiple AWS accounts?
501 How can a company reduce its Total Cost of Ownership (TCO) using AWS?
502 Which options does AWS make available for customers who want to learn about security in the cloud in an instructor-led setting? (Select TWO)
503 Which of the following will enhance the security of access to the AWS Management Console'? (Select TWO)
504 Which of the following features can be configured through the Amazon Virtual Private Cloud (Amazon VPC) Dashboard? (Select TWO)
505 For which auditing process does AWS have sole responsibility?
506 Which of the following are advantages of AWS consolidated billing? (Select TWO)
507 Which of the following common IT tasks can AWS cover to free up company IT resources? (Select TWO)
508 A company wants to expand from one AWS Region into a second AWS Region. What does the company need to do to start supporting the new Region?
509 Why is it beneficial to use Elastic Load Balancers with applications?
510 Which is the MINIMUM AWS Support plan that allows for one-hour target response time for support cases?
511 What is the lowest-cost, durable storage option for retaining database backups for immediate retrieval?
512 What AWS team assists customers with accelerating cloud adoption through paid engagements in any of several specialty practice areas?
513 A company needs 24/7 phone email and chat access with a response time of less than 1 hour if a production system has a service interruption. Which AWS Support plan meets these requirements at the LOWEST cost?
514 If a customer needs to audit the change management of AWS resources, which of the following AWS services should the customer use?
515 How does AWS Trusted Advisor provide guidance to users of the AWS Cloud? (Select TWO)
516 Which AWS managed service is used to host databases?
517 Which of the following Identity and Access Management (IAM) entities is associated with an access key ID and secret access key when using AWS Command Line Interface (AWS CLI)?
518 Under the shared responsibility model, which of the following is the customer responsible for?
519 Which AWS service provides a simple and scalable shared file storage solution for use with Linux-based AWS and on-premises servers?
520 What credential components are required to gain programmatic access to an AWS account? (Select TWO)
521 Which of the following is a shared control between the customer and AWS?
522 Which type of AWS storage is ephemeral and is deleted when an instance is stopped Of terminated?
523 Which of the following is an advantage of consolidated billing on AWS?
524 Which services are parts of the AWS serverless platform?
525 Which of the following Amazon EC2 pricing models allow customers to use existing server-bound software licenses?
526 Which of the following security measures protect access to an AWS account? (Select TWO)
527 Which AWS service provides the ability to manage infrastructure as code?
528 What is an advantage of deploying an application across multiple Availability Zones?
529 A customer needs to run a MySQL database that easily scales. Which AWS service should they use?
530 Which of the following is an AWS Cloud architecture design principle?
531 AWS Enterprise Support users have access to which service or feature that is not available to users with other AWS Support plans?
532 A company will be moving from an on-premises data center to the AWS Cloud. What would be one financial difference after the move?
533 When performing a cost analysis that supports physical isolation of a customer workload, which compute hosting model should be accounted for in the Total Cost of Ownership (TCO)?
534 Which AWS service should be used for long-term, low-cost storage of data backups?
535 Which is the MINIMUM AWS Support plan that provides technical support through phone calls?
536 Which Amazon EC2 instance pricing model can provide discounts of up to 90%?
537 Which of the following AWS services can be used to serve large amounts of online video content with the lowest possible latency? (Select TWO)
538 What can AWS edge locations be used for? (Select TWO)
539 A company is planning to migrate from on-premises to the AWS Cloud. When AWS tool or service provides detailed reports on estimated cost savings after migration?
540 Which AWS service provides a customized view of the health of specific AWS services that power a customer's workloads running on AWS?
541 One of the advantages to moving infrastructure from an on-premises data center to the AWS Cloud is:
542 How can an AWS user with an AWS Basic Support plan obtain technical assistance from AWS?
543 How can a user protect against AWS service disruptions if a natural disaster affects an entire geographic area?
544 Which activity is a customer responsibility in the AWS Cloud according to the AWS shared responsibility model?
545 In which scenario should Amazon EC2 Spot Instances be used?
546 A customer is deploying a new application and needs to choose an AWS Region. Which of the following factors could influence the customer's decision? (Select TWO)
547 Which AWS service provides alerts when an AWS event may impact a company's AWS resources?
548 Which disaster recovery scenario offers the lowest probability of down time?
549 Which service's PRIMARY purpose is software version control?
550 How can a customer increase security to AWS account logons? (Select TWO)
551 Which of the following components of the AWS Global Infrastructure consists of one or more discrete data centers interconnected through low latency links?
552 One benefit of On-Demand Amazon Elastic Compute Cloud (Amazon EC2) pricing is:
553 What can assist in evaluating an application for migration to the cloud? (Select TWO)
554 A characteristic of edge locations is that they:
555 Which of the following are valid ways for a customer to interact with AWS services? (Select TWO)
556 What is a value proposition of the AWS Cloud?
557 A company is migrating an application that is running non-interruptible workloads for a three-year time frame. Which pricing construct would provide the MOST cost-effective solution?
558 Which AWS service is used to track record, and audit configuration changes made to AWS resources?
559 Which feature of the AWS Cloud will support an international company's requirement for low latency to all of its customers?
560 How can one AWS account use Reserved Instances from another AWS account?
561 What are the benefits of developing and running a new application in the AWS Cloud compared to on-premises? (Select TWO)
562 Which of the following services falls under the responsibility of the customer to maintain operating system configuration, security patching, and networking?
563 AWS supports which of the following methods to add security to Identity and Access Management (IAM) users? (Select TWO)
564 Which service provides a hybrid storage service that enables on-premises applications to seamlessly use cloud storage?
565 Where should a company go to search software listings from independent software vendors to find, test, buy and deploy software that runs on AWS?
566 Which of the following is a component of the AWS Global Infrastructure?
567 Which Amazon EC2 pricing model adjusts based on supply and demand of EC2 instances?
568 A company wants to migrate its applications to a VPC on AWS. These applications will need to access on-premises resources. What combination of actions will enable the company to accomplish this goals? (Select TWO)
569 A Cloud Practitioner must determine if any security groups in an AWS account have been provisioned to allow unrestricted access for specific ports. What is the SIMPLEST way to do this?
570 Which of the following security-related services does AWS offer? (Select TWO)
571 Which of the following services have Distributed Denial of Service (DDoS) mitigation features? (Select TWO)
572 Which of the following AWS features enables a user to launch a pre-configured Amazon Elastic Compute Cloud (Amazon EC2) instance?
573 A solution that is able to support growth in users, traffic, or data size with no drop in performance aligns with which cloud architecture principle?
574 Which AWS Cloud benefit eliminates the need for users to try estimating future infrastructure usage?
575 What can users access from AWS Artifact?
576 Compared with costs in traditional and virtualized data centers, AWS has:
577 Which AWS service would a customer use with a static website to achieve tower latency and high transfer speeds?
578 How do Amazon EC2 Auto Scaling groups help achieve high availability for a web application?
579 Which of the following can limit Amazon Simple Storage Service (Amazon S3) bucket access to specific users?
580 How should a customer forecast the future costs for running a new web application?
581 Where are AWS compliance documents, such as an SOC 1 report, located?
582 Which of the following tasks is the responsibility of AWS?
583 Under the shared responsibility model which of the following areas are the customer's responsibility? (Select TWO)
584 A company is looking for a scalable data warehouse solution. Which of the following AWS solutions would meet the company's needs?
585 Much AWS services provide a way to extend an on-premises architecture to the AWS Cloud? (Select TWO)
586 What are the advantages of the AWS Cloud? (Select TWO)
587 How can the AWS Cloud increase user workforce productivity after migration from an on-premises data center?
588 Which of the following services could be used to deploy an application to servers running on-premises? (Select TWO)
589 What is an example of agility in the AWS Cloud?
590 Which AWS security service protects applications from distributed denial of service attacks with always-on detection and automatic inline mitigations?
591 Which of the following are advantages of AWS consolidated billing? (Choose two)
592 A company is considering using AWS for a self-hosted database that requires a nightly shutdown for maintenance and cost-saving purposes. Which service should the company use?
593 Which type of mirroring does SPAN technology perform?
594 Your customer wants to grant restricted proxy rights to their HR Department to act on behalf of employees belonging to their legal entity. How can you perform this requirement? There are 2 correct answers to this question.
595 Which two statements about configuring a traffic monitoring session are true? (Choose two)
596 What are the advantages of the AWS Cloud? (Select TWO)
597 A company wants to migrate its applications from its on-premises data center to a VPC in the AWS Cloud. These applications will need to access on-premises resources. Which actions will meet these requirements? (Choose TWO)

AWS allows users to manage their resources using a web based user interface. What is the name of this interface?

  • AWS CLI.
  • AWS API.
  • AWS SDK.
  • AWS Management Console.

Which of the following is an example of horizontal scaling in the AWS Cloud?

  • Replacing an existing EC2 instance with a larger, more powerful one.
  • Increasing the compute capacity of a single EC< instance to address the growing demands of an application.
  • Adding more RAM capacity to an EC2 instance.
  • Adding more EC2 instances of the same size to handle an increase in traffic.

You have noticed that several critical Amazon EC2 instances have been terminated. Which of the following AWS services would help you determine who took this action?

  • Amazon Inspector.
  • AWS CloudTrail.
  • AWS Trusted Advisor.
  • EC2 Instance Usage Report.

Which of the below options are related to the reliability of AWS? (Choose TWO)

  • Applying the principle of least privilege to all AWS resources.
  • Automatically provisioning new resources to meet demand.
  • All AWS services are considered Global Services, and this design helps customers serve their international users.
  • Providing compensation to customers if issues occur.
  • Ability to recover quickly from failures.

Which statement is true regarding the AWS Shared Responsibility Model?

  • Responsibilities vary depending on the services used.
  • Security of the IaaS services is the responsibility of AWS.
  • Patching the guest OS is always the responsibility of AWS.
  • Security of the managed services is the responsibility of the customer.

You have set up consolidated billing for several AWS accounts. One of the accounts has purchased a number of reserved instances for 3 years. Which of the following is true regarding this scenario?

  • The Reserved Instance discounts can only be shared with the master account.
  • All accounts can receive the hourly cost benefit of the Reserved Instances.
  • The purchased instances will have better performance than On-demand instances.
  • There are no cost benefits from using consolidated billing; It is for informational purposes only.

A company has developed an eCommerce web application in AWS. What should they do to ensure that the application has the highest level of availability?

  • Deploy the application across multiple Availability Zones and Edge locations.
  • Deploy the application across multiple Availability Zones and subnets.
  • Deploy the application across multiple Regions and Availability Zones.
  • Deploy the application across multiple VPC's and subnets.

What does AWS Snowball provide? (Choose TWO)

  • Built-in computing capabilities that allow customers to process data locally.
  • A catalog of third-party software solutions that customers need to build solutions and run their businesses.
  • A hybrid cloud storage between on-premises environments and the AWS Cloud.
  • An Exabyte-scale data transfer service that allows you to move extremely large amounts of data to AWS.
  • Secure transfer of large amounts of data into and out of the AWS.

A company has an AWS Enterprise Support plan. They want quick and efficient guidance with their billing and account inquiries. Which of the following should the company use?

  • AWS Health Dashboard.
  • AWS Support Concierge.
  • AWS Customer Service.
  • AWS Operations Support.

A Japanese company hosts their applications on Amazon EC2 instances in the Tokyo Region. The company has opened new branches in the United States, and the US users are complaining of high latency. What can the company do to reduce latency for the users in the US while minimizing costs?

  • Applying the Amazon Connect latency-based routing policy.
  • Registering a new US domain name to serve the users in the US.
  • Building a new data center in the US and implementing a hybrid model.
  • Deploying new Amazon EC2 instances in a Region located in the US.

An organization has a large number of technical employees who operate their AWS Cloud infrastructure. What does AWS provide to help organize them into teams and then assign the appropriate permissions for each team?

  • IAM roles.
  • IAM users.
  • IAM user groups.
  • AWS Organizations.

A company has decided to migrate its Oracle database to AWS. Which AWS service can help achieve this without negatively impacting the functionality of the source database?

  • AWS OpsWorks.
  • AWS Database Migration Service.
  • AWS Server Migration Service.
  • AWS Application Discovery Service.

Adjusting compute capacity dynamically to reduce cost is an implementation of which AWS cloud best practice?

  • Build security in every layer.
  • Parallelize tasks.
  • Implement elasticity.
  • Adopt monolithic architecture.

What are the benefits of having infrastructure hosted in AWS? (Choose TWO)

  • Increasing speed and agility.
  • There is no need to worry about security.
  • Gaining complete control over the physical infrastructure.
  • Operating applications on behalf of customers.
  • All of the physical security and most of the data/network security are taken care of for you.

What is the advantage of the AWS-recommended practice of 'decoupling' applications?

  • Allows treating an application as a single, cohesive unit.
  • Reduces inter-dependencies so that failures do not impact other components of the application.
  • Allows updates of any monolithic application quickly and easily.
  • Allows tracking of any API call made to any AWS service.

Which of the following helps a customer view the Amazon EC2 billing activity for the past month?

  • AWS Budgets.
  • AWS Pricing Calculator.
  • AWS Systems Manager.
  • AWS Cost & Usage Reports.

What do you gain from setting up consolidated billing for five different AWS accounts under another master account?

  • AWS services' costs will be reduced to half the original price.
  • The consolidated billing feature is just for organizational purpose.
  • Each AWS account gets volume discounts.
  • Each AWS account gets five times the free-tier services capacity.

What should you do in order to keep the data on EBS volumes safe? (Choose TWO)

  • Regularly update firmware on EBS devices.
  • Create EBS snapshots.
  • Ensure that EBS data is encrypted at rest.
  • Store a backup daily in an external drive.
  • Prevent any unauthorized access to AWS data centers.

One of the most important AWS best-practices to follow is the cloud architecture principle of elasticity. How does this principle improve your architecture's design?

  • By automatically scaling your on-premises resources based on changes in demand.
  • By automatically scaling your AWS resources using an Elastic Load Balancer.
  • By reducing interdependencies between application components wherever possible.
  • By automatically provisioning the required AWS resources based on changes in demand.

A startup company is operating on limited funds and is extremely concerned about cost overruns. Which of the below options can be used to notify the company when their monthly AWS bill exceeds $2000? (Choose TWO)

  • Setup a CloudWatch billing alarm that triggers an SNS notification when the threshold is exceeded.
  • Configure the Amazon Simple Email Service to send billing alerts to their email address on a daily basis.
  • Configure the AWS Budgets Service to alert the company when the threshold is exceeded.
  • Configure AWS CloudTrail to automatically delete all AWS resources when the threshold is exceeded.
  • Configure the Amazon Connect Service to alert the company when the threshold is exceeded.

What does Amazon CloudFront use to distribute content to global users with low latency?

  • AWS Global Accelerator.
  • AWS Regions.
  • AWS Edge Locations.
  • AWS Availability Zones.

What does the 'Principle of Least Privilege' refer to?

  • You should grant your users only the permissions they need when they need them and nothing more.
  • AllIAM users should have at least the necessary permissions to access the core AWS services.
  • All trusted IAM users should have access to any AWS service in the respective AWS account.
  • IAM users should not be granted any permissions; to keep your account safe.

Which of the following does NOT belong to the AWS Cloud Computing models?

  • Platform as a Service (PaaS).
  • Infrastructure as a Service (IaaS).
  • Software as a Service (SaaS).
  • Networking as a Service (NaaS).

The identification process of an online financial services company requires that new users must complete an online interview with their security team. The completed recorded interviews are only required in the event of a legal issue or a regulatory compliance breach. What is the most cost-effective service to store the recorded videos?

  • S3 Intelligent-Tiering.
  • AWS Marketplace.
  • Amazon S3 Glacier Deep Archive.
  • Amazon EBS.

Which service provides DNS in the AWS cloud?

  • Route 53.
  • AWS Config.
  • Amazon CloudFront.
  • Amazon EMR.

Hundreds of thousands of DDoS attacks are recorded every month worldwide. What service does AWS provide to help protect AWS Customers from these attacks? (Choose TWO)

  • AWS Shield.
  • AWS Config.
  • Amazon Cognito.
  • AWS WAF.
  • AWS KMS.

A company is deploying a new two-tier web application in AWS. Where should the most frequently accessed data be stored so that the application's response time is optimal?

  • AWS OpsWorks.
  • AWS Storage Gateway.
  • Amazon EBS volume.
  • Amazon ElastiCache.

You want to run a questionnaire application for only one day (without interruption), which Amazon EC2 purchase option should you use?

  • Reserved instances.
  • Spot instances.
  • Dedicated instances.
  • On-demand instances.

You are working on a project that involves creating thumbnails of millions of images. Consistent uptime is not an issue, and continuous processing is not required. Which EC2 buying option would be the most cost-effective?

  • Reserved Instances.
  • On-demand Instances.
  • Dedicated Instances.
  • Spot Instances.

Which of the following can be described as a global content delivery network (CDN) service?

  • AWS VPN.
  • AWS Direct Connect.
  • AWS Regions.
  • Amazon CloudFront.

Which of the following services allows customers to manage their agreements with AWS?

  • AWS Artifact.
  • AWS Certificate Manager.
  • AWS Systems Manager.
  • AWS Organizations.

Which of the following are examples of AWS-Managed Services, where AWS is responsible for the operational and maintenance burdens of running the service? (Choose TWO)

  • Amazon VPC.
  • Amazon DynamoDB.
  • Amazon Elastic MapReduce.
  • AWS IAM.
  • Amazon Elastic Compute Cloud.

Your company has a data store application that requires access to a NoSQL database. Which AWS database offering would meet this requirement?

  • Amazon Aurora.
  • Amazon DynamoDB.
  • Amazon Elastic Block Store.
  • Amazon Redshift.

As part of the Enterprise support plan, who is the primary point of contact for ongoing support needs?

  • AWS Identity and Access Management (IAM) user.
  • Infrastructure Event Management (IEM) engineer.
  • AWS Consulting Partners.
  • Technical Account Manager (TAM).

How can you view the distribution of AWS spending in one of your AWS accounts?

  • By using Amazon VPC console.
  • By contacting the AWS Support team.
  • By using AWS Cost Explorer.
  • By contacting the AWS Finance team.

Which of the following must an IAM user provide to interact with AWS services using the AWS Command Line Interface (AWS CLI)?

  • Access keys.
  • Secret token.
  • UserID.
  • User name and password.

You have AWS Basic support, and you have discovered that some AWS resources are being used maliciously, and those resources could potentially compromise your data. What should you do?

  • Contact the AWS Customer Service team.
  • Contact the AWS Abuse team.
  • Contact the AWS Concierge team.
  • Contact the AWS Security team.

Select TWO examples of the AWS shared controls.

  • Patch Management.
  • IAM Management.
  • VPC Management.
  • Configuration Management.
  • Data Center operations.

In order to implement best practices when dealing with a 'Single Point of Failure,' you should attempt to build as much automation as possible in both detecting and reacting to failure. Which of the following AWS services would help? (Choose TWO)

  • ELB.
  • Auto Scaling.
  • Amazon Athen.
  • ECR.
  • Amazon EC2.

A company is planning to host an educational website on AWS. Their video courses will be streamed all around the world. Which of the following AWS services will help achieve high transfer speeds?

  • Amazon SNS.
  • Amazon Kinesis Video Streams.
  • AWS CloudFormation.
  • Amazon CloudFront.

A developer is planning to build a two-tier web application that has a MySQL database layer. Which of the following AWS database services would provide automated backups for the application?

  • A MySQL database installed on an EC2 instance.
  • Amazon Aurora.
  • Amazon DynamoDB.
  • Amazon Neptune.

What is the AWS service that enables AWS architects to manage infrastructure as code?

  • AWS CloudFormation.
  • AWS Config.
  • Amazon SES.
  • Amazon EMR.

Under the shared responsibility model, which of the following is the responsibility of AWS?

  • Client-side encryption.
  • Configuring infrastructure devices.
  • Server-side encryption.
  • Filtering traffic with Security Groups.

What does the AWS Health Dashboard provide? (Choose TWO)

  • Detailed troubleshooting guidance to address AWS events impacting your resources.
  • Health checks for Auto Scaling instances.
  • Recommendations for Cost Optimization.
  • A dashboard detailing vulnerabilities in your applications.
  • Personalized view of AWS service health.

You have deployed your application on multiple Amazon EC2 instances. Your customers complain that sometimes they can't reach your application. Which AWS service allows you to monitor the performance of your EC2 instances to assist in troubleshooting these issues?

  • AWS Lambda.
  • AWS Config.
  • Amazon CloudWatch.
  • AWS CloudTrail.

Your company is developing a critical web application in AWS, and the security of the application is a top priority. Which of the following AWS services will provide infrastructure security optimization recommendations?

  • AWS Shield.
  • AWS Management Console.
  • AWS Secrets Manager.
  • AWS Trusted Advisor.

Which of the following is not a benefit of Amazon S3? (Choose TWO)

  • Amazon S3 provides unlimited storage for any type of data.
  • Amazon S3 can run any type of application or backend system.
  • Amazon S3 stores any number of objects, but with object size limits.
  • Amazon S3 can be scaled manually to store and retrieve any amount of data from anywhere.
  • Amazon S3 provides 99.999999999% (11 9's) of data durability.

In the AWS Shared responsibility Model, which of the following are the responsibility of the customer? (Choose TWO)

  • Disk disposal.
  • Controlling physical access to compute resources.
  • Patching the Network infrastructure.
  • Setting password complexity rules.
  • Configuring network access rules.

What does AWS provide to deploy popular technologies such as IBM MQ on AWS with the least amount of effort and time?

  • Amazon Aurora.
  • Amazon CloudWatch.
  • AWS Quick Start reference deployments.
  • AWS OpsWorks.

An organization has decided to purchase an Amazon EC2 Reserved Instance (RI) for three years in order to reduce costs. It is possible that the application workloads could change during the reservation period. What is the EC2 Reserved Instance (RI) type that will allow the company to exchange the purchased reserved instance for another reserved instance with higher computing power if they need to?

  • Elastic RI.
  • Premium RI.
  • Standard RI.
  • Convertible RI.

A global company with a large number of AWS accounts is seeking a way in which they can centrally manage billing and security policies across all accounts. Which AWS Service will assist them in meeting these goals?

  • AWS Organizations.
  • AWS Trusted Advisor.
  • IAM User Groups.
  • AWS Config.

Which service provides object-level storage in AWS?

  • Amazon EBS.
  • Amazon Instance Store.
  • Amazon EFS.
  • Amazon S3.

A company is concerned that they are spending money on underutilized compute resources in AWS. Which AWS feature will help ensure that their applications are automatically adding/removing EC2 compute capacity to closely match the required demand?

  • AWS Elastic Load Balancer.
  • AWS Budgets.
  • AWS Auto Scaling.
  • AWS Cost Explorer.

Which S3 storage class is best for data with unpredictable access patterns?

  • Amazon S3 Intelligent-Tiering.
  • Amazon S3 Glacier Flexible Retrieval.
  • Amazon S3 Standard.
  • Amazon S3 Standard-Infrequent Access.

What is the AWS database service that allows you to upload data structured in key-value format?

  • Amazon DynamoDB.
  • Amazon Aurora.
  • Amazon Redshift.
  • Amazon RDS.

Which of the following is NOT correct regarding Amazon EC2 On-demand instances?

  • You have to pay a start-up fee when launching a new instance for the first time.
  • The on-demand instances follow the AWS pay-as-you-go pricing model.
  • With on-demand instances, no longer-term commitments or upfront payments are needed.
  • When using on-demand Linux instances, you are charged per second based on an hourly rate.

A company has moved to AWS recently. Which of the following AWS Services will help ensure that they have the proper security settings? (Choose TWO)

  • AWS Trusted Advisor.
  • Amazon Inspector.
  • Amazon SNS.
  • Amazon CloudWatch.
  • Concierge Support Team.

What is the AWS feature that provides an additional level of security above the default authentication mechanism of usernames and passwords?

  • Encrypted keys.
  • Email verification.
  • AWS KMS.
  • AWS MFA.

A company is introducing a new product to their customers, and is expecting a surge in traffic to their web application. As part of their Enterprise Support plan, which of the following provides the company with architectural and scaling guidance?

  • AWS Knowledge Center.
  • AWS Health Dashboard.
  • Infrastructure Event Management.
  • AWS Support Concierge Service.

You work as an on-premises MySQL DBA. The work of database configuration, backups, patching, and DR can be time-consuming and repetitive. Your company has decided to migrate to the AWS Cloud. Which of the following can help save time on database maintenance so you can focus on data architecture and performance?

  • Amazon RDS.
  • Amazon Redshift.
  • Amazon DynamoDB.
  • Amazon CloudWatch.

Which of the below is a best-practice when designing solutions on AWS?

  • Invest heavily in architecting your environment, as it is not easy to change your design later.
  • Use AWS reservations to reduce costs when testing your production environment.
  • Automate wherever possible to make architectural (© ) experimentation easier.
  • Provision a large compute capacity to handle any spikes in load

According to the AWS Acceptable Use Policy, which of the following statements is true regarding penetration testing of EC2 instances?

  • Penetration testing is not allowed in AWS.
  • Penetration testing is performed automatically by AWS to determine vulnerabilities in your AWS infrastructure.
  • Penetration testing can be performed by the customer on their own instances without prior authorization from AWS.
  • The AWS customers are only allowed to perform penetration testing on services managed by AWS.

Which service is used to ensure that messages between software components are not lost if one or more components fail?

  • Amazon SQS.
  • Amazon SES.
  • AWS Direct Connect.
  • Amazon Connect.

The principle 'design for failure and nothing will fail' is very important when designing your AWS Cloud architecture. Which of the following would help adhere to this principle? (Choose TWO)

  • Multi-factor authentication.
  • Availability Zones.
  • Elastic Load Balancing.
  • Penetration testing.
  • Vertical Scaling.

What is the AWS service that provides a virtual network dedicated to your AWS account?

  • AWS VPN.
  • AWS Subnets.
  • AWS Dedicated Hosts.
  • Amazon VPC.

According to the AWS Shared responsibility model, which of the following are the responsibility of the customer? (Choose TWO)

  • Managing environmental events of AWS data centers.
  • Protecting the confidentiality of data in transit in Amazon S3.
  • Controlling physical access to AWS Regions.
  • Ensuring that the underlying EC2 host is configured properly.
  • Patching applications installed on Amazon EC2.

Which of the following AWS services can be used as a compute resource? (Choose TWO)

  • Amazon VPC.
  • Amazon CloudWatch.
  • Amazon S3.
  • Amazon EC2.
  • AWS Lambda.

Your company is designing a new application that will store and retrieve photos and videos. Which of the following services should you recommend as the underlying storage mechanism?

  • Amazon EBS.
  • Amazon SQS.
  • Amazon S3.
  • Amazon Instance store.

Which of the following is equivalent to a user name and password and is used to authenticate your programmatic access to AWS services and APIs?

  • Instance Password.
  • Key pairs.
  • Access Keys.
  • MFA.

What does Amazon ElastiCache provide?

  • In-memory caching for read-heavy applications.
  • An Ehcache compatible in-memory data store.
  • An online software store that allows Customers to launch pre-configured software with just few clicks.
  • A domain name system in the cloud.

What is the AWS service that enables you to manage all of your AWS accounts from a single master account?

  • AWS WAF.
  • AWS Trusted Advisor.
  • AWS Organizations.
  • Amazon Config.

Which of the following EC2 instance purchasing options supports the Bring Your Own License (BYOL) model for almost every BYOL scenario?

  • Dedicated Instances.
  • Dedicated Hosts.
  • On-demand Instances.
  • Reserved Instances.

Which of the following is one of the benefits of moving infrastructure from an on-premises data center to AWS?

  • Free support for all enterprise customers.
  • Automatic data protection.
  • Reduced Capital Expenditure (CapEx).
  • AWS holds responsibility for managing customer applications.

Which of the following are important design principles you should adopt when designing systems on AWS? (Choose TWO)

  • Always use Global Services in your architecture rather than Regional Services.
  • Always choose to pay as you go.
  • Treat servers as fixed resources.
  • Automate wherever possible.
  • Remove single points of failure.

Which AWS Service can be used to establish a dedicated, private network connection between AWS and your datacenter?

  • AWS Direct Connect.
  • Amazon CloudFront.
  • AWS Snowball.
  • Amazon Route 53.

You are working on two projects that require completely different network configurations. Which AWS service or feature will allow you to isolate resources and network configurations?

  • Internet gateways.
  • Virtual Private Cloud.
  • Security Groups.
  • Amazon CloudFront.

Which of the following services can help protect your web applications from SQL injection and other vulnerabilities in your application code?

  • Amazon Cognito.
  • AWS IAM.
  • Amazon Aurora.
  • AWS WAF.

An organization needs to analyze and process a large number of data sets. Which AWS service should they use?

  • Amazon EMR.
  • Amazon MQ.
  • Amazon SNS.
  • Amazon SQS.

Based on the AWS Shared Responsibility Model, which of the following are the sole responsibility of AWS? (Choose TWO)

  • Monitoring network performance.
  • Installing software on EC2 instances.
  • Creating hypervisors.
  • Configuring Access Control Lists (ACLs).
  • Hardware maintenance.

What is the AWS service that provides you the highest level of control over the underlying virtual infrastructure?

  • Amazon Redshift.
  • Amazon DynamoDB.
  • Amazon EC2.
  • Amazon RDS.

What are the default security credentials that are required to access the AWS management console for an IAM user account?

  • MFA.
  • Security tokens.
  • A user name and password.
  • Access keys.

In your on-premises environment, you can create as many virtual servers as you need from a single template. What can you use to perform the same in AWS?

  • IAM.
  • An internet gateway.
  • EBS Snapshot.
  • AMI.

What are two advantages of using Cloud Computing over using traditional data centers? (Choose TWO)

  • Reserved Compute capacity.
  • Eliminating Single Points of Failure (SPOFs).
  • Distributed infrastructure.
  • Virtualized compute resources.
  • Dedicated hosting.

Which of the following aspects of security are managed by AWS? (Choose TWO)

  • Encryption of EBS volumes.
  • VPC security.
  • Access permissions.
  • Hardware patching.
  • Securing global physical infrastructure.

Which statement best describes the operational excellence pillar of the AWS Well-Architected Framework?

  • The ability of a system to recover gracefully from failure.
  • The efficient use of computing resources to meet requirements.
  • The ability to monitor systems and improve supporting processes and procedures.
  • The ability to manage datacenter operations more efficiently.

AWS has created a large number of Edge Locations as part of its Global Infrastructure. Which of the following is NOT a benefit of using Edge Locations?

  • Edge locations are used by CloudFront to cache the most recent responses.
  • Edge locations are used by CloudFront to improve your end users' experience when uploading files.
  • Edge locations are used by CloudFront to distribute traffic across multiple instances to reduce latency.
  • Edge locations are used by CloudFront to distribute content to global users with low latency.

What are the change management tools that helps AWS customers audit and monitor all resource changes in their AWS environment? (Choose TWO)

  • AWS CloudTrail.
  • Amazon Comprehend.
  • AWS Transit Gateway.
  • AWS X-Ray.
  • AWS Config.

Which of the following services allows you to run containerized applications on a cluster of EC2 instances?

  • Amazon ECS.
  • AWS Data Pipeline.
  • AWS Cloud9.
  • AWS Personal Health Dashboard.

Which of the following services will help businesses ensure compliance in AWS?

  • CloudFront.
  • CloudEndure Migration.
  • CloudWatch.
  • CloudTrail.

Which of the following procedures will help reduce your Amazon S3 costs?

  • Use the Import/Export feature to move old files automatically to Amazon Glacier.
  • Use the right combination of storage classes based on different use cases.
  • Pick the right Availability Zone for your S3 bucket.
  • Move all the data stored in S3 standard to EBS.

What are the AWS services/features that can help you maintain a highly available and fault-tolerant architecture in AWS? (Choose TWO)

  • AWS Direct Connect.
  • Amazon EC2 Auto Scaling.
  • Elastic Load Balancer.
  • CloudFormation.
  • Network ACLs.

Which of the following activities may help reduce your AWS monthly costs?

  • Enabling Amazon EC2 Auto Scaling for all of your workloads.
  • Using the AWS Network Load Balancer (NLB) to load balance the incoming HTTP requests.
  • Removing all of your Cost Allocation Tags.
  • Deploying your AWS resources across multiple Availability Zones.

What is the AWS service/feature that takes advantage of Amazon CloudFront's globally distributed edge locations to transfer files to S3 with higher upload speeds?

  • S3 Transfer Acceleration.
  • AWS WAF.
  • AWS Snowmobile.
  • AWS Snowball.

Which of the following AWS security features is associated with an EC2 instance and functions to filter incoming traffic requests?

  • AWS X-Ray.
  • Network ACL.
  • Security Groups.
  • VPC Flow logs.

Which AWS services can be used to improve the performance of a global application and reduce latency for its users? (Choose TWO)

  • AWS KMS.
  • AWS Global accelerator.
  • AWS Direct Connect.
  • AWS Glue.
  • Amazon CloudFront.

Using Amazon RDS falls under the shared responsibility model. Which of the following are customer responsibilities? (Choose TWO)

  • Building the relational database schema.
  • Performing backups.
  • Managing the database settings.
  • Patching the database software.
  • Installing the database software.

A company has a large amount of structured data stored in their on-premises data center. They are planning to migrate all the data to AWS, what is the most appropriate AWS database option?

  • Amazon DynamoDB.
  • Amazon SNS.
  • Amazon RDS.
  • Amazon ElastiCache.

A company has created a solution that helps AWS customers improve their architectures on AWS. Which AWS program may support this company?

  • APN Consulting Partners.
  • AWS TAM.
  • APN Technology Partners.
  • AWS Professional Services.

What is the AWS serverless service that allows you to run your applications without any administrative burden?

  • Amazon LightSail.
  • AWS Lambda.
  • Amazon RDS instances.
  • Amazon EC2 instances.

Jessica is managing an e-commerce web application in AWS. The application is hosted on six EC2 instances. One day, three of the instances crashed; but none of her customers were affected. What has Jessica done correctly in this scenario?

  • She has properly built an elastic system.
  • She has properly built a fault tolerant system.
  • She has properly built an encrypted system.
  • She has properly built a scalable system.

Where can you store files in AWS? (Choose TWO)

  • Amazon EFS.
  • Amazon SNS.
  • Amazon EBS.
  • Amazon ECS.
  • Amazon EMR.

Which AWS service can be used to store and reliably deliver messages across distributed systems?

  • Amazon Simple Queue Service.
  • AWS Storage Gateway.
  • Amazon Simple Email Service.
  • Amazon Simple Storage Service.

Which of the following describes the payment model that AWS makes available for customers that can commit to using Amazon EC2 over a one or 3-year term to reduce their total computing costs?

  • Pay less as AWS grows.
  • Pay as you go.
  • Pay less by using more.
  • Save when you reserve.

A company is migrating its on-premises database to Amazon RDS. What should the company do to ensure Amazon RDS costs are kept to a minimum?

  • Right-size before and after migration.
  • Use a Multi-Region Active-Passive architecture.
  • Combine On-demand Capacity Reservations with Saving Plans.
  • Use a Multi-Region Active-Active architecture.

What is the primary storage service used by Amazon RDS database instances?

  • Amazon Glacier.
  • Amazon EBS.
  • Amazon EFS.
  • Amazon S3.

A company is developing a new application using a microservices framework. The new application is having performance and latency issues. Which AWS Service should be used to troubleshoot these issues?

  • AWS CodePipeline.
  • AWS X-Ray.
  • Amazon Inspector.
  • AWS CloudTrail.

Which of the following AWS services is designed with native Multi-AZ fault tolerance in mind? (Choose TWO)

  • Amazon Redshift.
  • AWS Snowball.
  • Amazon Simple Storage Service.
  • Amazon EBS.
  • Amazon DynamoDB.

What are the Amazon RDS features that can be used to improve the availability of your database? (Choose TWO)

  • AWS Regions.
  • Multi-AZ Deployment.
  • Automatic patching.
  • Read Replicas.
  • Edge Locations.

Sarah has deployed an application in the Northern California (us-west-1) region. After examining the application's traffic, she notices that about 30% of the traffic is coming from Asia. What can she do to reduce latency for the users in Asia?

  • Replicate the current resources across multiple Availability Zones within the same region.
  • Migrate the application to a hosting provider in Asia.
  • Recreate the website content.
  • Create a CDN using CloudFront, so that content is cached at Edge Locations close to and in Asia.

An organization runs many systems and uses many AWS products. Which of the following services enables them to control how each developer interacts with these products?

  • AWS Identity and Access Management.
  • Amazon RDS.
  • Network Access Control Lists.
  • Amazon EMR.

Using Amazon EC2 falls under which of the following cloud computing models?

  • Iaas & SaaS.
  • IaaS.
  • SaaS.
  • PaaS.

Which of the below is a best-practice when building applications on AWS?

  • Strengthen physical security by applying the principle of least privilege.
  • Ensure that the application runs on hardware from trusted vendors.
  • Use IAM policies to maintain performance.
  • Decouple the components of the application so that they run independently.

Your company is designing a new application that will store and retrieve photos and videos. Which of the following services should you recommend as the underlying storage mechanism?

  • Amazon EBS.
  • Amazon SQS.
  • Amazon Instance store.
  • Amazon S3.

Amazon Glacier is an Amazon S3 storage class that is suitable for storing [...] & [...]. (Choose TWO)

  • Active archives.
  • Dynamic websites' assets.
  • Long-term analytic data.
  • Active databases.
  • Cached data.

What does Amazon Elastic Beanstalk provide?

  • A PaaS solution to automate application deployment.
  • A compute engine for Amazon ECS.
  • A scalable file storage solution for use with AWS and on-premises servers.
  • A NoSQL database service.

What is the AWS service that performs automated network assessments of Amazon EC2 instances to check for vulnerabilities?

  • Amazon Kinesis.
  • Security groups.
  • Amazon Inspector.
  • AWS Network Access Control Lists.

Under the Shared Responsibility Model, which of the following controls do customers fully inherit from AWS? (Choose TWO)

  • Patch management controls.
  • Database controls.
  • Awareness & Training.
  • Environmental controls.
  • Physical controls.

A company needs to host a database in Amazon RDS for at least three years. Which of the following options would be the most cost-effective solution?

  • Reserved instances - No Upfront.
  • Reserved instances - Partial Upfront.
  • On-Demand instances.
  • Spot Instances.

Your application has recently experienced significant global growth, and international users are complaining of high latency. What is the AWS characteristic that can help improve your international users' experience?

  • Elasticity.
  • Global reach.
  • Data durability.
  • High availability.

Savings Plans are available for which of the following AWS compute services? (Choose TWO)

  • AWS Batch.
  • AWS Outposts.
  • Amazon Lightsail.
  • Amazon EC2.
  • AWS Lambda.

A company has business critical workloads hosted on AWS and they are unwilling to accept any downtime. Which of the following is a recommended best practice to protect their workloads in the event of an unexpected natural disaster?

  • Replicate data across multiple Edge Locations worldwide and use Amazon CloudFront to perform automatic failover in the event of an outage.
  • Deploy AWS resources across multiple Availability Zones within the same AWS Region.
  • Create point-in-time backups in another subnet and recover this data when a disaster occurs.
  • Deploy AWS resources to another AWS Region and implement an Active-Active disaster recovery strategy.

Which statement is correct with regards to AWS service limits? (Choose TWO)

  • You can contact AWS support to increase the service limits.
  • Each IAM user has the same service limit.
  • There are no service limits on AWS.
  • You can use the AWS Trusted Advisor to monitor your service limits.
  • The Amazon Simple Email Service is responsible for sending email notifications when usage approaches a service limit.

What is the AWS tool that enables you to use scripts to manage all AWS services and resources?

  • AWS Console.
  • AWS Service Catalog.
  • AWS OpsWorks.
  • AWS CLI.

What are the connectivity options that can be used to build hybrid cloud architectures? (Choose TWO)

  • AWS Artifact.
  • AWS Cloud9.
  • AWS Direct Connect.
  • AWS CloudTrail.
  • AWS VPN.

A company has deployed a new web application on multiple Amazon EC2 instances. Which of the following should they use to ensure that the incoming HTTP traffic is distributed evenly across the instances?

  • AWS EC2 Auto Recovery.
  • AWS Auto Scaling.
  • AWS Network Load Balancer.
  • AWS Application Load Balancer.

Which of the following AWS offerings is a MySQL-compatible relational database service that can scale capacity automatically based on demand?

  • Amazon Neptune.
  • Amazon Aurora.
  • Amazon RDS for SQL Server.
  • Amazon RDS for PostgreSQL.

Which of the following can help protect your EC2 instances from DDoS attacks? (Choose TWO)

  • AWS CloudHSM.
  • Security Groups.
  • AWS Batch.
  • AWS IAM.
  • Network Access Control Lists (Network ACLs).

What is the AWS data warehouse service that supports a high level of query performance on large amounts of datasets?

  • Amazon Redshift.
  • Amazon Kinesis.
  • Amazon DynamoDB.
  • Amazon RDS.

Which of the following should be considered when performing a TCO analysis to compare the costs of running an application on AWS instead of on-premises?

  • Application development.
  • Market research.
  • Business analysis.
  • Physical hardware.

How are AWS customers billed for Linux-based Amazon EC2 usage?

  • EC2 instances will be billed on one second increments, with a minimum of one minute.
  • EC2 instances will be billed on one hour increments, with a minimum of one day.
  • EC2 instances will be billed on one minute increments, with a minimum of one hour.
  • EC2 instances will be billed on one day increments, with a minimum of one month.

Which of the following will impact the price paid for an EC2 instance? (Choose TWO)

  • Instance type.
  • The Availability Zone where the instance is provisioned.
  • Load balancing.
  • Number of buckets.
  • Number of private IPs.

A customer spent a lot of time configuring a newly deployed Amazon EC2 instance. After the workload increases, the customer decides to provision another EC2 instance with an identical configuration. How can the customer achieve this?

  • By creating an AWS Config template from the old instance and launching a new instance from it.
  • By creating an EBS Snapshot of the old instance.
  • By installing Aurora on EC2 and launching a new instance from it.
  • By creating an AMI from the old instance and launching a new instance from it.

A company uses AWS Organizations to manage all of its AWS accounts. Which of the following allows the company to restrict what services and actions are allowed in each individual account?

  • IAM Principals.
  • AWS Service Control Policies (SCPs).
  • IAM policies.
  • AWS Fargate.

Which of the following statements describes the AWS Cloud's agility?

  • AWS allows you to host your applications in multiple regions around the world.
  • AWS provides customizable hardware at the lowest possible cost.
  • AWS allows you to provision resources in minutes.
  • AWS allows you to pay upfront to reduce costs.

What are the benefits of using the Amazon Relational Database Service? (Choose TWO)

  • Lower administrative burden.
  • Complete control over the underlying host.
  • Resizable compute capacity.
  • Scales automatically to larger or smaller instance types.
  • Supports the document and key-value data structure.

What is the connectivity option that uses Internet Protocol Security (IPSec) to establish encrypted connectivity between an on-premises network and the AWS Cloud?

  • Internet Gateway.
  • AWS IQ.
  • AWS Direct Connect.
  • AWS Site-to-Site VPN.

What is the minimum level of AWS support that provides 24x7 access to technical support engineers via phone and chat?

  • Enterprise Support.
  • Developer Support.
  • Basic Support.
  • Business Support.

Which of the following is used to control network traffic in AWS? (Choose TWO)

  • Network Access Control Lists (NACLs).
  • Key Pairs.
  • Access Keys.
  • IAM Policies.
  • Security Groups.

A company has developed a media transcoding application in AWS. The application is designed to recover quickly from hardware failures. Which one of the following types of instance would be the most cost-effective choice to use?

  • Reserved instances.
  • Spot Instances.
  • On-Demand instances.
  • Dedicated instances.

Which AWS Service provides the current status of all AWS Services in all AWS Regions?

  • AWS Service Health Dashboard.
  • AWS Management Console.
  • Amazon CloudWatch.
  • AWS Personal Health Dashboard.

Which AWS service or feature can be used to call AWS Services from different programming languages?

  • AWS Software Development Kit.
  • AWS Command Line Interface.
  • AWS CodeDeploy.
  • AWS Management Console.

Which AWS Service can be used to register a new domain name?

  • Amazon Personalize.
  • Amazon Route 53.
  • AWS KMS.
  • AWS Config.

App development companies move their business to AWS to reduce time-to-market and improve customer satisfaction, what are the AWS automation tools that help them deploy their applications faster? (Choose TWO)

  • AWS CloudFormation.
  • AWS Migration Hub.
  • AWS IAM.
  • AWS Elastic Beanstalk.
  • Amazon Macie.

Which AWS service provides cost-optimization recommendations?

  • AWS Trusted Advisor.
  • AWS Pricing Calculator.
  • Amazon QuickSight.
  • AWS X-Ray.

A company has hundreds of VPCs in multiple AWS Regions worldwide. What service does AWS offer to simplify the connection management among the VPCs?

  • VPC Peering.
  • AWS Transit Gateway.
  • Amazon Connect.
  • Security Groups.

What is one benefit and one drawback of buying a reserved EC2 instance? (Select TWO)

  • Instances can be shut down by AWS at any time with no notification.
  • Reserved instances require at least a one-year pricing commitment.
  • There is no additional charge for using dedicated instances.
  • Reserved instances provide a significant discount compared to on-demand instances.
  • [ ]Reserved instances are best suited for periodic workloads.

Why does every AWS Region contain multiple Availability Zones?

  • Multiple Availability Zones allows you to build resilient and highly available architectures.
  • Multiple Availability Zones results in lower total cost compared to deploying in a single Availability Zone.
  • Multiple Availability Zones allows for data replication and global reach.
  • Multiple Availability Zones within a region increases the storage capacity available in that region.

What is the most cost-effective purchasing option for running a set of EC2 instances that must always be available for a period of two months?

  • On-Demand Instances.
  • Spot Instances.
  • Reserved Instances - All Upfront.
  • Reserved Instances - No Upfront.

Which of the following is a benefit of running an application in multiple Availability Zones?

  • Allows you to exceed AWS service limits.
  • Reduces application response time between servers and global users.
  • Increases available compute capacity.
  • Increases the availability of your application.

Data security is one of the top priorities of AWS. How does AWS deal with old storage devices that have reached the end of their useful life?

  • AWS sells the old devices to other hosting providers.
  • AWS destroys the old devices in accordance with industry-standard practices.
  • AWS sends the old devices for remanufacturing.
  • AWS stores the old devices in a secure place.

A developer needs to set up an SSL security certificate for a client's eCommerce website in order to use the HTTPS protocol. Which of the following AWS services can be used to deploy the required SSL server certificates? (Choose TWO)

  • Amazon Route 53.
  • AWS ACM.
  • AWS Directory Service.
  • AWS Identity & Access Management.
  • AWS Data Pipeline.

Which of the following AWS services scale automatically without your intervention? (Choose TWO)

  • Amazon EC2.
  • Amazon S3.
  • AWS Lambda.
  • Amazon EMR.
  • Amazon EBS.

A company is planning to migrate an application from Amazon EC2 to AWS Lambda to use a serverless architecture. Which of the following will be the responsibility of AWS after migration? (Choose TWO)

  • Application management.
  • Capacity management.
  • Access control.
  • Operating system maintenance.
  • Data management.

How do ELBs improve the reliability of your application?

  • By distributing traffic across multiple S3 buckets.
  • By replicating data to multiple availability zones.
  • By creating database Read Replicas.
  • By ensuring that only healthy targets receive traffic.

A company needs to migrate their website from on-premises to AWS. Security is a major concern for them, so they need to host their website on hardware that is NOT shared with other AWS customers. Which of the following EC2 instance options meets this requirement?

  • On-demand instances.
  • Spot instances.
  • Dedicated instances.
  • Reserved instances.

A customer is planning to move billions of images and videos to be stored on Amazon S3. The customer has approximately 60 Petabytes of data to move. Which of the following AWS Services is the best choice to transfer the data to AWS?

  • Snowball.
  • S3 Transfer Acceleration.
  • Snowmobile.
  • Amazon VPC.

A company plans to migrate a large amount of archived data to AWS. The archived data must be maintained for a period of 5 years and must be retrievable within 5 hours of a request. What is the most cost-effective AWS storage service to use?

  • Amazon S3 Glacier.
  • Amazon EFS.
  • Amazon S3 Standard.
  • Amazon EBS.

Which AWS Service is used to manage user permissions?

  • Security Groups.
  • Amazon ECS.
  • AWS IAM.
  • AWS Support.

Which support plan includes AWS Support Concierge Service?

  • Premium Support.
  • Business Support.
  • Enterprise Support.
  • Standard Support.

A company needs to track resource changes using the API call history. Which AWS service can help the company achieve this goal?

  • AWS Config.
  • Amazon CloudWatch.
  • AWS CloudTrail.
  • AWS CloudFormation.

What are the benefits of using an AWS-managed service? (Choose TWO)

  • Provides complete control over the virtual infrastructure.
  • Allows customers to deliver new solutions faster.
  • Lowers operational complexity.
  • Eliminates the need to encrypt data.
  • Allows developers to control all patching related activities.

Which of the following are use cases for Amazon S3? (Choose TWO)

  • Hosting static websites.
  • Hosting websites that require sustained high CPU utilization.
  • Cost-effective database and log storage.
  • A media store for the CloudFront service.
  • Processing data streams at any scale.

What is the AWS' recommendation regarding access keys?

  • Delete all access keys and use passwords instead.
  • Only share them with trusted people.
  • Rotate them regularly.
  • Save them within your application code.

What is the AWS IAM feature that provides an additional layer of security on top of user-name and password authentication?

  • Key Pair.
  • Access Keys.
  • SDK.
  • MFA.

What is the benefit of using an API to access AWS Services?

  • It improves the performance of AWS resources.
  • It reduces the time needed to provision AWS resources.
  • It reduces the number of developers necessary.
  • It allows for programmatic management of AWS resources.

A company is planning to migrate a database with high read/write activity to AWS. What is the best storage option to use?

  • AWS Storage Gateway.
  • Amazon S3.
  • Amazon EBS.
  • Amazon Glacier.

How can AWS customers track and avoid over-spending on underutilized reserved instances?

  • Customers can add all AWS accounts to an AWS Organization, enable Consolidated Billing, and turn off Reserved Instance sharing.
  • Customers can use Amazon Neptune to track and analyze their usage patterns, detect underutilized reserved instances, and then sell them on the Amazon EC2 Reserved Instance Marketplace.
  • Customers can use the AWS Budgets service to track the reserved instances usage and set up alert notifications when their utilization drops below the threshold that they define.
  • Customers can use Amazon CloudTrail to automatically check for unused reservations and get recommendations to reduce their bill.

What is the AWS service that provides five times the performance of a standard MySQL database?

  • Amazon Aurora.
  • Amazon Redshift.
  • Amazon DynamoDB.
  • Amazon Neptune.

What does AWS Service Catalog provide?

  • It enables customers to quickly find descriptions and use cases for AWS services.
  • It enables customers to explore the different catalogs of AWS services.
  • It simplifies organizing and governing commonly deployed IT services.
  • It allows developers to deploy infrastructure on AWS using familiar programming languages.

For managed services like Amazon DynamoDB, which of the below is AWS responsible for? (Choose TWO)

  • Protecting credentials.
  • Logging access activity.
  • Patching the database software.
  • Operating system maintenance.
  • Creating access policies.

Which of the following AWS Services helps with planning application migration to the AWS Cloud?

  • AWS Snowball Migration Service.
  • AWS Application Discovery Service.
  • AWS DMS.
  • AWS Migration Hub.

A company is trying to analyze the costs applied to their AWS account recently. Which of the following provides them the most granular data about their AWS costs and usage?

  • Amazon Machine Image.
  • AWS Cost Explorer.
  • AWS Cost & Usage Report.
  • Amazon CloudWatch.

Which statement best describes the concept of an AWS region?

  • An AWS Region is a geographical location with a collection of Edge locations.
  • An AWS Region is a virtual network dedicated only to a single AWS customer.
  • An AWS Region is a geographical location with a collection of Availability Zones.
  • An AWS Region represents the country where the AWS infrastructure exist.

A company has discovered that multiple S3 buckets were deleted, but it is unclear who deleted the buckets. Which of the following can the company use to determine the identity that deleted the buckets?

  • SNS logs.
  • SQS logs.
  • CloudWatch Logs.
  • CloudTrail logs.

Which of the following are factors in determining the appropriate database technology to use for a specific workload? (Choose TWO)

  • Availability Zones.
  • Data sovereignty.
  • The number of reads and writes per second.
  • The nature of the queries.
  • Software bugs.

What are the benefits of implementing a tagging strategy for AWS resources? (Choose TWO)

  • Quickly identify resources that belong to a specific project.
  • Quickly identify software solutions on AWS.
  • Track API calls in your AWS account.
  • Quickly identify deleted resources and their metadata.
  • Track AWS spending across multiple resources.

What are AWS shared controls?

  • Controls that are solely the responsibility of the customer based on the application they are deploying within AWS services.
  • Controls that a customer inherits from AWS.
  • Controls that apply to both the infrastructure layer and customer layers.
  • Controls that the customer and AWS collaborate together upon to secure the infrastructure.

Which design principles relate to performance efficiency in AWS? (Choose TWO)

  • Build multi-region architectures to better serve global customers.
  • Apply security at all layers.
  • Implement strong Identity and Access controls.
  • Use serverless architectures.
  • Enable audit logging.

Which of the below are responsibilities of the customer when using Amazon EC2? (Choose TWO)

  • Protecting sensitive data.
  • Patching of the underlying infrastructure.
  • Setup and operation of managed databases.
  • Maintaining consistent hardware components.
  • Installing and configuring third-party software.

Why would an organization decide to use AWS over an on-premises data center? (Choose TWO)

  • Free commercial software licenses.
  • Free technical support.
  • Elastic resources.
  • On-site visits for auditing.
  • Cost Savings.

Which of the following AWS services can help you perform security analysis and regulatory compliance auditing? (Choose TWO)

  • Amazon Inspector.
  • AWS Virtual Private Gateway.
  • AWS Batch.
  • Amazon ECS.
  • AWS Config.

Which of the following is NOT a characteristic of Amazon Elastic Compute Cloud (Amazon EC2)?

  • Amazon EC2 is considered a Serverless Web Service.
  • Amazon EC2 eliminates the need to invest in hardware upfront.
  • Amazon EC2 can launch as many or as few virtual servers as needed.
  • Amazon EC2 offers scalable computing.

What is the AWS Compute service that executes code only when triggered by events?

  • AWS Lambda.
  • Amazon CloudWatch.
  • AWS Transit Gateway.
  • Amazon EC2.

Both AWS and traditional IT distributors provide a wide range of virtual servers to meet their customers' requirements. What is the name of these virtual servers in AWS?

  • Amazon EBS Snapshots.
  • Amazon VPC.
  • AWS Managed Servers.
  • Amazon EC2 Instances.

What is the framework created by AWS Professional Services that helps organizations design a road map to successful cloud adoption?

  • AWS Secrets Manager.
  • AWS WAF.
  • AWS CAF.
  • Amazon EFS.

TYMO Cloud Corp is looking forward to migrating their entire on-premises data center to AWS. What tool can they use to perform a cost-benefit analysis of moving to the AWS Cloud?

  • AWS Cost Explorer.
  • AWS TCO Calculator.
  • AWS Budgets.
  • AWS Pricing Calculator.

Which of the following activities supports the Operational Excellence pillar of the AWS Well-Architected Framework?

  • Using AWS Trusted Advisor to find underutilized resources.
  • Using AWS CloudTrail to record user activities.
  • Using AWS CloudFormation to manage infrastructure as code.
  • Deploying an application in multiple Availability Zones.

Why do many startup companies prefer AWS over traditional on-premises solutions? (Choose TWO)

  • AWS allows them to pay later when their business succeed.
  • AWS can build complete data centers faster than any other Cloud provider.
  • Using AWS, they can reduce time-to-market by focusing on business activities rather than on building and managing data centers.
  • AWS removes the need to invest in operational expenditure.
  • Using AWS allows companies to replace large capital expenditure with low variable costs.

What are the benefits of using DynamoDB? (Choose TWO)

  • Automatically scales to meet required throughput capacity.
  • Provides resizable instances to match the current demand.
  • Supports both relational and non-relational data models.
  • Offers extremely low (single-digit millisecond) latency.
  • Supports the most popular NoSQL database engines such as CouchDB and MongoDB.

Which of the following can be used to protect data at rest on Amazon S3? (Choose TWO)

  • Versioning.
  • Deduplication.
  • Permissions.
  • Decryption.
  • Conversion.

As part of the AWS Migration Acceleration Program (MAP), what does AWS provide to accelerate Enterprise adoption of AWS? (Choose TWO)

  • AWS Partners.
  • AWS Artifact.
  • AWS Professional Services.
  • Amazon Athena.
  • Amazon PinPoint.

AWS recommends some practices to help organizations avoid unexpected charges on their bill. Which of the following is NOT one of these practices?

  • Deleting unused EBS volumes after terminating an EC2instance.
  • Deleting unused AutoScaling launch configuration.
  • Deleting unused Elastic Load Balancers.
  • Releasing unused Elastic IPs after terminating an EC2instance.

What is the AWS tool that can help a company visualize their AWS spending in the last few months?

  • AWS Cost Explorer.
  • AWS Pricing Calculator.
  • AWS Budgets.
  • AWS Consolidated Billing.

When running a workload in AWS, the customer is NOT responsible for: (Select TWO)

  • Running penetration tests.
  • Reserving capacity.
  • Data center operations.
  • Auditing and regulatory compliance.
  • Infrastructure security.

Which AWS service can be used to send promotional text messages (SMS) to more than 200 countries worldwide?

  • Amazon Simple Email Service (Amazon SES).
  • Amazon Simple Storage Service (Amazon S3).
  • Amazon Simple Notification Service (Amazon SNS).
  • Amazon Simple Queue Service (Amazon SQS).

Which of the following allows you to create new RDS instances? (Choose TWO)

  • AWS CodeDeploy.
  • AWS Quick Starts.
  • AWS CloudFormation.
  • AWS DMS.
  • AWS Management Console.

One of the major advantages of using AWS is cost savings. What does AWS provide to reduce the cost of running Amazon EC2 instances?

  • Low monthly instance maintenance costs.
  • Low-cost instance tagging.
  • Per-second instance billing.
  • Low instance start-up fees.

Which AWS Group assists customers in achieving their desired business outcomes?

  • AWS Security Team.
  • AWS Professional Services.
  • AWS Trusted Advisor.
  • AWS Concierge Support Team.

Which AWS service or feature is used to manage the keys used to encrypt customer data?

  • AWS KMS.
  • AWS Service Control Policies (SCPs).
  • Multi-Factor Authentication (MFA).
  • Amazon Macie.

Which AWS Service allows customers to download AWS SOC & PCI reports?

  • AWS Well-Architected Tool.
  • AWS Artifact.
  • AWS Glue.
  • Amazon Chime.

A company is using EC2 Instances to run their e-commerce site on the AWS platform. If the site becomes unavailable, the company will lose a significant amount of money for each minute the site is unavailable. Which design principle should the company use to minimize the risk of an outage?

  • Least Privilege.
  • Pilot Light.
  • Fault Tolerance.
  • Multi-threading.

You decide to buy a reserved instance for a term of one year. Which option provides the largest total discount?

  • All up-front reservation.
  • All reserved instance payment options provide the same discount level.
  • Partial up-front reservation.
  • No up-front reservation.

What features does AWS offer to help protect your data in the Cloud? (Choose TWO)

  • Access control.
  • Physical MFA devices.
  • Data encryption.
  • Unlimited storage.
  • Load balancing.

An AWS customer has used one Amazon Linux instance for 2 hours, 5 minutes and 9 seconds, and one CentOS instance for 4 hours, 23 minutes and 7 seconds. How much time will the customer be billed for?

  • 3 hours for the Linux instance and 5 hours for the CentOS instance.
  • 2 hours, 5 minutes and 9 seconds for the Linux instance and 4 hours, 23 minutes and 7 seconds for the CentOS instance.
  • 2 hours, 5 minutes and 9 seconds for the Linux instance and 5 hours for the CentOS instance.
  • 3 hours for the Linux instance and 4 hours, 23 minutes and 7 seconds for the CentOS instance.

What is the AWS Support feature that allows customers to manage support cases programmatically?

  • AWS Trusted Advisor.
  • AWS Operations Support.
  • AWS Support API.
  • AWS Personal Health Dashboard.

Which methods can be used by customers to interact with AWS Identity and Access Management (IAM)? (Choose TWO)

  • AWS CLI.
  • AWS Security Groups.
  • AWS SDKs.
  • AWS Network Access Control Lists.
  • AWS CodeCommit.

Which of the following are types of AWS Identity and Access Management (IAM) identities? (Choose TWO)

  • AWS Resource Groups.
  • IAM Policies.
  • IAM Roles.
  • IAM Users.
  • AWS Organizations.

Which of the following Amazon RDS features facilitates offloading of database read activity?

  • Database Snapshots.
  • Multi-AZ Deployments.
  • Automated Backups.
  • Read Replicas.

How does AWS notify customers about security and privacy events pertaining to AWS services?

  • Using the AWS ACM service.
  • Using Security Bulletins.
  • Using the AWS Management Console.
  • Using Compliance Resources.

Which IAM entity can best be used to grant temporary access to your AWS resources?

  • IAM Users.
  • Key Pair.
  • IAM Roles.
  • IAM Groups.

A company has a web application that is hosted on a single EC2 instance and is approaching 100 percent CPU Utilization during peak loads. Rather than scaling the server vertically, the company has decided to deploy three Amazon EC2 instances in parallel and to distribute traffic across the three servers. What AWS Service should the company use to distribute the traffic evenly?

  • AWS Global Accelerator.
  • AWS Application Load Balancer (ALB).
  • Amazon CloudFront.
  • Transit VPC.

Which of the following approaches will help you eliminate human error and automate the process of creating and updating your AWS environment?

  • Use Software test automation tools.
  • Use AWS CodeDeploy to build and automate your AWS environment.
  • Use code to provision and operate your AWS infrastructure.
  • Migrate all of your applications to a dedicated host.

A company is seeking to better secure its AWS account from unauthorized access. Which of the below options can the customer use to achieve this goal?

  • Restrict any API call made through SDKs or CLI.
  • Create one IAM account for each department in the company (Development, QA, Production), and share it across all staff in that department.
  • Require Multi-Factor Authentication (MFA) for all IAM User access.
  • Set up two login passwords.

Which AWS Service offers volume discounts based on usage?

  • Amazon VPC.
  • Amazon S3.
  • Amazon Lightsail.
  • AWS Cost Explorer.

Which of the following factors should be considered when determining the region in which AWS Resources will be deployed? (Choose TWO)

  • The AWS Region's security level.
  • Data sovereignty.
  • Cost.
  • The planned number of VPCs.
  • Geographic proximity to the company's location.

You are running a financial services web application on AWS. The application uses a MySQL database to store the data. Which of the following AWS services would improve the performance of your application by allowing you to retrieve information from fast in-memory caches?

  • Amazon EFS.
  • Amazon Neptune.
  • Amazon ElastiCache.
  • DAX.

What are the advantages of using Auto Scaling Groups for EC2 instances?

  • Auto Scaling Groups caches the most recent responses at global edge locations to reduce latency and improve performance.
  • Auto Scaling Groups scales EC2 instances in multiple Availability Zones to increase application availability and fault tolerance.
  • Auto Scaling Groups scales EC2 instances across multiple regions to reduce latency for global users.
  • Auto Scaling Groups distributes application traffic across multiple Availability Zones to enhance performance.

The TCO gap between AWS infrastructure and traditional infrastructure has widened over the recent years. Which of the following could be the reason for that?

  • AWS helps customers invest more in capital expenditures.
  • AWS automates all infrastructure operations, so customers save more on human resources costs.
  • AWS continues to lower the cost of cloud computing for its customers.
  • AWS secures AWS resources at no additional charge.

Which of the following are examples of the customer's responsibility to implement 'security IN the cloud'? (Choose TWO)

  • Building a schema for an application.
  • Replacing physical hardware.
  • Creating a new hypervisor.
  • Patch management of the underlying infrastructure.
  • File system encryption.

Which of the following is a type of MFA device that customers can use to protect their AWS resources?

  • AWS CloudHSM.
  • U2F Security Key.
  • AWS Access Keys.
  • AWS Key Pair.

A company is seeking to deploy an existing .NET application onto AWS as quickly as possible. Which AWS Service should the customer use to achieve this goal?

  • Amazon SNS.
  • AWS Elastic Beanstalk.
  • AWS Systems Manager.
  • AWS Trusted Advisor.

Which of the following is NOT a factor when estimating the costs of Amazon EC2? (Choose TWO)

  • The amount of time the instances will be running.
  • Number of security groups.
  • Allocated Elastic IP Addresses.
  • Number of Hosted Zones.
  • Number of instances.

Which AWS Service helps enterprises extend their on-premises storage to AWS in a cost-effective manner?

  • AWS Data Pipeline.
  • AWS Storage Gateway.
  • Amazon Aurora.
  • Amazon EFS.

A company is building an online cloud storage platform. They need a storage service that can scale capacity automatically, while minimizing cost. Which AWS storage service should the company use to meet these requirements?

  • Amazon Simple Storage Service.
  • Amazon Elastic Block Store.
  • Amazon Elastic Container Service.
  • AWS Storage Gateway.

You have just hired a skilled sys-admin to join your team. As usual, you have created a new IAM user for him to interact with AWS services. On his first day, you ask him to create snapshots of all existing Amazon EBS volumes and save them in a new Amazon S3 bucket. However, the new member reports back that he is unable to create neither EBS snapshots nor S3 buckets. What might prevent him from doing this simple task?

  • EBS and S3 are accessible only to the root account owner.
  • The systems administrator must contact AWS Support first to activate his new IAM account.
  • There is not enough space in S3 to store the snapshots.
  • There is a non-explicit deny to all new users.

An external auditor is requesting a log of all accesses to the AWS resources in the company's account. Which of the following services will provide the auditor with the requested information?

  • AWS CloudTrail.
  • Amazon CloudFront.
  • AWS CloudFormation.
  • Amazon CloudWatch.

Which of the below options is true of Amazon Cloud Directory?

  • Amazon Cloud Directory allows the organization of hierarchies of data across multiple dimensions.
  • Amazon Cloud Directory enables the analysis of video and data streams in real time.
  • Amazon Cloud Directory allows users to access AWS with their existing Active Directory credentials.
  • Amazon Cloud Directory allows for registration and management of domain names.

A user has opened a 'Production System Down' support case to get help from AWS Support after a production system disruption. What is the expected response time for this type of support case?

  • 12 hours.
  • 15 minutes.
  • 24 hours.
  • One hour.

Which of the below options is a best practice for making your application on AWS highly available?

  • Deploy the application to at least two Availability Zones.
  • Use Elastic Load Balancing (ELB) across multiple AWS Regions.
  • Deploy the application code on at least two servers in the same Availability Zone.
  • Rewrite the application code to handle all incoming requests.

Which of the following should be taken into account when performing a TCO analysis regarding the costs of running an application on AWS VS on-premises? (Choose TWO)

  • Labor and IT costs.
  • Cooling and power consumption.
  • Amazon EBS computing power.
  • Software architecture.
  • Software compatibility.

Your company requires a response time of less than 15 minutes from support interactions about their business-critical systems that are hosted on AWS if those systems go down. Which AWS Support Plan should this company use?

  • AWS Basic Support.
  • AWS Developer Support.
  • AWS Business Support.
  • AWS Enterprise Support.

Which of the following AWS offerings are serverless services? (Choose TWO)

  • Amazon EC2.
  • AWS Lambda.
  • Amazon DynamoDB.
  • Amazon EMR.
  • Amazon RDS.

Which AWS service enables you to quickly purchase and deploy SSL/TLS certificates?

  • Amazon GuardDuty.
  • AWS ACM.
  • Amazon Detective.
  • AWS WAF.

Which AWS Service provides integration with Chef to automate the configuration of EC2 instances?

  • AWS Config.
  • AWS OpsWorks.
  • AutoScaling.
  • AWS CloudFormation.

A customer is seeking to store objects in their AWS environment and to make those objects downloadable over the internet. Which AWS Service can be used to accomplish this?

  • Amazon EBS.
  • Amazon EFS.
  • Amazon S3.
  • Amazon Instance Store.

Which of the following services can be used to monitor the HTTP and HTTPS requests that are forwarded to Amazon CloudFront?

  • AWS WAF.
  • Amazon CloudWatch.
  • AWS Cloud9.
  • AWS CloudTrail.

A company is migrating a web application to AWS. The application's compute capacity is continually utilized throughout the year. Which of the below options offers the company the most cost-effective solution?

  • On-demand Instances.
  • Dedicated Hosts.
  • Spot Instances.
  • Reserved Instances.

A company wants to grant a new employee long-term access to manage Amazon DynamoDB databases. Which of the following is a recommended best-practice when granting these permissions?

  • Create an IAM role and attach a policy with Amazon DynamoDB access permissions.
  • Create an IAM role and attach a policy with Administrator access permissions.
  • Create an IAM user and attach a policy with Amazon DynamoDB access permissions.
  • Create an IAM user and attach a policy with Administrator access permissions.

When granting permissions to applications running on Amazon EC2 instances, which of the following is considered best practice?

  • Generate new IAM access keys every time you delegate permissions.
  • Store the required AWS credentials directly within the application code.
  • Use temporary security credentials (IAM roles) instead of long-term access keys.
  • Do nothing; Applications that run on Amazon EC2 instances do not need permission to interact with other AWS services or resources.

Which of the following will help AWS customers save on costs when migrating their workloads to AWS?

  • Use servers instead of managed services.
  • Use existing third-party software licenses on AWS.
  • Migrate production workloads to AWS edge locations instead of AWS Regions.
  • Use AWS Outposts to run all workloads in a cost-optimized environment.

An organization has a legacy application designed using monolithic-based architecture. Which AWS Service can be used to decouple the components of the application?

  • Amazon SQS.
  • Virtual Private Gateway.
  • AWS Artifact.
  • Amazon CloudFront.

Which of the following can be used to enable the Virtual Multi-Factor Authentication? (Choose TWO)

  • Amazon Connect.
  • AWS CLI.
  • AWS Identity and Access Management (IAM).
  • Amazon SNS.
  • Amazon Virtual Private Cloud.

According to best practices, which of the below options is best suited for processing a large number of binary files?

  • Vertically scaling EC2 instances.
  • Running RDS instances in parallel.
  • Vertically scaling RDS instances.
  • Running EC2 instances in parallel.

A company is planning to use Amazon S3 and Amazon CloudFront to distribute its video courses globally. What tool can the company use to estimate the costs of these services?

  • AWS Cost Explorer.
  • AWS Pricing Calculator.
  • AWS Budgets.
  • AWS Cost & Usage Report.

What should you do if you see resources, which you don't remember creating, in the AWS Management Console? (Choose TWO)

  • Stop all running services and open an investigation.
  • Give your root account password to AWS Support so that they can assistin troubleshooting and securing the account.
  • Check the AWS CloudTrail logs and delete all IAM users that have access to your resources.
  • Open an investigation and delete any potentially compromised IAM users.
  • Change your AWS root account password and the passwords of any IAM users.

A key practice when designing solutions on AWS is to minimize dependencies between components so that the failure of a single component does not impact other components. What is this practice called?

  • Elastic coupling.
  • Loosely coupling.
  • Scalable coupling.
  • Tightly coupling.

Which AWS Service offers an NFS file system that can be mounted concurrently from multiple EC2 instances?

  • Amazon Elastic File System.
  • Amazon Simple Storage Service.
  • Amazon Elastic Block Store.
  • AWS Storage Gateway.

Availability Zones within a Region are connected over low-latency links. Which of the following is a benefit of these links?

  • Create private connection to your data center.
  • Achieve global high availability.
  • Automate the process of provisioning new compute resources.
  • Make synchronous replication of your data possible.

Which of the following are true regarding the languages that are supported on AWS Lambda? (Choose TWO)

  • Lambda only supports Python and Node.js, but third party plugins are available to convert code in other languages to these formats.
  • Lambda natively supports a number of programming languages such as Node.js, Python, and Java.
  • Lambda is AWS' proprietary programming language for microservices.
  • Lambda doesn't support programming languages; it is a serverless compute service.
  • Lambda can support any programming language using an API.

What are the capabilities of AWS X-Ray? (Choose TWO)

  • Automatically decouples application components.
  • Facilitates tracking of user requests to identify application issues.
  • Helps improve application performance.
  • Deploys applications to Amazon EC2 instances.
  • Deploys applications to on-premises servers.

Which of the following is true regarding the AWS availability zones and edge locations?

  • Edge locations are located in separate Availability Zones worldwide to serve global customers.
  • An availability zone exists within an edge location to distribute content globally with low latency.
  • An Availability Zone is a geographic location where AWS provides multiple, physically separated and isolated edge locations.
  • An AWS Availability Zone is an isolated location within an AWS Region, however edge locations are located in multiple cities worldwide.

Which features are included in the AWS Business Support Plan? (Choose TWO)

  • 24x7 access to customer service.
  • Access to Cloud Support Engineers via email only during business hours.
  • Access to the Infrastructure Event Management (IEM) feature for additional fee.
  • 24x7 access to the TAM feature.
  • Partial access to the core Trusted Advisor checks.

A company is developing a mobile application and wants to allow users to use their Amazon, Apple, Facebook, or Google identities to authenticate to the application. Which AWS Service should the company use for this purpose?

  • Amazon GuardDuty.
  • Amazon Personalize.
  • Amazon Cognito.
  • AWS IAM.

Which AWS Service allows customers to create a template that programmatically defines policies and configurations of all AWS resources as code and so that the same template can be reused among multiple projects?

  • AWS CloudFormation.
  • AWS Config.
  • AWS CloudTrail.
  • AWS Auto Scaling.

Which of the following are advantages of using AWS as a cloud computing provider? (Choose TWO)

  • Eliminates the need to monitor servers and applications.
  • Manages all the compliance and auditing tasks.
  • Provides custom hardware to meet any specification.
  • Eliminates the need to guess on infrastructure capacity needs.
  • Enables customers to trade their capital expenses for operational expenses.

A customer is planning to migrate their Microsoft SQL Server databases to AWS. Which AWS Services can the customer use to run their Microsoft SQL Server database on AWS? (Choose TWO)

  • AWS Fargate.
  • Amazon Elastic Compute Cloud.
  • Amazon RDS.
  • AWS Database Migration service (DMS).
  • AWS Lambda.

Which AWS Service can perform health checks on Amazon EC2 instances?

  • AWS CloudFormation.
  • Amazon Route 53.
  • Amazon Chime.
  • Amazon Aurora.

A company is developing an application that will leverage facial recognition to automate photo tagging. Which AWS Service should the company use for facial recognition?

  • Amazon Comprehend.
  • AWS IAM.
  • Amazon Polly.
  • Amazon Rekognition.

Which of the following are examples of AWS-managed databases? (Choose TWO)

  • Amazon Neptune.
  • Amazon CloudSearch.
  • Microsoft SQL Server on Amazon EC2.
  • MySQL on Amazon EC2.
  • Amazon RDS for MySQL.

A company's AWS workflow requires that it periodically perform large-scale image and video processing jobs. The customer is seeking to minimize cost and has stated that the amount of time it takes to process these jobs is not critical, but that cost minimization is the most important factor in designing the solution. Which EC2 instance class is best suited for this processing?

  • EC2 On-Demand Instances.
  • EC2 Reserved Instances - No Upfront.
  • EC2 Spot Instances.
  • EC2 Reserved Instances - All Upfront.

There is a requirement to grant a DevOps team full administrative access to all resources in an AWS account. Who can grant them these permissions?

  • AWS account owner.
  • AWS technical account manager.
  • AWS security team.
  • AWS cloud support engineers.

You need to migrate a large number of on-premises workloads to AWS. Which AWS service is the most appropriate?

  • AWS File Transfer Acceleration.
  • AWS Server Migration Service.
  • AWS Database Migration Service.
  • AWS Application Discovery Service.

What are some key benefits of using AWS CloudFormation? (Choose TWO)

  • It helps AWS customers deploy their applications without worrying about the underlying infrastructure.
  • It applies advanced IAM security features automatically.
  • It automates the provisioning and updating of your infrastructure in a safe and controlled manner.
  • It allows you to model your entire infrastructure in just a text file.
  • It compiles and builds application code in a timely manner.

Which of the following is a cloud computing deployment model that connects infrastructure and applications between cloud-based resources and existing resources not located in the cloud?

  • On-premises.
  • Mixed.
  • Hybrid.
  • Cloud.

A company is hosting business critical workloads in an AWS Region. To protect against data loss and ensure business continuity, a mirror image of the current AWS environment should be created in another AWS Region. Company policy requires that the standby environment must be available in minutes in case of an outage in the primary AWS Region. Which AWS service can be used to meet these requirements?

  • CloudEndure Disaster Recovery.
  • CloudEndure Migration.
  • AWS Backup.
  • AWS Glue.

Which of the following S3 storage classes is most appropriate to host static assets for a popular e-commerce website with stable access patterns?

  • S3 Standard-IA.
  • S3 Intelligent-Tiering.
  • S3 Glacier Deep Archive.
  • S3 Standard.

You want to create a backup of your data in another geographical location. Where should you create this backup?

  • In another Edge location.
  • In another Region.
  • In another VPC.
  • In another Availability Zone.

Which statement is true in relation to the security of Amazon EC2?

  • You should use instance store volumes to store login data.
  • You should regularly patch the operating system and applications on your EC2 instances.
  • You should deploy critical components of your application in the Availability Zone that you trust.
  • You can track all API calls using Amazon Athena.

What does AWS Cost Explorer provide to help manage your AWS spend?

  • Cost comparisons between AWS Cloud environments and on-premises environments.
  • Accurate estimates of AWS service costs based on your expected usage.
  • Consolidated billing.
  • Highly accurate cost forecasts for up to 12 months ahead.

Which of the following is a feature of Amazon RDS that performs automatic failover when the primary database fails to respond?

  • RDS Single-AZ.
  • RDS Write Replica.
  • RDS Snapshots.
  • RDS Multi-AZ.

You are using several on-demand EC2 Instances to run your development environment. What is the best way to reduce your charges when these instances are not in use?

  • Deleting all EBS volumes attached to the instances.
  • You cannot minimize charges for on-demand instances.
  • Terminating the instances.
  • Stopping the instances.

Which of the following strategies helps protect your AWS root account?

  • Delete root user access keys if you do not need them.
  • Apply MFA for the root account and use it for all of your work.
  • Access the root account only from your personal Mobile Phone.
  • Only share your AWS account password or access keys with trusted persons.

Which of the following are factors should be considered for Amazon EBS pricing? (Choose TWO)

  • The size of volumes provisioned per month.
  • The compute capacity you consume.
  • The amount of data you have stored in snapshots.
  • The compute time you consume.
  • The number of Snowball storage devices you request.

You have just set up your AWS environment and have created six IAM user accounts for the DevOps team. What is the AWS recommendation when granting permissions to these IAM accounts?

  • Attach a separate IAM policy for each individual account.
  • Apply the Principle of Least Privilege.
  • For security purposes, you should not grant any permission to the DevOps team.
  • Create six different IAM passwords.

Which of the following has the greatest impact on cost? (Choose TWO)

  • Compute charges.
  • The number of services used.
  • Data Transfer In charges.
  • Data Transfer Out charges.
  • The number of IAM roles provisioned.

Who from the following will get the largest discount?

  • A user who chooses to buy On-demand, Convertible, Partial upfront instances.
  • A user who chooses to buy Reserved, Convertible, All upfront instances.
  • A user who chooses to buy Reserved, Standard, No upfront instances.
  • A user who chooses to buy Reserved, Standard, All upfront instances.

Which of the following is an available option when purchasing Amazon EC2 instances?

  • The ability to bid to get the lowest possible prices.
  • The ability to register EC2 instances to get volume discounts on every hour the instances are running.
  • The ability to buy Dedicated Instances for up to 90% discount.
  • The ability to pay upfront to get lower hourly costs.

What does the term 'Economies of scale' mean?

  • It means that you save more when you consume more.
  • It means as more time passes using AWS, you pay more for its services.
  • It means that AWS will continuously lower costs as it grows.
  • It means that you have the ability to pay as you go.

A company experiences fluctuations in traffic patterns to their e-commerce website when running flash sales. What service can help the company dynamically match the required compute capacity to handle spikes in traffic during flash sales?

  • AWS Auto Scaling.
  • Amazon Elastic Compute Cloud.
  • Amazon Elastic File System.
  • Amazon ElastiCache.

Which of the below options is true of Amazon VPC?

  • Amazon VPC allows customers to control user interactions with all other AWS resources.
  • AWS Customers have complete control over their Amazon VPC virtual networking environment.
  • AWS is responsible for all the management and configuration details of Amazon VPC.
  • Amazon VPC helps customers to review their AWS architecture and adopt best practices.

Which tool can a non-AWS customer use to compare the cost of on-premises environment resources to AWS?

  • AWS Cost Explorer.
  • AWS Pricing Calculator.
  • AWS Budgets.
  • AWS TCO Calculator.

Which of the following services provide real-time auditing for compliance and vulnerabilities? (Choose TWO)

  • AWS Config.
  • Amazon Redshift.
  • Amazon MQ.
  • AWS Trusted Advisor.
  • Amazon Cognito.

Which of the following AWS services uses Puppet to automate how EC2 instances are configured?

  • AWS OpsWorks.
  • AWS CloudFormation.
  • AWS Quick Starts.
  • AWS CloudTrail.

An organization uses a hybrid cloud architecture to run their business. Which AWS service enables them to deploy their applications to any AWS or on-premises server?

  • Amazon Kinesis.
  • Amazon QuickSight.
  • AWS CodeDeploy.
  • Amazon Athena.

Select the services that are server-based: (Choose TWO)

  • Amazon RDS.
  • Amazon DynamoDB.
  • AWS Lambda.
  • AWS Fargate.
  • Amazon EMR.

What best describes penetration testing?

  • Testing your application's response time from different locations.
  • Testing your network to find security vulnerabilities that an attacker could exploit.
  • Testing your instances to check for the unhealthy ones.
  • Testing your software for bugs and errors.

Which of the following are use cases for Amazon EMR? (Choose TWO)

  • Enables you to backup extremely large amounts of data at very low costs.
  • Enables you to move Exabyte-scale data from on-premises datacenters into AWS.
  • Enables you to analyze and process extremely large amounts of data in a timely manner.
  • Enables you to easily run and scale Apache Spark, Hadoop,and other Big Data frameworks.
  • Enables you to easily run and manage Docker containers.

Your CTO has asked you to contact AWS support using the chat feature to ask for guidance related to EBS. However, when you open the AWS support center you can't see a way to contact support via Chat. What should you do?

  • There is no chat feature in AWS support.
  • The chat feature is available for all plans for an additional fee, but you have to request it first.
  • At a minimum, upgrade to Business support plan.
  • Upgrade from the Basic Support plan to Developer Support.

A developer wants to quickly deploy and manage his application in the AWS Cloud, but he doesn't have any experience with cloud computing. Which of the following AWS services would help the developer achieve his goal?

  • AWS Fargate.
  • AWS Batch.
  • Amazon Personalize.
  • AWS Elastic Beanstalk.

Which statement best describes the AWS Pay-As-You-Go pricing model?

  • With AWS, you replace low upfront expenses with large variable payments.
  • With AWS, you replace low upfront expenses with large fixed payments.
  • With AWS, you replace large upfront expenses with low fixed payments.
  • With AWS, you replace large capital expenses with low variable payments.

For Amazon RDS databases, what does AWS perform on your behalf? (Choose TWO)

  • Database setup.
  • Network traffic protection.
  • Management of the operating system.
  • Access management.
  • Management of firewall rules.

Which of the following strategies help analyze costs in AWS?

  • Using tags to group resources.
  • Using AWS CloudFormation to automate the deployment of resources.
  • Deploying resources of the same type in different regions.
  • Configuring Amazon Inspector to automatically analyze costs and email reports.

A media company has an application that requires the transfer of large data sets to and from AWS every day. This data is business critical and should be transferred over a consistent connection. Which AWS service should the company use?

  • AWS Direct Connect.
  • Amazon Comprehend.
  • AWS Snowmobile.
  • AWS VPN.

What is the main benefit of the AWS Storage Gateway service?

  • It automates the process of building, maintaining, and running ETL jobs.
  • It provides physical devices to migrate data from on premises to AWS.
  • It allows integration of on-premises IT environments with Cloud Storage.
  • It provides hardware-based key storage for regulatory compliance.

To protect against data loss, you need to backup your database regularly. What is the most cost-effective storage option that provides immediate retrieval of your backups?

  • Amazon S3 Glacier Deep Archive.
  • Amazon S3 Standard-Infrequent Access.
  • Amazon S3 Glacier.
  • Instance Store.

Which service can you use to route traffic to the endpoint that provides the best application performance for your users worldwide?

  • AWS Global Accelerator.
  • AWS Data Pipeline.
  • AWS DAX Accelerator.
  • AWS Transfer Acceleration.

Why are Serverless Architectures more economical than Server-based Architectures?

  • Serverless Architectures use new powerful computing devices.
  • With the Server-based Architectures, compute resources continue to run all the time but with serverless architecture, compute resources are only used when code is being executed.
  • When you reserve serverless capacity, you will get large discounts compared to server reservation.
  • With Serverless Architectures you have the ability to scale automatically up or down as demand changes.

Which of the below options are use cases of the Amazon Route 53 service? (Choose TWO)

  • Point-to-point connectivity between an on-premises data center and AWS.
  • Detects configuration changes in the AWS environment.
  • DNS configuration and management.
  • Manages global application traffic through a variety of routing types.
  • Provides infrastructure security optimization recommendations.

You want to transfer 200 Terabytes of data from on-premises locations to the AWS Cloud, which of the following can do the job in a cost-effective way?

  • AWS Snowmobile.
  • AWS Import/Export.
  • AWS DMS.
  • AWS Snowball.

You have a real-time IoT application that requires sub-millisecond latency. Which of the following services should you use?

  • Amazon Redshift.
  • Amazon Athena.
  • AWS Cloud9.
  • Amazon ElastiCache for Redis.

Which of the following can help secure your sensitive data in Amazon S3? (Choose TWO)

  • Delete the encryption keys once your data is encrypted.
  • With AWS you do not need to worry about encryption.
  • Enable S3 Encryption.
  • Encrypt the data prior to uploading it.
  • Delete all IAM users that have access to S3.

Which AWS service helps developers compile and test their code?

  • AWS CodeDeploy.
  • AWS CodeCommit.
  • CloudEndure.
  • AWS CodeBuild.

Which of the following will affect how much you are charged for storing objects in S3? (Choose TWO)

  • Using default encryption for any number of S3 buckets.
  • The number of EBS volumes attached to your instances.
  • The storage class used for the objects stored.
  • Creating and deleting S3 buckets.
  • The total size in gigabytes of all objects stored.

What does the Amazon CloudFront service provide? (Choose TWO)

  • Tracks user activity and APl usage.
  • Increases application availability by caching at the edge.
  • Enables faster disaster recovery.
  • Stores archived data at very low costs.
  • Delivers content to end users with low latency.

You are facing a lot of problems with your current contact center. Which service provides a cloud-based contact center that can deliver a better service for your customers?

  • Amazon Lightsail.
  • Amazon Connect.
  • AWS Direct Connect.
  • AWS Elastic Beanstalk.

You have migrated your application to AWS recently. How can you view the AWS costs applied to your account?

  • Using the AWS Cost & Usage Report.
  • Using the AWS Total Cost of Ownership (TCO) dashboard.
  • Using the AWS CloudWatch logs dashboard.
  • Using the Amazon VPC dashboard.

Which of the following are valid Amazon EC2 Reserved Instance types? (Choose TWO)

  • Convertible.
  • Expedited.
  • Bulk.
  • Spot.
  • Standard.

Which of the following services gives you access to all AWS auditor-issued reports and certifications?

  • AWS Artifact.
  • AWS Config.
  • Amazon CloudWatch.
  • AWS CloudTrail.

You manage a blog on AWS that has different environments: development, testing, and production. What can you use to create a custom console for each environment to view and manage your resources easily?

  • AWS Resource Groups.
  • AWS Placement Groups.
  • AWS Management Console.
  • AWS Tag Editor.

Which AWS service collects metrics from running EC2 instances?

  • Amazon Inspector.
  • Amazon CloudWatch.
  • AWS CloudFormation.
  • AWS CloudTrail.

Your web application currently faces performance issues and suffers from long load times. Which of the following AWS services could help fix these issues and improve performance?

  • Amazon Detective.
  • AWS X-Ray.
  • AWS Security Hub.
  • AWS Shield.

Which of the following compute resources are serverless? (Choose TWO)

  • Amazon EC2.
  • AWS Fargate.
  • AWS Lambda.
  • Amazon ECS.
  • Amazon EMR.

For compliance and regulatory purposes, a government agency requires that their applications must run on hardware that is dedicated to them only. How can you meet this requirement?

  • Use EC2 Dedicated Hosts.
  • Use EC2 Reserved Instances.
  • Use EC2 Spot Instances.
  • Use EC2 On-demand Instances.

Which AWS Cost Governance best practice recommends refining workloads regularly to make the most of existing AWS resources and reduce costs?

  • Tagging Enforcement.
  • Architecture Optimization.
  • Budgeting Processes.
  • Resource Controls.

An organization needs to build a financial application that requires support for ACID transactions. Which AWS database service is most appropriate in this case?

  • RedShift.
  • RDS.
  • CloudHSM.
  • DMS.

What can you use to assign permissions directly to an IAM user?

  • IAM Identity.
  • IAM Group.
  • IAM Role.
  • IAM Policy.

The owner of an E-Commerce application notices that the compute capacity requirements vary heavily from time to time. What makes AWS more economical than traditional data centers for this type of application?

  • AWS allows customers to launch powerful EC2 instances to handle spikes in load.
  • AWS allows customers to pay upfront to get bigger discounts.
  • AWS allows customers to launch and terminate EC2 instances based on demand.
  • AWS allows customers to choose cheaper types of EC2 instances that best fit their needs.

Amazon RDS supports multiple database engines to choose from. Which of the following is not one of them?

  • PostgreSQL.
  • Oracle.
  • Microsoft SQL Server.
  • Teradata.

Which of the following AWS services would help you migrate on-premise databases to AWS?

  • AWS DMS.
  • Amazon S3 Transfer Acceleration.
  • AWS Directory Service.
  • AWS Transit Gateway.

For new AWS customers, what is the EASIEST way to launch a simple WordPress website on AWS?

  • Run WordPress on an Amazon Lightsail instance.
  • Install WordPress on an Amazon EC2 instance.
  • Use the Amazon S3 Web hosting feature.
  • Host the website directly on AWS Cloud Development Kit (AWS CDK).

Which of the following would you use to manage your encryption keys in the AWS Cloud? (Choose TWO)

  • AWS KMS.
  • AWS Certificate Manager.
  • AWS CodeDeploy.
  • AWS CodeCommit.
  • CloudHSM.

Which of the following services allows you to install and run custom relational database software?

  • Amazon EC2.
  • Amazon Cognito.
  • Amazon RDS.
  • Amazon Inspector.

Your application requirements for CPU and RAM are changing in an unpredictable way. Which service can be used to dynamically adjust these resources based on load?

  • Auto Scaling.
  • ELB.
  • Amazon Route53.
  • Amazon Elastic Container Service.

A company has infrastructure hosted in an on-premises data center. They currently have an operations team that takes care of identity management. If they decide to migrate to the AWS cloud, which of the following services would help them perform the same role in AWS?

  • AWS IAM.
  • AWS Outposts.
  • AWS Federation.
  • Amazon Redshift.

What are some key design principles for designing public cloud systems? (Choose TWO)

  • Reserved capacity instead of on demand.
  • Loose coupling over tight coupling.
  • Servers instead of managed services.
  • Disposable resources instead of fixed servers.
  • Multi-AZ deployments instead of multi-region deployments.

Where can AWS account owners get a list of all users in their account, including the status of their AWS credentials?

  • AWS CloudTrail Trails.
  • IAM Credential Report.
  • AWS Artifact reports.
  • AWS Cost and Usage Report.

Which of the following services enables you to easily generate and use your own encryption keys in the AWS Cloud?

  • AWS Shield.
  • AWS Certificate Manager.
  • AWS CloudHSM.
  • AWS WAF.

You have developed a web application targeting a global audience. Which of the following will help you achieve the highest redundancy and fault tolerance from an infrastructure perspective?

  • There is no need to architect for these capabilities in AWS, as AWS is redundant by default.
  • Deploy the application in a single Availability Zone.
  • Deploy the application in multiple Availability Zones in a single AWS region.
  • Deploy the application in multiple Availability Zones in multiple AWS regions.

For some services, AWS automatically replicates data across multiple Availability Zones to provide fault tolerance in the event of a server failure or Availability Zone outage. Select TWO services that automatically replicate data across Availability Zones.

  • Instance Store.
  • S3.
  • DynamoDB.
  • Amazon Route 53.
  • AWS VPN.

Which of the following factors affect Amazon CloudFront cost? (Choose TWO)

  • Number of Requests.
  • Traffic Distribution.
  • Number of Volumes.
  • Instance type.
  • Storage Class.

Which of the following resources can an AWS customer use to learn more about prohibited uses of the services offered by AWS?

  • AWS Service Control Policies (SCPs).
  • AWS Artifact.
  • AWS Budgets.
  • AWS Acceptable Use Policy.

Which of the following security resources are available to any user for free? (Choose TWO)

  • AWS Bulletins.
  • AWS TAM.
  • AWS Support APl.
  • AWS Security Blog.
  • AWS Classroom Training.

How can you protect data stored on Amazon S3 from accidental deletion?

  • By enabling S3 Versioning.
  • By configuring S3 Bucket Policies.
  • By configuring S3 Lifecycle Policies.
  • By disabling S3 Cross-Region Replication (CRR).

Which of the following is the responsibility of AWS according to the AWS Shared Responsibility Model?

  • Securing regions and edge locations.
  • Performing auditing tasks.
  • Monitoring AWS resources usage.
  • Securing access to AWS resources.

Which of the following AWS support plans provides access to only the seven core AWS Trusted Advisor checks?

  • Business & Enterprise Support.
  • Basic & Developer Support.
  • Developer & Enterprise Support.
  • Developer & Business Support.

Which of the following is NOT a benefit of using AWS Lambda?

  • AWS Lambda runs code without provisioning or managing servers.
  • AWS Lambda provides resizable compute capacity in the cloud.
  • There is no charge when your AWS Lambda code is not running.
  • AWS Lambda can be called directly from any mobile app.

How does AWS help customers achieve compliance in the cloud?

  • It's not possible to meet regulatory compliance requirements in the Cloud.
  • AWS applies the most common Cloud security standards, and is responsible for complying with customers' applicable laws and regulations.
  • AWS has many common assurance certifications such as ISO 9001 and HIPAA.
  • Many AWS services are assessed regularly to comply with local laws and regulations.

Who is responsible for scaling a DynamoDB database in the AWS Shared Responsibility Model?

  • Your security team.
  • Your development team.
  • AWS.
  • Your internal DevOps team.

You are working as a web app developer. You are currently facing issues in media playback for mobile devices because your media format is not supported. Which of the following AWS services can help you convert your media into another format?

  • Amazon Elastic Transcoder.
  • Amazon Pinpoint.
  • AmazonS3.
  • Amazon Rekognition.

What are the benefits of the AWS Organizations service? (Choose TWO)

  • Control access to AWS services.
  • Help organizations design and maintain an accelerated path to successful cloud adoption.
  • Manage your organization's payment methods.
  • Help organization achieve their desired business outcomes with AWS.
  • Consolidate billing across multiple AWS accounts.

Which AWS service allows you to build a data warehouse in the cloud?

  • AWS Shield.
  • Amazon Redshift.
  • Amazon RDS.
  • Amazon Comprehend.

What AWS service allows you to buy third-party software solutions and services that run on AWS resources?

  • AWS Application Discovery service.
  • Amazon DevPay.
  • AWS Marketplace.
  • Resource Groups.

Which of the following services is an AWS repository management system that allows for storing, versioning, and managing your application code?

  • AWS CodePipeline.
  • AWS CodeCommit.
  • AWS X-Ray.
  • Amazon Inspector.

Which AWS service can be used to route end users to the nearest AWS Region to reduce latency?

  • Amazon Cognito.
  • AWS Systems Manager.
  • AWS Cloud9.
  • Amazon Route 53.

Which feature enables users to sign into their AWS accounts with their existing corporate credentials?

  • Federation.
  • Access keys.
  • IAM Permissions.
  • WAF rules.

According to the AWS shared responsibility model, what are the controls that customers fully inherit from AWS? (Choose TWO)

  • Awareness and Training.
  • Communications controls.
  • Data center security controls.
  • Environmental controls.
  • Resource Configuration Management.

What can you access by visiting the URL: http://status.aws.amazon.com?

  • AWS Billing Dashboard.
  • AWS Cost Dashboard.
  • AWS Service Health Dashboard.
  • AWS Security Dashboard.

Which of the following procedures can reduce latency when your end users are retrieving data? (Choose TWO)

  • Store media assets in the region closest to your end users.
  • Store media assets on an additional EBS volume and increase the capacity of your server.
  • Replicate media assets to at least two availability zones.
  • Reduce the size of media assets using the Amazon Elastic Transcoder.
  • Store media assets in $3 and use CloudFront to distribute these assets.

Which of the following are part of the seven design principles for security in the cloud? (Choose TWO)

  • Use manual monitoring techniques to protect your AWS resources.
  • Use IAM roles to grant temporary access instead of long-term credentials.
  • Scale horizontally to protect from failures.
  • Enable real-time traceability.
  • Never store sensitive data in the cloud.

A company is migrating production workloads to AWS, and they are concerned about cost management across different departments. Which option should the company implement to categorize and track AWS spending?

  • Use the AWS Pricing Calculator service to monitor the costs incurred by each department.
  • Use Amazon Aurora to forecast AWS spending based on usage.
  • Apply cost allocation tags to segment AWS costs by different e projects and departments.
  • Configure AWS Price List API to receive billing updates for each department automatically.

What is the main benefit of attaching security groups to an Amazon RDS instance?

  • Manages user access and encryption keys.
  • Controls what IP address ranges can connect to your database instance.
  • Deploys SSL/TLS certificates for use with your database instance.
  • Distributes incoming traffic across multiple targets.

A company wants to use Amazon Elastic Container Service (Amazon ECS) to run its containerized applications. For compliance reasons, the company wants to retain complete visibility and control over the underlying server cluster. Which Amazon ECS launch type will satisfy these requirements?

  • EC2 launch type.
  • Fargate launch type.
  • Lightsail launch type.
  • Lambda launch type.

You have multiple standalone AWS accounts and you want to decrease your AWS monthly charges. What should you do?

  • Try to remove unnecessary AWS accounts.
  • Add the accounts to an AWS Organization and use Consolidated Billing.
  • Track the AWS charges that are incurred by the member accounts.
  • Enable AWS tiered-pricing before provisioning resources.

You have been tasked with auditing the security of your VPC. As part of this process, you need to start by analyzing what inbound and outbound traffic is allowed on your EC2 instances. What two parts of the VPC do you need to check to accomplish this task?

  • Network ACLs and Traffic Manager.
  • Network ACLs and Subnets.
  • Security Groups and Internet Gateways.
  • Security Groups and Network ACLs.

What does the AWS 'Business' support plan provide? (Choose TWO)

  • Access to the full set of Trusted Advisor checks.
  • Support Concierge Service.
  • Less than 15 minutes response-time support if your business critical system goes down.
  • AWS Support API.
  • Proactive Technical Account Management.

You have just finished writing your application code. Which service can be used to automate the deployment and scaling of your application?

  • Amazon Simple Storage Service.
  • AWS Elastic Beanstalk.
  • AWS CodeCommit.
  • Amazon Elastic File System.

Which statement is true in relation to security in AWS?

  • AWS manages everything related to EC2 operating systems.
  • AWS customers are responsible for patching any database software running on Amazon EC2.
  • Server side encryption is the responsibility of AWS.
  • AWS is responsible for the security of your application.

Amazon EC2 instances are conceptually very similar to traditional servers. However, using Amazon EC2 server instances in the same manner as traditional hardware server instances is only a starting point. What are the main benefits of using the AWS EC2 instances instead of traditional servers? (Choose TWO)

  • Improves Fault-Tolerance.
  • Provides your business with a seamless remote accessibility.
  • Prevents unauthorized users from getting into your network.
  • Provides automatic data backups.
  • Can be scaled manually in a shorter period of time.

Which statement is true regarding AWS pricing? (Choose TWO)

  • With the AWS pay-as-you-go pricing model, you don't have to pay any upfront fee.
  • You have no responsibility for third-party software license costs.
  • You only pay for the individual services that you need with no long-term contracts.
  • For some services, you have to pay a startup fee in order to get the service running.
  • There are no reservations on AWS, you only pay for what you use.

Which AWS service provides the EASIEST way to set up and manage a secure, well-architected, multi-account AWS environment?

  • AWS Control Tower.
  • Amazon Macie.
  • AWS Systems Manager Patch Manager.
  • AWS Systems Manager Patch Manager AWS Security Hub.

A company is running a large web application that needs to always be available. The application tends to slow down when CPU usage is greater than 60%. How can they track when CPU usage goes above 60% for any of the EC2 Instances in their account?

  • Use CloudFront to monitor the CPU usage.
  • Set the AWS Config CPU threshold to 60% to receive a notification when EC2 usage exceeds that value.
  • Use CloudWatch Alarms to monitor the CPUand alert when the CPU usage is >= 60%.
  • Use SNS to menitor the utilization of the server.

What is the recommended storage option when hosting an often-changing database on an Amazon EC2 instance?

  • Amazon EBS.
  • Amazon RDS.
  • You can't run a database inside an Amazon EC2 instance.
  • Amazon DynamoDB.

You are working as a site reliability engineer (SRE) in an AWS environment, which of the following services helps monitor your applications?

  • Amazon CloudWatch.
  • Amazon CloudSearch.
  • Amazon Elastic MapReduce.
  • Amazon CloudHSM.

What factors determine how you are charged when using AWS Lambda? (Choose TWO)

  • Storage consumed.
  • Number of requests to your functions.
  • Number of volumes.
  • Placement groups.
  • Compute time consumed.

What are the main differences between an IAM user and an IAM role in AWS? (Choose TWO)

  • An IAM user is uniquely associated with only one person, however a role is intended to be assumable by anyone who needs it.
  • An IAM user has permanent credentials associated with it, however a role has temporary credentials associated with it.
  • IAM users are more cost effective than IAM roles.
  • Arole is uniquely associated with only one person, however an IAM user is intended to be assumable by anyone who needs it.
  • An IAM user has temporary credentials associated withit, however a role has permanent credentials associated with it.

Which of the following actions may reduce Amazon EBS costs? (Choose TWO)

  • Deleting unused buckets.
  • Using reservations.
  • Deleting unnecessary snapshots.
  • Changing the type of the volume.
  • Distributing requests to multiple volumes.

What does Amazon GuardDuty do to protect AWS accounts and workloads?

  • Notifies AWS customers about abuse events once they are reported.
  • Continuously monitors AWS infrastructure and helps detect threats such as attacker reconnaissance or account compromise.
  • Helps AWS customers identify the root cause of potential security issues.
  • Checks security groups for rules that allow unrestricted access to AWS. resources.

Which database service should you use if your application and data schema require 'joins' or complex transactions?

  • Amazon RDS.
  • AWS Outposts.
  • Amazon DocumentDB.
  • Amazon DynameDB.

Which of the following makes it easier for you to categorize, manage and filter your resources?

  • Amazon CloudWatch.
  • AWS Service Catalog.
  • AWS Directory Service.
  • AWS Tagging.

What should you consider when storing data in Amazon Glacier?

  • Amazon Glacier only accepts data in a compressed format.
  • Glacier can only be used to store frequently accessed data and data archives.
  • Amazon Glacier does not provide immediate retrieval of data.
  • Attach Glacier to an EC2 Instance to be able to store data.

Engineers are wasting a lot of time and effort managing batch computing software in traditional data centers. Which of the following AWS services allows them to easily run thousands of batch computing jobs?

  • Amazon EC2.
  • AWS Batch.
  • Lambda@Edge.
  • AWS Fargate.

How can you increase your application's fault-tolerance while it is being hosted in AWS?

  • Deploy your application across multiple EC2 instances.
  • Deploy your application across multiple Availability Zones.
  • Host your application on one powerful EC2 instance type instead of multiple smaller instances.
  • Deploy the underlying application resources across multiple subnets.

Which of the following AWS Support Plans gives you 24/7 access to Cloud Support Engineers via email & phone? (Choose TWO)

  • Developer.
  • Premium.
  • Enterprise.
  • Standard.
  • Business.

Which of the following requires an access key ID and a secret access key to get long-lived programmatic access to AWS resources? (Choose TWO)

  • IAM group.
  • IAM user.
  • IAM role.
  • AWS account root user.
  • TAM.

Which of the following is a benefit of the 'Loose Coupling' architecture principle?

  • It eliminates the need for change management.
  • It allows for Cross-Region Replication.
  • It helps AWS customers reduce Privileged Access to AWS resources.
  • It allows individual application components or services to be modified without affecting other components.

A company needs to host a big data application on AWS using EC2 instances. Which of the following AWS Storage services would they choose to automatically get high throughput to multiple compute nodes?

  • Amazon Elastic Block Store.
  • AWS Storage Gateway.
  • Amazon Elastic File System.
  • S3.

Which of the following Cloud Computing deployment models eliminates the need to run and maintain physical data centers?

  • On-premises.
  • IaaS.
  • PaaS.
  • Cloud.

What are the benefits of the AWS Marketplace service? (Choose TWO)

  • Protects customers by performing periodic security checks on listed products.
  • Per-second billing.
  • Provides cheaper options for purchasing Amazon EC2 on-demand instances.
  • Provides flexible pricing options that suit most customer needs.
  • Provides software solutions that run on AWS or any other Cloud vendor.

What is the benefit of Amazon EBS volumes being automatically replicated within the same availability zone?

  • Elasticity.
  • Durability.
  • Traceability.
  • Accessibility.

You are planning to launch an advertising campaign over the coming weekend to promote a new digital product. It is expected that there will be heavy spikes in load during the campaign period, and you can't afford any downtime. You need additional compute resources to handle the additional load. What is the most cost-effective EC2 instance purchasing option for this job?

  • Savings Plans.
  • Spot Instances.
  • Reserved Instances.
  • On-Demand Instances.

Which of the following AWS services integrates with AWS Shield and AWS Web Application Firewall (AWS WAF) to protect against network and application layer DDoS attacks?

  • Amazon EFS.
  • AWS Secrets Manager.
  • AWS Systems Manager.
  • Amazon CloudFront.

Which of the following services is used when encrypting EBS volumes?

  • AWS WAF.
  • AWS KMS.
  • Amazon Macie.
  • Amazon GuardDuty.

The AWS account administrator of your company has been fired. With the permissions granted to him as an administrator, he was able to create multiple IAM user accounts and access keys. Additionally, you are not sure whether he has access to the AWS root account or not. What should you do immediately to protect your AWS infrastructure? (Choose TWO)

  • Download all the attached policies in a safe place.
  • Delete all IAM accounts and recreate them.
  • Use the CloudWatch service to check all API calls that have been made in your account since the administrator was fired.
  • Rotate all access keys.
  • Change the email address and password of the root user account and enable MFA.

What is the Amazon ElastiCache service used for? (Choose TWO)

  • Provide an in-memory data storage service.
  • Reduce delivery costs using Edge Locations.
  • Improve web application performance.
  • Provide a Chef-compatible cache to speed up application response.
  • Distribute requests to multiple instances.

The elasticity of the AWS Cloud enables customers to save costs when compared to traditional hosting providers. What can AWS customers do to benefit from the elasticity of the AWS Cloud? (Choose TWO)

  • Deploy your resources across multiple Availability Zones.
  • Use Amazon EC2 Auto Scaling.
  • Deploy your resources in another region.
  • Use Elastic Load Balancing.
  • Use Serverless Computing whenever possible.

What are some of the benefits of using On-Demand EC2 instances? (Choose TWO)

  • They provide free capacity when testing your new applications.
  • They are cheaper than all other EC2 options.
  • They remove the need to buy 'safety net' capacity to handle periodic traffic spikes.
  • They only require 1-2 days for setup and configuration.
  • You can increase or decrease your compute capacity depending on the demands of your application.

Each AWS Region is composed of multiple Availability Zones. Which of the following best describes what an Availability Zone is?

  • It is a data center designed to be completely isolated from other data centers in the same region.
  • It is a collection of data centers distributed in multiple countries.
  • It is a logically isolated network of the AWS Cloud.
  • It is a distinct location within a region that is insulated from « failures in other Availability Zones.

AWS provides disaster recovery capability by allowing customers to deploy infrastructure into multiple [...].

  • Regions.
  • Transportation devices.
  • Support plans.
  • Edge locations.

A financial services company decides to migrate one of its applications to AWS. The application deals with sensitive data, such as credit card information, and must run on a PCI-compliant environment. Which of the following is the company's responsibility when building a PCI-compliant environment in AWS? (Choose TWO)

  • Start the migration process immediately as all AWS services are PCI compliant.
  • Ensure that AWS services are configured properly to meet all PCI DSS standards.
  • Restrict any access to cardholder data and create a policy that addresses information security for all personnel.
  • Configure the underlying infrastructure of AWS services to meet all PCI DSS requirements.
  • Ensure that all PCI DSS physical security requirements are met.

What is the maximum amount of data that can be stored in S3 in a single AWS account?

  • 100 PetaBytes.
  • Virtually unlimited storage.
  • 5TeraBytes.
  • 10 Exabytes.

Which pillar of the AWS Well-Architected Framework provides recommendations to help customers select the right compute resources based on workload requirements?

  • Operational Excellence.
  • Security.
  • Performance Efficiency.
  • Reliability.

Which AWS service delivers data, videos, applications, and APIs to users globally with low latency and high transfer speeds?

  • Amazon Route 53.
  • Amazon Connect.
  • Amazon CloudFront.
  • Amazon EC2.

Which of the following steps should be taken by a customer when conducting penetration testing on AWS?

  • Conduct penetration testing using Amazon Inspector, and then notify AWS support.
  • Request and wait for approval from the customer's internal security team, and then conduct testing.
  • Notify AWS support, and then conduct testing immediately.
  • Request and wait for approval from AWS support, and then conduct testing.

Which AWS Cost Management tool allows you to view the most granular data about your AWS bill?

  • AWS Cost Explorer.
  • AWS Budgets.
  • AWS Cost and Usage report.
  • AWS Billing dashboard.

Which element of the AWS global infrastructure consists of one or more discrete data centers each with redundant power networking and connectivity which are housed in separate facilities?

  • AWS Regions.
  • Availability Zones.
  • Edge locations.
  • Amazon CloudFront.

How many Availability Zones should compute resources be provisioned across to achieve high availability?

  • A minimum of one.
  • A minimum of two.
  • A minimum of three.
  • A minimum of four or more.

The AWS Cloud's multiple Regions are an example of:

  • Agility.
  • Global infrastructure.
  • Elasticity.
  • Pay-as-you-go pricing.

Which AWS service can be used to manually launch instances based on resource requirements?

  • Amazon EBS.
  • Amazon S3.
  • Amazon EC2.
  • Amazon ECS.

Which is a recommended pattern for designing a highly available architecture on AWS?

  • Ensure that components have low-latency network connectivity.
  • Run enough Amazon EC2 instances to operate at peak load.
  • Ensure that the application is designed to accommodate failure of any single component.
  • Use a monolithic application that handles all operations.

Which AWS characteristics make AWS cost effective for a workload with dynamic user demand? (Select TWO)

  • High availability.
  • Shared security model.
  • Elasticity.
  • Pay-as-you-go pricing.
  • Reliability.

An administrator needs to rapidly deploy a popular IT solution and start using it immediately. Where can the administrator find assistance?

  • AWS Well-Architected Framework documentation.
  • Amazon CloudFront.
  • AWS CodeCommit.
  • AWS Quick Start reference deployments.

What is one of the advantages of the Amazon Relational Database Service (Amazon RDS)?

  • It simplifies relational database administration tasks.
  • It provides 99.99999999999% reliability and durability.
  • It automatically scales databases for loads.
  • It enabled users to dynamically adjust CPU and RAM resources.

Which of the following AWS Cloud services can be used to run a customer-managed relational database?

  • Amazon EC2.
  • Amazon Route 53.
  • Amazon ElastiCache.
  • Amazon DynamoDB.

A user is planning to launch two additional Amazon EC2 instances to increase availability. Which action should the user take?

  • Launch the instances across multiple Availability Zones in a single AWS Region.
  • Launch the instances as EC2 Reserved Instances in the same AWS Region and the same Availability Zone.
  • Launch the instances in multiple AWS Regions but in the same Availability Zone.
  • Launch the instances as EC2 Spot Instances in the same AWS Region but in different Availability Zones.

Which of the following can limit Amazon Storage Service (Amazon S3) bucket access to specific users?

  • A public and private key-pair.
  • Amazon Inspector.
  • AWS Identity and Access Management (IAM) policies.
  • Security Groups.

Which AWS service allows companies to connect an Amazon VPC to an on-premises data center?

  • AWS VPN.
  • Amazon Redshift.
  • API Gateway.
  • Amazon Direct Connect.

Which AWS service of feature can be used to monitor CPU usage?

  • AWS CloudTrail.
  • VPC Flow Logs.
  • Amazon CloudWatch.
  • AWSConfig.

Which task is AWS responsible for in the shared responsibility model for security and compliance?

  • Granting access to individuals and services.
  • Encrypting data in transit.
  • Updating Amazon EC2 host firmware.
  • Updating operating systems.

Which of the following security-related actions are available at no cost?

  • Calling AWS Support.
  • Contacting AWS Professional Services to request a workshop.
  • Accessing forums, blogs, and whitepapers.
  • Attending AWS classes at a local university.

Which storage service can be used as a low-cost option for hosting static websites?

  • Amazon Glacier.
  • Amazon DynamoDB.
  • Amazon Elastic File System (Amazon EFS).
  • Amazon Simple Storage Service (Amazon S3).

According to the AWS shared responsibility model what is the sole responsibility of AWS?

  • Application security.
  • Edge location management.
  • Patch management.
  • Client-side data.

Which of the following are pillars of the AWS Well-Architected Framework? (Select TWO)

  • Multiple Availability Zones.
  • Performance efficiency.
  • Security.
  • Encryption usage.
  • High availability.

Which AWS service identifies security groups that allow unrestricted access to a user's AWS resources?

  • AWS Trusted Advisor.
  • Amazon Inspector.
  • Amazon CloudWatch.
  • AWS CloudTrail.

Which design principles for cloud architecture are recommended when re-architecting a large monolithic application? (Select TWO)

  • Use manual monitoring.
  • Use fixed servers.
  • Implement loose coupling.
  • Rely on individual components.
  • Design for scalability.

When architecting cloud applications, which of the following are a key design principle?

  • Use the largest instance possible.
  • Provision capacity for peak load.
  • Use the Scrum development process.
  • Implement elasticity.

A company has deployed several relational databases on Amazon EC2 instances Every month the database software vendor releases new security patches that need to be applied to the databases. What is the MOST efficient way to apply the security patches?

  • Connect to each database instance on a monthly basis and download and apply the necessary security patches from the vendor.
  • Enable automate patching for the instances using the Amazon RDS console.
  • In AWS Config. configure a rule for the instances and the required patch level.
  • Use AWS Systems Manager to automate database patching according to a schedule.

Which mechanism allows developers to access AWS sendees from application code?

  • AWS Software Development Kit.
  • AWS Management Console.
  • AWS CodePipeline.
  • AWS Config.

Which AWS feature will reduce the customer's total cost of ownership (TCO)?

  • Shared responsibility security model.
  • Single tenancy.
  • Elastic computing.
  • Encryption.

Which of the following is a benefit of using the AWS Cloud?

  • Permissive security removes the administrative burden.
  • Ability to focus on revenue-generating activities.
  • Control over cloud network hardware.
  • Choice of specific cloud hardware vendors.

Which of the following are categories of AWS Trusted Advisor? (Select TWO)

  • Fault Tolerance.
  • Instance Usage.
  • Infrastructure.
  • Performance.
  • Storage Capacity.

What is Amazon CloudWatch?

  • A code repository with customizable build and team commit features.
  • A metrics repository with customizable notification thresholds and channels.
  • A security configuration repository with threat analytics.
  • A rule repository of a web application firewall with automated vulnerability prevention features.

Under the AWS shared responsibility model, which of the following activities are the customer's responsibility? (Select TWO)

  • Patching operating system components for Amazon Relational Database Server (Amazon RDS).
  • Encrypting data on the client-side.
  • Training the data center staff.
  • Configuring Network Access Control Lists (ACL).
  • Maintaining environmental controls within a data center.

Under the shared responsibility model, which of the following is a shared control between a customer and AWS?

  • Physical controls.
  • Patch management.
  • Zone security.
  • Data center auditing.

Which AWS service is used to pay AWS bills, and monitor usage and budget costs?

  • AWS Billing and Cost Management.
  • Consolidated billing.
  • Amazon CloudWatch.
  • Amazon GuickStght.

How do customers benefit from Amazon's massive economies of scale?

  • Periodic price reductions as the result of Amazon's operational efficiencies.
  • New Amazon EC2 instance types providing the latest hardware.
  • The ability to scale up and down when needed.
  • Increased reliability in the underlying hardware of Amazon EC2 instances.

Which AWS feature allows a company to take advantage of usage tiers for services across multiple member accounts?

  • Service control policies (SCPs).
  • Consolidated billing.
  • All Upfront Reserved Instances.
  • AWS Cost Explorer.

Which AWS services provide a way to extend an on-premises architecture to the aws cloud? (Select TWO)

  • Amazon EBS.
  • Amazon Connect.
  • AWS Storage Gateway AWS CLOUD PRACTITIONER DUMPS.
  • Amazon CloudFront.
  • AWS Direct Connect.

Which of the following services will automatically scale with an expected increase in web traffic?

  • AWS CodePipeline.
  • Elastic Load Balancing.
  • Amazon EBS.
  • AWS Direct Connect.

Which service provides a virtually unlimited amount of online highly durable object storage?

  • Amazon Redshift.
  • Amazon Elastic File System (Amazon EFS).
  • Amazon Elastic Container Service (Amazon ECS).
  • Amazon S3.

Which AWS feature should a customer leverage to achieve high availability of an application?

  • AWS Direct Connect.
  • Availability Zones.
  • Data centers.
  • Amazon Virtual Private Cloud (Amazon VPC).

Which AWS service or feature can enhance network security by blocking requests from a particular network for a web application on AWS? (Select TWO)

  • AWS WAF.
  • AWS Trusted Advisor.
  • AWS Direct Connect.
  • AWS Organizations.
  • Network ACLs.

Which of the following is a cloud architectural design principle?

  • Scale up not out.
  • Loosely couple components.
  • Build monolithic systems.
  • Use commercial database software.

Which service enables risk auditing by continuously monitoring and logging account activity, including user actions in the AWS Management Console and AWS SDKs?

  • Amazon CloudWatch.
  • AWS CloudTrail.
  • AWS Config.
  • AWS Health.

Where can AWS compliance and certification reports be downloaded?

  • AWS Artifact.
  • AWS Concierge.
  • AWS Certificate Manager.
  • AWS Trusted Advisor.

The financial benefits of using AWS are: (Select TWO)

  • Reduced Total Cost of Ownership (TCO).
  • Increased capital expenditure (capex).
  • Reduced operational expenditure ( opex ).
  • Deferred payment plans for startups.
  • Business credit lines for startups.

Which AWS service can serve a static website?

  • Amazon S3.
  • Amazon Route 53.
  • Amazon QuickSight.
  • AWS X-Ray.

What are the benefits of using the AWS Cloud for companies with customers in many countries around the world (Select TWO)

  • Companies can deploy applications in multiple AWS Regions to reduce latency.
  • Amazon Translate automatically translates third-party website interfaces into multiple languages.
  • Amazon CloudFront has multiple edge locations around the world to reduce latency.
  • Amazon Comprehend allows users to build applications that can respond to user requests in many languages.
  • Elastic Load Balancing can distribute application web traffic to multiple AWS Regions around the world which reduces latency.

Which of the following are main components of the AWS global infrastructure? (Select TWO)

  • Resource groups.
  • Availability Zones.
  • Security groups.
  • Regions.
  • Amazon Machine Images (AMIS).

What is the AWS customer responsible for according to the AWS shared responsibility model?

  • Physical access controls.
  • Data encryption.
  • Secure disposal of storage devices.
  • Environmental risk management.

If each department within a company has its own AWS account, what is one way to enable consolidated billing?

  • Use AWS Budgets on each account to pay only to budget.
  • Contact AWS Support for a monthly bill.
  • Create an AWS Organization from the payer account and invite the other accounts to join.
  • Put all invoices into one Amazon Simple Storage Service (Amazon S3) bucket, load data into Amazon Redshift, and then run a billing report.

What costs are included when comparing AWS Total Cost of Ownership (TCO) with on-premises TCO?

  • Project management.
  • Antivirus software licensing.
  • Data center security.
  • Software development.

What is the benefit of using AWS managed services, such as Amazon ElastiCache and Amazon Relational Database Service (Amazon RDS)?

  • They require the customer to monitor and replace failing instances.
  • They have better performance than customer-managed services.
  • They simplify patching and updating underlying OSs.
  • They do not require the customer to optimize instance type or size selections.

Which services can be used across hybrid AWS Cloud architectures? (Select TWO)

  • Amazon Route 53.
  • Virtual Private Gateway.
  • Classic Load Balancer.
  • Auto Scaling.
  • Amazon CloudWatch default metrics.

Which statement best describes Elastic Load Balancing?

  • It translates a domain name into an IP address using DNC.
  • It distributes incoming application traffic across one or more Amazon EC2 instances.
  • It collects metrics on connected Amazon EC2 instances.
  • It automatically adjusts the number of Amazon EC2 instances to support incoming traffic.

Which of the following is a fast and reliable NoSQL database service?

  • Amazon Redshift.
  • Amazon RDS.
  • Amazon DynamoDB.
  • Amazon S3.

Which AWS service would you use to obtain compliance reports and certificates?

  • AWS Artifact.
  • AWS Lambda.
  • Amazon Inspector.
  • AWS Certificate Manager.

Which AWS services are defined as global instead of regional? (Select TWO)

  • Amazon Route 53.
  • Amazon EC2.
  • Amazon S3.
  • Amazon CloudFront.
  • Amazon DynamoDB.

How would an AWS customer easily apply common access controls to a large set of users?

  • Apply an IAM policy to an IAM group.
  • Apply an IAM policy to an IAM role.
  • Apply the same IAM policy to all IAM users with access to the same workload.
  • Apply an IAM policy to an Amazon Cognito user pool.

Which of the following is an important architectural design principle when designing cloud applications?

  • Use multiple Availability Zones.
  • Use tightly coupled components.
  • Use open source software.
  • Provision extra capacity.

Which service allows a company with multiple AWS accounts to combine its usage to obtain volume discounts?

  • AWS Server Migration Service.
  • AWS Organizations.
  • AWS Budgets.
  • AWS Trusted Advisor.

Which of the following can an AWS customer use to launch a new Amazon Relational Database Service (Amazon RDS) cluster? (Select TWO)

  • AWS Concierge.
  • AWS CloudFormation.
  • Amazon Simple Storage Service (Amazon S3).
  • Amazon EC2 Auto Scaling.
  • AWS Management Console.

Which of the following Reserved Instance (RI) pricing models provides the highest average savings compared to On-Demand pricing?

  • One-year, No Upfront, Standard RI pricing.
  • One-year, All Upfront, Convertible RI pricing.
  • Three-year, All Upfront, Standard RI pricing.
  • Three-year, No Upfront, Convertible RI pricing.

Which of the following are features of Amazon CloudWatch Logs? (Select TWO)

  • Summaries by Amazon Simple Notification Service (Amazon SNS).
  • Free Amazon Elasticsearch Service analytics.
  • Provided at no charge.
  • Real-time monitoring.
  • Adjustable retention.

Which of the following is an AWS-managed compute service?

  • Amazon SWF.
  • Amazon EC2.
  • AWS Lambda.
  • Amazon Aurora.

A company wants to reduce the physical compute footprint that developers use to run code. Which service would meet that need by enabling serverless architectures?

  • Amazon Elastic Compute Cloud (Amazon EC2).
  • AWS Lambda.
  • Amazon DynamoDB.
  • AWS CodeCommit.

Which of the following is the customer's responsibility under the AWS shared responsibility model?

  • Patching underlying infrastructure
  • Physical security
  • Patching Amazon EC2 instances
  • Patching network infrastructure

According to the AWS shared responsibility model who is responsible for configuration management?

  • It is solely the responsibility of the customer.
  • It is solely the responsibility of AWS.
  • It is shared between AWS and the customer.
  • It is not part of the AWS shared responsibility model.

Which security service automatically recognizes and classifies sensitive data or intellectual property on AWS?

  • Amazon GuardDuty.
  • Amazon Macie.
  • Amazon Inspector.
  • AWS Shield.

Which of the following BEST describe the AWS pricing model? (Select TWO)

  • Fixed-term.
  • Pay-as-you-go.
  • Colocation.
  • Planned.
  • Variable cost.

Under the shared responsibility model, which of the following tasks are the responsibility of the AWS customer? (Select TWO)

  • Ensuring that application data is encrypted at rest.
  • Ensuring that AWS NTP servers are set to the correct time.
  • Ensuring that users have received security training in the use of AWS services.
  • Ensuring that access to data centers is restricted.
  • Ensuring that hardware is disposed of properly.

A customer is using multiple AWS accounts with separate billing. How can the customer take advantage of volume discounts with minimal impact to the AWS resources?

  • Create one global AWS account and move all AWS resources to tha account.
  • Sign up for three years of Reserved Instance pricing up front.
  • Use the consolidated billing feature from AWS Organizations.
  • Sign up for the AWS Enterprise support plan to get volume discounts.

Which Amazon EC2 pricing model offers the MOST significant discount when compared to OnDemand Instances?

  • A Partial Upfront Reserved Instances for a 1-year term.
  • All Upfront Reserved instances for a 1 year form.
  • All Upfront Reserved Instances for a 3 year term.
  • No Upfront Reserved Instances for a 3 year term.

Which AWS services should be used for read/write of constantly changing data? (Select TWO)

  • Amazon Glacier.
  • Amazon RDS.
  • AWS Snowball.
  • Amazon Redshift.
  • Amazon EFS.

Which AWS service allows users to identify the changes made to a resource over time?

  • Amazon Inspector.
  • AWS Config.
  • AWS Service Catalog.
  • AWS IAM.

According to best practices, how should an application be designed to run in the AWS Cloud?

  • Use tightly coupled components.
  • Use loosely coupled components.
  • Use infrequently coupled components.
  • Use frequently coupled components.

Which benefits are included with the AWS Business Support plan? (Select TWO)

  • 24/7 assistance by way of live chat or a telephone call.
  • Support from a dedicated AWS Technical Account Manager.
  • An unlimited number of cases and contacts.
  • 15-minute response time for production system interruption cases.
  • Annual operational reviews with AWS Solutions Architects.

Which of the following is an AWS managed Domain Name System (DNS) web service?

  • Amazon Route 53.
  • Amazon Neptune.
  • Amazon SageMaker.
  • Amazon Lightsail.

A user must meet compliance and software licensing requirements that state a workload must be hosted on a physical server. When Amazon EC2 instance pricing option will meet these requirements?

  • Dedicated Hosts.
  • Dedicated Instances.
  • Spot Instances.
  • Reserved Instances.

Which of the Reserved Instance (RI) pricing models can change the attributes of the RI as long as the exchange results in the creation of RIs of equal or greater value?

  • Dedicated RIs.
  • Scheduled RIs.
  • Convertible RIs.
  • Standard RIs.

Which service is best for storing common database query results, which helps to alleviate database access load?

  • Amazon Machine Learning.
  • Amazon SQS.
  • Amazon ElastiCache.
  • Amazon EC2 Instance Store.

When should a company consider using Amazon EC2 Spot Instances? (Select TWO)

  • For non-production applications.
  • For stateful workloads.
  • For applications that cannot have interruptions.
  • For fault-tolerant flexible applications.
  • For sensitive database applications.

Which AWS tools assist with estimating costs? (Select three)

  • Detailed billing report.
  • Cost allocation tags.
  • AWS Simple Monthly Calculator.
  • AWS Total Cost of Ownership (TCO) Calculator.
  • Cost Estimator.

A company wants to focus on business activities instead of managing compute and capacity. Which AWS service can be used to automatically add or remove Amazon EC2 instances based on demand?

  • Elastic Load Balancer.
  • Amazon EC2 Auto Scaling.
  • Amazon Route 53.
  • Amazon CloudFront.

Which is the minimum AWS Support plan that includes Infrastructure Event Management without additional costs?

  • Enterprise.
  • Business.
  • Developer.
  • Basic.

Access keys in AWS Identity and Access Management (IM1) are used to:

  • Log in to the AWS Management Console.
  • Make programmatic calls to AWS from AWS APIs.
  • Log in to Amazon EC2 instances.
  • Authenticate to AWS CodeCommit repositories.

Which AWS service can be used to query stored datasets directly from Amazon S3 using standard SQL?

  • AWS Glue.
  • AWS Data Pipeline.
  • Amazon CloudSearch.
  • Amazon Athena.

How does AWS shorten the time to provision IT resources?

  • It supplies an online IT ticketing platform for resource requests.
  • It supports automatic code validation services.
  • It provides the ability to programmatically provision existing resources.
  • It automates the resource request process from a company's IT vendor list.

Which AWS services can be used to gather information about AWS account activity? (Select TWO)

  • Amazon CloudFront.
  • AWS Cloud9.
  • AWS CloudTrail.
  • AWS CloudHSM.
  • Amazon CloudWatch.

Which of the following are characteristics of Amazon S3? (Select TWO)

  • A global file system.
  • An object store.
  • A local file store.
  • A network file system.
  • A durable storage system.

A user wants guidance on possible savings when migrating from on-premises to AWS. Which tool is suitable for this scenario?

  • AWS Budgets.
  • Cost Explorer.
  • AWS Total Cost of Ownership (TCO) Calculator.
  • AWS Well-Architected Tool.

Which of the following services is in the category of AWS serverless platform?

  • Amazon EMR.
  • Elastic Load Balancing.
  • AWS Lambda.
  • AWS Mobile Hub.

The use of what AWS feature or service allows companies to track and categorize spending on a detailed level?

  • Cost allocation tags.
  • Consolidated billing.
  • AWS Budgets.
  • AWS Marketplace.

Which of the following inspects AWS environments to find opportunities that can save money for users and also improve system performance?

  • AWS Cost Explorer.
  • AWS Trusted Advisor.
  • Consolidated billing.
  • Detailed billing.

Web servers running on Amazon EC2 access a legacy application running in a corporate data center. What term would describe this model?

  • Cloud-native.
  • Partner network.
  • Hybrid architecture.
  • Infrastructure as a service.

What technology enables compute capacity to adjust as loads change?

  • Load balancing.
  • Automatic failover.
  • Round robin.
  • Auto Scaling.

Which AWS service is a managed NoSQL database?

  • Amazon Redshift.
  • Amazon DynamoDB.
  • Amazon Aurora.
  • Amazon RDS for ManaDB.

Which of the following is a correct relationship between regions, Availability Zones, and edge locations?

  • Data centers contain regions.
  • Regions contain Availability Zones.
  • Availability Zones contain edge locations.
  • Edge locations contain regions.

What approach to transcoding a large number of individual video files adheres to AWS architecture principles?

  • Using many instances in parallel.
  • Using a single large instance during off-peak hours.
  • Using dedicated hardware.
  • Using a large GPU instance type.

Which AWS services can host a Microsoft SQL Server database? (Select TWO)

  • Amazon EC2.
  • Amazon Relational Database Service (Amazon RDS).
  • Amazon Aurora.
  • Amazon Redshift.
  • Amazon S3.

Which AWS IAM feature allows developers to access AWS services through the AWS CLI?

  • API keys.
  • Access keys.
  • User names/Passwords.
  • SSH keys.

The user is fully responsible for which action when running workloads on AWS?

  • Patching the infrastructure components.
  • Maintaining the underlying infrastructure components.
  • Maintaining physical and environmental controls.
  • Implementing controls to route application traffic.

Which AWS support plan includes a dedicated Technical Account Manager?

  • Developer.
  • Enterprise.
  • Business.
  • Basic.

What time-savings advantage is offered with the use of Amazon Rekognition?

  • Amazon Rekognition provides automatic watermarking of images.
  • Amazon Rekognition provides automatic detection of objects appearing in pictures.
  • Amazon Recognition provides the ability to resize millions of images automatically.
  • Amazon Rekognition uses Amazon Mechanical Turk to allow humans to bid on object detection jobs.

Which AWS service can be used to automatically scale an application up and down without making capacity planning decisions?

  • Amazon EBS.
  • Amazon Redshift.
  • AWS CloudTrail.
  • AWS Lambda.

Amazon Relational Database Service (Amazon RDS) offers which of the following benefits over traditional database management?

  • AWS manages the data stored in Amazon RDS tables.
  • AWS manages the maintenance of the operating system.
  • AWS automatically scales up instance types on demand.
  • AWS manages the database type.

A company's web application currently has light dependencies on underlying components so when one component fails the entire web application fails. Applying which AWS Cloud design principle will address the current design issue?

  • Implementing elasticity enabling the application to scale up or scale down as demand changes.
  • Enabling several EC2 instances to run in parallel to achieve better performance.
  • Focusing on decoupling components by isolating them and ensuring individual components can function when other components.
  • Doubling EC2 computing resources to increase system fault tolerance.

A customer would like to design and build a new workload on AWS Cloud but does not have the AWS-related software technical expertise in-house. Which of the following AWS programs can a customer take advantage of to achieve that outcome?

  • AWS Partner Network Technology Partners.
  • AWS Marketplace.
  • AWS Partner Network Consulting Partners.
  • AWS Service Catalog.

Which service stores objects, provides real-time access to those objects, and offers versioning and lifecycle capabilities?

  • Amazon Glacier.
  • AWS Storage Gateway.
  • Amazon S3.
  • Amazon EBS.

Distributing workloads across multiple Availability Zones supports which cloud architecture design principle?

  • Implement automation.
  • Design for agility.
  • Design for failure.
  • Implement elasticity.

Which service should a customer use to consolidate and centrally manage multiple AWS accounts?

  • AWS IAM.
  • AWS Organizations.
  • AWS Schema Conversion Tool.
  • AWS Config.

How can a company reduce its Total Cost of Ownership (TCO) using AWS?

  • By minimizing large capital expenditures.
  • By having no responsibility for third-party license costs.
  • By having no operational expenditures.
  • By having AWS manage applications.

Which options does AWS make available for customers who want to learn about security in the cloud in an instructor-led setting? (Select TWO)

  • AWS Trusted Advisor.
  • AWS Online Tech Talks.
  • AWS Blog.
  • AWS Forums.
  • AWS Classroom Training.

Which of the following will enhance the security of access to the AWS Management Console'? (Select TWO)

  • AWS Secrets Manager.
  • AWS Certificate Manager.
  • AWS Multi-Factor Authentication (AWS MFA).
  • Security groups.
  • Password policies.

Which of the following features can be configured through the Amazon Virtual Private Cloud (Amazon VPC) Dashboard? (Select TWO)

  • Amazon CloudFront distributions.
  • Amazon Route 53.
  • Security Groups.
  • Subnets.
  • Elastic Load Balancing.

For which auditing process does AWS have sole responsibility?

  • AWS IAM policies.
  • Physical security.
  • Amazon S3 bucket policies.
  • AWS CloudTrail Logs.

Which of the following are advantages of AWS consolidated billing? (Select TWO)

  • The ability to receive one bill for multiple accounts.
  • Service limits increasing by default in all accounts.
  • A fixed discount on the monthly bill.
  • Potential volume discounts, as usage in all accounts is combined.
  • The automatic extension of the master account's AWS support plan to all accounts.

Which of the following common IT tasks can AWS cover to free up company IT resources? (Select TWO)

  • Patching databases software.
  • Testing application releases.
  • Backing up databases.
  • Creating database schema.
  • Running penetration tests.

A company wants to expand from one AWS Region into a second AWS Region. What does the company need to do to start supporting the new Region?

  • Contact an AWS Account Manager to sign a new contract.
  • Move an Availability Zone to the new Region.
  • Begin deploying resources in the second Region.
  • Download the AWS Management Console for the new Region.

Why is it beneficial to use Elastic Load Balancers with applications?

  • They allow for the conversion from Application Load.
  • Balancers to Classic Load Balancers.
  • They are capable of handling constant changes in network traffic patterns.
  • They automatically adjust capacity. They are provided at no charge to users.

Which is the MINIMUM AWS Support plan that allows for one-hour target response time for support cases?

  • Enterprise.
  • Business.
  • Developer
  • Basic

What is the lowest-cost, durable storage option for retaining database backups for immediate retrieval?

  • Amazon S3.
  • Amazon Glacier.
  • Amazon EBS.
  • Amazon EC2 Instance Store.

What AWS team assists customers with accelerating cloud adoption through paid engagements in any of several specialty practice areas?

  • AWS Enterprise Support.
  • AWS Solutions Architects.
  • AWS Professional Services.
  • AWS Account Managers.

A company needs 24/7 phone email and chat access with a response time of less than 1 hour if a production system has a service interruption. Which AWS Support plan meets these requirements at the LOWEST cost?

  • Basic.
  • Developer.
  • Business.
  • Enterprise.

If a customer needs to audit the change management of AWS resources, which of the following AWS services should the customer use?

  • AWS Config.
  • AWS Trusted Advisor.
  • Amazon CloudWatch.
  • Amazon Inspector.

How does AWS Trusted Advisor provide guidance to users of the AWS Cloud? (Select TWO)

  • It identifies software vulnerabilities in applications running on AWS.
  • It provides a list of cost optimization recommendations based on current AWS usage.
  • It detects potential security vulnerabilities caused by permissions settings on account resources.
  • It automatically corrects potential security issues caused by permissions settings on account resources.
  • It provides proactive alerting whenever an Amazon EC2 instance has been compromised.

Which AWS managed service is used to host databases?

  • AWS Batch.
  • AWS Artifact.
  • AWS Data Pipeline.
  • Amazon RDS.

Which of the following Identity and Access Management (IAM) entities is associated with an access key ID and secret access key when using AWS Command Line Interface (AWS CLI)?

  • IAM group.
  • IAM user.
  • IAM role.
  • IAM policy.

Under the shared responsibility model, which of the following is the customer responsible for?

  • Ensuring that disk drives are wiped after use.
  • Ensuring that firmware is updated on hardware devices.
  • Ensuring that data is encrypted at rest.
  • Ensuring that network cables are category six or higher.

Which AWS service provides a simple and scalable shared file storage solution for use with Linux-based AWS and on-premises servers?

  • Amazon S3.
  • Amazon Glacier.
  • Amazon EBS.
  • Amazon EFS.

What credential components are required to gain programmatic access to an AWS account? (Select TWO)

  • An access key ID.
  • A primary key.
  • A secret access key.
  • A user ID.
  • A secondary key.

Which of the following is a shared control between the customer and AWS?

  • Providing a key for Amazon S3 client-side encryption.
  • Configuration of an Amazon EC2 instance.
  • Environmental controls of physical AWS data centers.
  • Awareness.

Which type of AWS storage is ephemeral and is deleted when an instance is stopped Of terminated?

  • Amazon EBS.
  • Amazon EC2 instance store.
  • Amazon EFS.
  • Amazon S3.

Which of the following is an advantage of consolidated billing on AWS?

  • Volume pricing qualification.
  • Shared access permissions.
  • Multiple bills per account.
  • Eliminates the need for tagging.

Which services are parts of the AWS serverless platform?

  • Amazon EC2, Amazon S3, Amazon Athena.
  • Amazon Kinesis, Amazon SQS, Amazon EMR.
  • AWS Step Functions, Amazon DynamoDB, Amazon SNS.
  • Amazon Athena, Amazon Cognito, Amazon EC2.

Which of the following Amazon EC2 pricing models allow customers to use existing server-bound software licenses?

  • Spot Instances.
  • Reserved Instances.
  • Dedicated Hosts.
  • On-Demand Instances.

Which of the following security measures protect access to an AWS account? (Select TWO)

  • Enable AWS CloudTrail.
  • Grant least privilege access to IAM users.
  • Create one IAM user and share with many developers and users.
  • Enable Amazon CloudFront.
  • Activate multi-factor authentication (MFA) for privileged users.

Which AWS service provides the ability to manage infrastructure as code?

  • AWS CodePipeline.
  • AWS CodeDeploy.
  • AWS Direct Connect.
  • AWS CloudFormation.

What is an advantage of deploying an application across multiple Availability Zones?

  • There is a lower risk of service failure if a natural disaster causes a service disruption in a given AWS Region.
  • The application will have higher availability because it can withstand a service disruption in one Availability Zone.
  • There will be better coverage as Availability Zones are geographical^ distant and can serve a wider area.
  • There will be decreased application latency that will improve the user experience.

A customer needs to run a MySQL database that easily scales. Which AWS service should they use?

  • Amazon Aurora.
  • Amazon Redshift.
  • Amazon DynamoDB.
  • Amazon ElastiCache.

Which of the following is an AWS Cloud architecture design principle?

  • Implement single points of failure.
  • Implement loose coupling.
  • Implement monolithic design.
  • Implement vertical scaling.

AWS Enterprise Support users have access to which service or feature that is not available to users with other AWS Support plans?

  • AWS Trusted Advisor.
  • AWS Support case.
  • Concierge team.
  • Amazon Connect.

A company will be moving from an on-premises data center to the AWS Cloud. What would be one financial difference after the move?

  • Moving from variable operational expense ( opex ) to upfront capital expense (capex).
  • Moving from upfront capital expense (capex) to variable capital expense (capex).
  • Moving from upfront capital expense (capex) to variable operational expense ( opex ).
  • Elimination of upfront capital expense (capex) and elimination of variable operational expense ( opex ).

When performing a cost analysis that supports physical isolation of a customer workload, which compute hosting model should be accounted for in the Total Cost of Ownership (TCO)?

  • Dedicated Hosts
  • Reserved Instances
  • On-Demand Instances
  • No Upfront Reserved Instances

Which AWS service should be used for long-term, low-cost storage of data backups?

  • Amazon RDS.
  • Amazon Glacier.
  • AWS Snowball.
  • AWS EBS.

Which is the MINIMUM AWS Support plan that provides technical support through phone calls?

  • Enterprise.
  • Business.
  • Developer.
  • Basic.

Which Amazon EC2 instance pricing model can provide discounts of up to 90%?

  • Reserved Instances.
  • On-Demand.
  • Dedicated Hosts.
  • Spot Instances.

Which of the following AWS services can be used to serve large amounts of online video content with the lowest possible latency? (Select TWO)

  • appGateway.
  • Amazon S3.
  • Amazon Elastic File System (EFS).
  • Amazon Glacier.
  • Amazom CloudFront.

What can AWS edge locations be used for? (Select TWO)

  • Hosting applications.
  • Delivering content closer to users.
  • Running NoSQL database caching services.
  • Reducing traffic on the server by caching responses.
  • Sending notification messages to end users.

A company is planning to migrate from on-premises to the AWS Cloud. When AWS tool or service provides detailed reports on estimated cost savings after migration?

  • AWS Total Cost of Ownership (TCO) Calculator.
  • Cost Explorer.
  • AWS Budgets.
  • AWS Migration Hub.

Which AWS service provides a customized view of the health of specific AWS services that power a customer's workloads running on AWS?

  • AWS Service Health Dashboard.
  • AWS X-Ray.
  • AWS Personal Health Dashboard.
  • Amazon CloudWatch.

One of the advantages to moving infrastructure from an on-premises data center to the AWS Cloud is:

  • It allows the business to eliminate IT bills.
  • It allows the business to put a server in each customer's data center.
  • It allows the business to focus on business activities.
  • It allows the business to leave servers unpatched.

How can an AWS user with an AWS Basic Support plan obtain technical assistance from AWS?

  • AWS Senior Support Engineers.
  • AWS Technical Account Managers.
  • AWS Trusted Advisor.
  • AWS Discussion Forums.

How can a user protect against AWS service disruptions if a natural disaster affects an entire geographic area?

  • Deploy applications across multiple Availability Zones within an AWS Region.
  • Use a hybrid cloud computing deployment model within the geographic area.
  • Deploy applications across multiple AWS Regions.
  • Store application artifacts using AWS Artifact and replicate them across multiple AWS Regions.

Which activity is a customer responsibility in the AWS Cloud according to the AWS shared responsibility model?

  • Ensuring network connectivity from AWS to the internet.
  • Patching and fixing flaws within the AWS Cloud infrastructure.
  • Ensuring the physical security of cloud data centers.
  • Ensuring Amazon EBS volumes are backed up.

In which scenario should Amazon EC2 Spot Instances be used?

  • A company wants to move its main website to AWS from an on-premises web server.
  • A company has a number of application services whose Service Level Agreement (SLA) requires 99.999% uptime.
  • A company's heavily used legacy database is currently running on-premises.
  • A company has a number of infrequent, interruptible jobs that are currently using On-Demand Instances.

A customer is deploying a new application and needs to choose an AWS Region. Which of the following factors could influence the customer's decision? (Select TWO)

  • Reduced latency to users.
  • The application's presentation in the local language.
  • Data sovereignty compliance.
  • Cooling costs in hotter climates.
  • Proximity to the customer's office for on-site visits.

Which AWS service provides alerts when an AWS event may impact a company's AWS resources?

  • AWS Personal Health Dashboard.
  • AWS Service Health Dashboard.
  • AWS Trusted Advisor.
  • AWS Infrastructure Event Management.

Which disaster recovery scenario offers the lowest probability of down time?

  • Backup and restore.
  • Pilot light.
  • Warm standby.
  • Multi-site active-active.

Which service's PRIMARY purpose is software version control?

  • Amazon CodeStar.
  • AWS Command Line Interface (AWS CLI).
  • Amazon Cognito.
  • AWS CodeCommit.

How can a customer increase security to AWS account logons? (Select TWO)

  • Configure AWS Certificate Manager
  • Enable Multi-Factor Authentication (MFA)
  • Use Amazon Cognito to manage access
  • Configure a strong password policy
  • Enable AWS Organizations

Which of the following components of the AWS Global Infrastructure consists of one or more discrete data centers interconnected through low latency links?

  • Availability Zone
  • Edge location
  • Region
  • Private networking

One benefit of On-Demand Amazon Elastic Compute Cloud (Amazon EC2) pricing is:

  • The ability to bid for a lower hourly cost.
  • Paying a daily rate regardless of time used.
  • Paying only for time used.
  • Pre-paying for instances and paying a lower hourly rate.

What can assist in evaluating an application for migration to the cloud? (Select TWO)

  • AWS Trusted Advisor.
  • AWS Professional Services.
  • AWS Systems Manager.
  • AWS Partner Network (APN).
  • AWS Secrets Manager.

A characteristic of edge locations is that they:

  • Host Amazon EC2 instances closer to users.
  • Help lower latency and improve performance for users.
  • Cache frequently changing data without reaching the origin server.
  • Refresh data changes daily.

Which of the following are valid ways for a customer to interact with AWS services? (Select TWO)

  • Command line interface.
  • On-premises.
  • Software Development Kits.
  • Software-as-a-service.
  • Hybrid.

What is a value proposition of the AWS Cloud?

  • AWS is responsible for security in the AWS Cloud.
  • No long-term contract is required.
  • Provision new servers in days.
  • AWS manages user applications in the AWS Cloud.

A company is migrating an application that is running non-interruptible workloads for a three-year time frame. Which pricing construct would provide the MOST cost-effective solution?

  • Amazon EC2 Spot Instances.
  • Amazon EC2 Dedicated Instances.
  • Amazon EC2 On-Demand Instances.
  • Amazon EC2 Reserved Instances.

Which AWS service is used to track record, and audit configuration changes made to AWS resources?

  • AWS Shield.
  • AWS Config.
  • AWS IAM.
  • Amazon Inspector.

Which feature of the AWS Cloud will support an international company's requirement for low latency to all of its customers?

  • Fault tolerance.
  • Global reach.
  • Pay-as-you-go pricing.
  • High availability.

How can one AWS account use Reserved Instances from another AWS account?

  • By using Amazon EC2 Dedicated Instances.
  • By using AWS Organizations consolidated billing.
  • By using the AWS Cost Explorer tool.
  • By using AWS Budgets.

What are the benefits of developing and running a new application in the AWS Cloud compared to on-premises? (Select TWO)

  • AWS automatically distributes the data globally for higher durability.
  • AWS will take care of operating the application.
  • AWS makes it easy to architect for high availability.
  • AWS can easily accommodate application demand changes.
  • AWS takes care of application security patching.

Which of the following services falls under the responsibility of the customer to maintain operating system configuration, security patching, and networking?

  • Amazon RDS.
  • Amazon EC2.
  • Amazon ElastiCache.
  • AWS Fargate.

AWS supports which of the following methods to add security to Identity and Access Management (IAM) users? (Select TWO)

  • Implementing Amazon Rekognition.
  • Using AWS Shield-protected resources.
  • Blocking access with Security Groups.
  • Using Multi-Factor Authentication (MFA).
  • Enforcing password strength and expiration.

Which service provides a hybrid storage service that enables on-premises applications to seamlessly use cloud storage?

  • Amazon Glacier
  • AWS Snowball
  • AWS Storage Gateway
  • Amazon Elastic Block Storage (Amazon EBS)

Where should a company go to search software listings from independent software vendors to find, test, buy and deploy software that runs on AWS?

  • AWS Marketplace.
  • Amazon Lumberyard.
  • AWS Artifact.
  • Amazon CloudSearch.

Which of the following is a component of the AWS Global Infrastructure?

  • Amazon Alexa.
  • AWS Regions.
  • Amazon Lightsail.
  • AWS Organizations.

Which Amazon EC2 pricing model adjusts based on supply and demand of EC2 instances?

  • On-Demand Instances.
  • Reserved Instances.
  • Spot Instances.
  • Convertible Reserved Instances.

A company wants to migrate its applications to a VPC on AWS. These applications will need to access on-premises resources. What combination of actions will enable the company to accomplish this goals? (Select TWO)

  • Use the AWS Service Catalog to identify a list of on-premises resources that can be migrated.
  • Build a VPN connection between an on-premises device and a virtual private gateway in the new VPC.
  • Use Amazon Athena to query data from the on-premises database servers.
  • Connect the company's on-premises data center to AWS using AWS Direct Connect.
  • Leverage Amazon CloudFront to restrict access to static web content provided through the company's on-premises web servers.

A Cloud Practitioner must determine if any security groups in an AWS account have been provisioned to allow unrestricted access for specific ports. What is the SIMPLEST way to do this?

  • Review the inbound rules for each security group in the Amazon EC2 management console to check for port 0.0.0.0/0.
  • Run AWS Trusted Advisor and review the findings.
  • Open the AWS IAM console and check the inbound rule filters for open access.
  • In AWS Config, create a custom rule that invokes an AWS Lambda function to review firewall rules for inbound access.

Which of the following security-related services does AWS offer? (Select TWO)

  • Multi-factor authentication physical tokens.
  • AWS Trusted Advisor security checks.
  • Data encryption.
  • Automated penetration testing.
  • Amazon S3 copyrighted content detection.

Which of the following services have Distributed Denial of Service (DDoS) mitigation features? (Select TWO)

  • AWS WAF.
  • Amazon DynamoDB.
  • Amazon EC2.
  • Amazon CloudFront.
  • Amazon Inspector.

Which of the following AWS features enables a user to launch a pre-configured Amazon Elastic Compute Cloud (Amazon EC2) instance?

  • Amazon Elastic Block Store (Amazon EBS).
  • Amazon Machine Image.
  • Amazon EC2 Systems Manager.
  • Amazon AppStream 2.0.

A solution that is able to support growth in users, traffic, or data size with no drop in performance aligns with which cloud architecture principle?

  • Think parallel.
  • Implement elasticity.
  • Decouple your components.
  • Design for failure.

Which AWS Cloud benefit eliminates the need for users to try estimating future infrastructure usage?

  • Easy and fast deployment of applications in multiple Regions around the world.
  • Security of the AWS Cloud.
  • Elasticity of the AWS Cloud.
  • Lower variable costs due to massive economies of scale.

What can users access from AWS Artifact?

  • AWS security and compliance documents.
  • A download of configuration management details for all AWS resources.
  • Training materials for AWS services.
  • A security assessment of the applications deployed in the AWS Cloud.

Compared with costs in traditional and virtualized data centers, AWS has:

  • Greater variable costs and greater upfront costs.
  • Fixed usage costs and lower upfront costs.
  • Lower variable costs and greater upfront costs.
  • Lower variable costs and lower upfront costs.

Which AWS service would a customer use with a static website to achieve tower latency and high transfer speeds?

  • AWS Lambda.
  • Amazon DynamoDB Accelerator.
  • Amazon Route 53.
  • Amazon CloudFront.

How do Amazon EC2 Auto Scaling groups help achieve high availability for a web application?

  • They automatically add more instances across multiple AWS Regions based on global demand of the application.
  • They automatically add or replace instances across multiple Availability Zones when the application needs it.
  • They enable the application's stalk: content to reside closer to end users.
  • They are able to distribute incoming requests across a tier of web server instances.

Which of the following can limit Amazon Simple Storage Service (Amazon S3) bucket access to specific users?

  • A public and private key-pair.
  • Amazon Inspector.
  • AWS Identity and Access Management (IAM) policies.
  • Security Groups.

How should a customer forecast the future costs for running a new web application?

  • Amazon Aurora Backtrack.
  • Amazon CloudWatch Billing Alarms.
  • AWS Simple Monthly Calculator.
  • AWS Cost and Usage report.

Where are AWS compliance documents, such as an SOC 1 report, located?

  • Amazon Inspector.
  • AWS CloudTrail.
  • AWS Artifact.
  • AWS Certificate Manager.

Which of the following tasks is the responsibility of AWS?

  • Encrypting client-side data.
  • Configuring AWS Identity and Access Management (IAM) roles.
  • Securing the Amazon EC2 hypervisor.
  • Setting user password policies.

Under the shared responsibility model which of the following areas are the customer's responsibility? (Select TWO)

  • Firmware upgrades of network infrastructure.
  • Patching of operating systems.
  • Patching of the underlying hypervisor.
  • Physical security of data centers.
  • Configuration of the security group.

A company is looking for a scalable data warehouse solution. Which of the following AWS solutions would meet the company's needs?

  • Amazon Simple Storage Service (Amazon S3).
  • Amazon DynamoDB.
  • Amazon Kinesis.
  • Amazon Redshift.

Much AWS services provide a way to extend an on-premises architecture to the AWS Cloud? (Select TWO)

  • Amazon EBS.
  • AWS Direct Connect.
  • Amazon CloudFront.
  • AWS Storage Gateway.
  • Amazon Connect.

What are the advantages of the AWS Cloud? (Select TWO)

  • Fixed rate monthly cost.
  • No need to guess capacity requirements.
  • Increased speed to market.
  • Increased upfront capital expenditure.
  • Physical access to cloud data centers.

How can the AWS Cloud increase user workforce productivity after migration from an on-premises data center?

  • Users do not have to wait for infrastructure provisioning.
  • The AWS Cloud infrastructure is much faster than an on-premises data center infrastructure.
  • AWS takes over application configuration management on behalf of users.
  • Users do not need to address security and compliance issues.

Which of the following services could be used to deploy an application to servers running on-premises? (Select TWO)

  • AWS Elastic Beanstalk.
  • AWS OpsWorks.
  • AWS CodeDeploy.
  • AWS Batch.
  • AWS X-Ray.

What is an example of agility in the AWS Cloud?

  • Access to multiple instance types.
  • Access to managed services.
  • Using Consolidated Billing to produce one bill.
  • Decreased acquisition time for new compute resources.

Which AWS security service protects applications from distributed denial of service attacks with always-on detection and automatic inline mitigations?

  • Amazon Inspector.
  • AWS Web Application Firewall (AWS WAF).
  • Elastic Load Balancing (ELB).
  • AWS Shield.

Which of the following are advantages of AWS consolidated billing? (Choose two)

  • The ability to receive one bill for multiple accounts.
  • Service limits increasing by default in all accounts.
  • A fixed discount on the monthly bill.
  • Potential volume discounts, as usage in all accounts is combined.
  • The automatic extension of the master account's AWS support plan to all accounts.

A company is considering using AWS for a self-hosted database that requires a nightly shutdown for maintenance and cost-saving purposes. Which service should the company use?

  • Amazon Redshift.
  • Amazon DynamoDB.
  • Amazon Elastic Compute Cloud (Amazon EC2) with Amazon EC2 instance store.
  • Amazon EC2 with Amazon Elastic Block Store (Amazon EBS).

Which type of mirroring does SPAN technology perform?

  • Remote mirroring over Layer 2.
  • Remote mirroring over Layer 3.
  • Local mirroring over Layer 2.
  • Local mirroring over Layer 3.

Your customer wants to grant restricted proxy rights to their HR Department to act on behalf of employees belonging to their legal entity. How can you perform this requirement? There are 2 correct answers to this question.

  • Use the Manage Permission Roles tool to grant proxy rights to the HR Department.
  • Fill the PROXY column of the Basic Import template to match the requirements and import the file using the Import Employee Data tool.
  • Use the Proxy Management tool to configure the requested proxy assignments.
  • Fill the Basic Import template with the requested proxy configuration and import the file using the Import and Export Data tool.

Which two statements about configuring a traffic monitoring session are true? (Choose two)

  • You can set a local VM as a traffic destination.
  • You can have up to two active monitoring sessions simultaneously.
  • An unlimited number of monitoring session can be stored.
  • A newly created monitoring session is enabled by default.
  • A destination port can also be a source port within the same session.
  • A vHBA can be a source for either an Ethernet or Fibre Channel monitoring session, but not both.

What are the advantages of the AWS Cloud? (Select TWO)

  • AWS management of user-owned infrastructure.
  • Ability to quickly change required capacity.
  • High economies of scale.
  • Increased deployment time to market.
  • Increased fixed expenses.

A company wants to migrate its applications from its on-premises data center to a VPC in the AWS Cloud. These applications will need to access on-premises resources. Which actions will meet these requirements? (Choose TWO)

  • Use AWS Service Catalog to identify a list of on-premises resources that can be migrated.
  • Create a VPN connection between an on-premises device and a virtual private gateway in the VPC.
  • Use an Amazon CloudFront distribution and configure it to accelerate content delivery close to the on-premises resources.
  • Set up an AWS Direct Connect connection between the on-premises data center and AWS.
  • Use Amazon CloudFront to restrict access to static web content provided through the on-premises web servers.

Which of the following actions can be performed using the AWS Console

  • Manage applications
  • Run AWS commands through a remote terminal program such as PuTTY or SSH
  • Search for services
  • Access your AWS account

Which of the following contains 1 or more physically separated data centers?

  • Edge location
  • Availability Zone
  • Region cache
  • Region

Which of the following is a geographic area containing multiple Availability Zones (AZs)?

  • Data center
  • Edge location
  • Global zone
  • Region

Which cloud computing model means you are using a complete application or software suite hosted on someone else’s servers?

  • Instance as a Service (IaaS)
  • Software as a Service (SaaS)
  • Platform as a Service (PaaS)
  • Infrastructure as a Service (IaaS)

Which benefit of cloud computing helps you innovate and build faster?

  • Agility
  • Scalability
  • High availability
  • Elasticity

Which of the following are attributes of multiple Availability Zones in a given Region? Choose 2

  • They contain exactly 1 data center.
  • They are physically grouped in a single facility to achieve high availability.
  • They are connected to each other through low-latency links.
  • They are fault tolerant.

Which of the following is NOT 1 of the 3 main models for cloud computing?

  • Software as a Service
  • Access as a Service
  • Platform as a Service
  • Infrastructure as a Service

Which of the following is a best practice for securing access to your AWS account?

  • 3-Factor Authentication (3FA)
  • Configuring the AWS CLI on your local machine
  • Deleting your root user
  • Multi-Factor Authentication (MFA)

Which of the following is a true statement about edge locations?

  • Fewer edge locations are required than AWS Regions and Availability Zones.
  • Edge locations can cache data for your users.
  • Edge locations are designed to improve response times by increasing latency.
  • Edge locations can run your main infrastructure, like EC2 instances, as well as cache data.

Which cloud deployment model allows you to connect public cloud resources to on-premises infrastructure?

  • Hybrid
  • On-premises
  • Private cloud
  • Cloud

Which cloud deployment model allows you to connect public cloud resources to on-premises infrastructure?

  • Hybrid
  • On-premises
  • Private cloud
  • Cloud

Which resource types are delivered on-demand via cloud computing with pay-as-you-go pricing? Choose 3

  • Storage
  • Database
  • IT support
  • Compute

True or False? As a security best practice, the AWS account root user should be protected by multi-factor authentication (MFA).

  • True
  • False

Which type of expense includes upfront purchases toward fixed assets?

  • Operating expenses (OpEx)
  • Research and development expenditures
  • Capital expenditures (CapEx)
  • Marketing expenditures

Which of the following are benefits provided by cloud computing? Choose 2

  • It uses a locally installed management console.
  • It allows on-demand spinning up of needed resources (such as virtual machines).
  • It uses fixed-rate pricing for available services.
  • It offers easy access to servers, storage, and other services over the internet.

AWS defines hybrid cloud as a combination of cloud and existing on-premises infrastructure.

  • False
  • True

Which of the following are characteristics of cloud computing? Choose 3

  • Pay-as-you-go pricing
  • Cloud charges are capital expenditures.
  • On-demand delivery
  • Services are delivered via the internet.

Which of the following are characteristics of cloud computing? Choose 3

  • Pay-as-you-go pricing
  • Cloud charges are capital expenditures.
  • On-demand delivery
  • Services are delivered via the internet.

Which type of expense includes funds used to run day-to-day operations?

  • Computer and software expenditures
  • Equipment expenditures
  • Capital expenditures (CapEx)
  • Operating expenses (OpEx)

Which of the following actions can be performed using the AWS Console? Choose 3

  • Run AWS commands through a remote terminal program such as PuTTY or SSH
  • Access your AWS account
  • Manage applications
  • Search for services

What does the concept of durability mean in a cloud computing environment?

  • Durability allows you to provision only the resources you need.
  • Durability helps you to innovate faster.
  • Durability offers long-term data protection.
  • Durability helps to avoid a loss of service.

What does the concept of durability mean in a cloud computing environment?

  • Trade capital expense for variable expense.
  • All of these
  • You're able to stop spending money running and maintaining data centers.
  • Benefit from massive economies of scale.
  • Stop guessing capacity.
  • Increase speed and agility.

Which service is used to allow resources in your VPC to access the internet?

  • Subnet
  • Internet Gateway
  • Network ACL
  • VPC Peering

Which AWS service can send both text and email messages from your applications?

  • Simple Notification Service (SNS)
  • Simple Queue Service (SQS)
  • Simple Messenger Service
  • Simple Email Service (SES)

Which networking and content delivery service makes content globally available with low latency?

  • Amazon API Gateway
  • Amazon CloudFront
  • AWS Direct Connect
  • Amazon Virtual Private Cloud (VPC)

Objects stored in S3 are stored in a single, central location within AWS.

  • True
  • False

Which service allows you to host virtual desktops in the cloud?

  • Amazon WorkSpaces
  • Professional Services
  • Amazon Connect
  • Managed Services

Which of the following EC2 options is best for long-term workloads with predictable usage patterns?

  • On-Demand instances
  • Dedicated Hosts
  • Reserved Instances
  • Spot Instances

Which compute service allows you to run code without managing servers and pay only when your code is running?

  • AWS Outposts
  • AWS Batch
  • AWS Lambda
  • Amazon Lightsail

Amazon EC2 offers a variety of pricing options. Which of the following EC2 pricing options is the cheapest?

  • Reserved Instances (RIs)
  • Dedicated Hosts
  • Spot Instances
  • Savings Plans
  • On-Demand

Which of the following are true statements about Simple Queue Service (SQS)?

  • Standard queues provide a loose-FIFO capability.
  • It is a service that transfers messages in an unencrypted manner.
  • It is a service that only allows a single component to add messages to a queue.
  • SQS is limited to a maximum message size of 64 KB.

Which migration service allows you to migrate databases to or within AWS over the internet easily and securely?

  • AWS AppSync
  • AWS Instance Migration Service (IMS)
  • AWS SMS
  • AWS DMS
  • AWS Snowball

Which machine learning service helps you build, train, and deploy models quickly?

  • Lex
  • Rekognition
  • SageMaker
  • Comprehend

Which service allows you to build interactive dashboards?

  • Kinesis
  • QuickSight
  • Glue
  • Athena

Which EC2 pricing option is best for short-term, irregular workloads that should not be interrupted?

  • Reserved Instances
  • Spot Instances
  • Dedicated Hosts
  • Savings Plans
  • On-Demand

Which services allow you to run containerized applications without having to manage servers or clusters? Choose 3

  • Amazon Elastic Block Store (EBS)
  • AWS Fargate
  • Amazon Elastic Container Service (Amazon ECS)
  • Amazon Elastic Kubernetes Service (EKS)

Which service allows you to practice Infrastructure as Code by provisioning your AWS resources via scripted templates?

  • AWS Lambda
  • AWS Elastic Beanstalk
  • AWS Marketplace
  • AWS CloudFormation

Which monitoring service helps you observe your cloud resources and provides actionable insights?

  • CloudWatch
  • CloudFormation
  • Cloud9
  • CloudTrail

Which AWS service provides a secure and resizable compute platform with choice of processor, storage, networking, operating system, and purchase model?

  • Amazon Elastic Compute Cloud (EC2)
  • Amazon Dedicated Instance (DI)
  • AWS Lambda
  • Amazon Connect

Which EC2 storage mechanism is recommended when running a database on an EC2 instance?

  • Amazon Elastic Block Storage (EBS) instance snapshot
  • Local instance storage
  • Amazon Elastic Block Storage (EBS)
  • Elastic Volume Storage (EVS)

Which service allows you to track the name of the user making changes in your AWS account?

  • AWS CloudTrail
  • AWS CloudFormation
  • Amazon CloudWatch
  • AWS CloudAdvisor

Which method of accessing an EC2 instance requires both a private key and a public key?

  • AWS Systems Manager
  • Secure Shell (SSH)
  • EC2 Instance Connect (EIC)
  • AWS Management Console

Which service routes user traffic through AWS's global network infrastructure to ensure low latency for your gaming application?

  • Amazon S3 Transfer Acceleration
  • AWS Content Delivery Network (or ACDN)
  • Amazon CloudFront
  • AWS Global Accelerator

Which AWS service is a fully managed service that makes it easy for developers to publish, maintain, monitor, and secure application programming interfaces at any scale?

  • API Gateway
  • AWS VPN
  • AWS Direct Connect
  • Route 53

Which AWS service is a fully managed service that makes it easy for developers to publish, maintain, monitor, and secure application programming interfaces at any scale?

  • API Gateway
  • AWS VPN
  • AWS Direct Connect
  • Route 53

Which services allow you to send emails from your applications? Choose 2

  • Amazon Simple Email Service (SES)
  • Amazon Simple Notification Service (SNS)
  • Amazon Simple Queue Service (SQS)
  • Simple Alert Service (SAS)

In which of the following is CloudFront content cached?

  • Edge Location
  • Data Center
  • EBS
  • Availability Zone

What is CloudWatch?

  • It is a service used to provide reactive resource optimization.
  • It is a service used to track activity and API calls within your AWS account.
  • It is a service used to manage access keys.
  • It is a collection of services designed to monitor and observe cloud resources.

Which service can you use to deploy applications both on-premises or in the cloud, using Chef or Puppet?

  • CodeDeploy
  • Elastic Beanstalk
  • OpsWorks
  • CloudFormation

Which database services make it easy for you to set up, operate, and scale relational databases in the cloud?

  • Amazon DocumentDB
  • Amazon Aurora
  • Amazon Relational Database Service (RDS)
  • Amazon DynamoDB
  • Amazon Neptune

Which service helps you process big data workloads?

  • Data Pipeline
  • Elastic MapReduce (EMR)
  • Amazon Redshift
  • Glue

Amazon S3 offers multiple storage classes. Which storage class is best for archiving data when you want the cheapest cost and don’t mind long retrieval times?

  • S3 One Zone-Infrequent Access (S3 One Zone-IA)
  • S3 Glacier Deep Archive
  • S3 Standard-Infrequent Access (S3 Standard-IA)
  • S3 Standard
  • S3 Intelligent-Tiering

What data transport solution allows moving terabytes to petabytes of data to AWS, with additional capability of running computing locally, even when there is no network connection available?

  • AWS Snowmobile
  • AWS Direct Connect
  • AWS Snowcone
  • AWS Snowball Edge

Which machine learning service allows you to add image analysis to your applications?

  • Amazon Macie
  • Amazon Transcribe
  • Amazon Translate
  • Amazon Rekognition
  • Amazon Comprehend

Which service enables you to centralize and automate data protection across AWS services?

  • AWS Backup
  • Storage Gateway
  • Amazon Elastic File System (EFS)
  • Amazon Elastic Block Store (EBS)

Which services allow you to build hybrid environments by connecting on-premises infrastructure to AWS? Choose 2

  • AWS Global Accelerator
  • Site-to-Site VPN
  • AWS Direct Connect
  • Amazon CloudFront

What AWS services are used for notifications and messaging? Choose 2

  • Simple Notification Service (SNS)
  • Simple Email Service (SES)
  • Short Message Service (SMS)
  • Extensible Messaging and Presence Protocol (XMPP)

Which of the following is NOT true about Lambda?

  • Lambda is serverless.
  • Lambda can execute code in response to events.
  • Lambda scales automatically.
  • Lambda is recommended for processes that run for at least 15 minutes.

Which service supports workloads that need to remain on-premises due to latency or data sovereignty needs?

  • AWS Batch
  • AWS Fargate
  • AWS Outposts
  • Amazon Lightsail

What service could you recommend to a developer to automate the software release process?

  • CodeCommit
  • CodePipeline
  • CodeBuild
  • Cloud9

Which of the following is NOT true of Amazon Route 53?

  • Amazon Route 53 supports domain name registration.
  • Amazon Route 53 is a dedicated physical network connection from your on-premises data center to AWS.
  • Amazon Route 53 performs health checks on AWS resources.
  • Amazon Route 53 is a DNS service that routes users to applications.

Which service is a data warehousing solution?

  • AWS DataSync
  • Amazon ElastiCache
  • Amazon Relational Database Service (RDS)
  • Amazon Redshift

Which service allows developers to track issues on development projects via a dashboard?

  • CodeCommit
  • CodeStar
  • CodeDeploy
  • CodeBuild

Which AWS networking service enables you to provision a logically isolated section of the AWS cloud where you can launch AWS resources in a virtual network that you define?

  • Virtual Private Cloud (VPC)
  • Virtual Private Network (VPN)
  • Amazon Route 53
  • Direct Connect

When launching an EC2 instance, you’re able to select the tenancy model. Which tenancy models allow you to bring your own licenses? Choose 2

  • Dedicated Instances
  • Dedicated Tenancy
  • Shared Tenancy
  • Dedicated Hosts

Which analytics service allows you to query data in Amazon S3 using Structured Query Language (SQL)?

  • Amazon Athena
  • Amazon Elasticsearch
  • Amazon Kinesis
  • Amazon Elastic MapReduce (EMR)

Which storage service is a scalable file system that only works with Linux-based workloads?

  • Amazon Elastic Block Store (EBS)
  • Amazon Elastic File System (EFS)
  • Amazon FSx for Lustre
  • Amazon FSx for Windows File Server

Which service allows you to create access keys for someone needing to access AWS via the command line interface (CLI)?

  • AWS Identity and Access Management (IAM)
  • AWS Security Hub
  • Amazon Cloud Directory
  • AWS Secrets Manager

Which of the following are considered IAM best practices? Choose 2

  • Use the root account for daily administrative tasks.
  • Enable multi-factor authentication (MFA) for administrative accounts as well as the root user.
  • Use access keys to manage EC2 applications.
  • Implement strong password policies.

Which of the following are considered IAM best practices? Choose 2

  • Use the root account for daily administrative tasks.
  • Enable multi-factor authentication (MFA) for administrative accounts as well as the root user.
  • Use access keys to manage EC2 applications.
  • Implement strong password policies.

Select the FALSE statement regarding the pillars of the AWS Well-Architected Framework.

  • The Performance Efficiency pillar enables the ability to use computing resources efficiently as demand and technology changes.
  • The Cost Optimization pillar enables the ability to run systems to deliver business value at the lowest price point by utilizing a capital expenditures (CAPEX) model.
  • The Security pillar enables the ability to protect data, systems, and assets to improve your cloud security.
  • The Operational Excellence pillar enables the ability to support development, run workloads effectively, gain operational insights, and improve supporting processes and procedures.

In the shared responsibility model, what is the customer responsible for? Choose 2

  • Patching the host operating system (OS)
  • Patching the guest operating system (OS)
  • Firewall configuration and application security
  • Cloud infrastructure

Which service can integrate with a Lambda function to automatically take remediation steps when it uncovers suspicious network activity when monitoring logs in your AWS account?

  • Amazon GuardDuty
  • Amazon Inspector
  • AWS CloudTrail
  • AWS Systems Manager

How do you manage permissions for multiple users at once using AWS Identity and Access Management (IAM)?

  • Groups
  • Policies
  • Roles
  • EC2 security groups

Which service allows you to locate credit card numbers stored in Amazon S3?

  • Amazon Comprehend
  • Amazon Inspector
  • Amazon Macie
  • Amazon Rekognition

Which service allows you to locate credit card numbers stored in Amazon S3?

  • Amazon Comprehend
  • Amazon Inspector
  • Amazon Macie
  • Amazon Rekognition

Which service has a feature that can assist with compliance and auditing by offering a downloadable report that provides the status of passwords and MFA devices in your account?

  • AWS Trusted Advisor
  • AWS Systems Manager
  • AWS Secrets Manager
  • AWS Artifact
  • AWS Identity and Access Management (IAM)

Which service helps you control access to mobile and web applications?

  • Shield
  • Cognito
  • Macie
  • IAM

Which of the following are pillars of the AWS Well-Architected Framework? (Choose 3.)

  • Environmental Responsibility Pillar
  • Operational excellence pillar
  • Cost optimization pillar
  • Security pillar

Which of the following are tasks that only the root user can complete? Choose 2

  • Configure databases.
  • Close your AWS account.
  • Change the account name and email address.
  • Launch EC2 instances.

In the AWS shared responsibility model, what is AWS not responsible for? Choose 3

  • Decommissioning storage devices that have reached the end of life
  • Backup power generators
  • Setting permissions for objects stored in Amazon S3
  • Amazon Elastic Block Store (EBS) snapshots
  • AWS Lambda language versions
  • Amazon Relational Database Service (RDS) database backups

Which service protects your web application from cross-site scripting attacks?

  • Amazon Macie
  • AWS Web Application Firewall (WAF)
  • Amazon Inspector
  • AWS Shield

Which service allows you to record software configuration changes within your Amazon EC2 instances over time?

  • AWS Config
  • AWS Inspector
  • AWS Trusted Advisor
  • AWS Systems Manager

Which service allows you to generate encryption keys managed by AWS?

  • AWS CloudHSM
  • AWS Identity and Access Management (IAM)
  • AWS Key Management Service (KMS)
  • AWS Key Manager (KM)

What is the purpose of CloudHSM?

  • It is software used for encryption key management.
  • Its purpose is to manage and retrieve passwords or keys.
  • Its purpose is to enable you to easily generate and use your own encryption keys.
  • It will allow all users to view and access encryption keys.

Which service helps you manage on-premises and AWS licenses?

  • Systems Manager
  • Trusted Advisor
  • Certificate Manager
  • License Manager

Which service best reduces the operational overhead for your existing AWS cloud specialists?

  • AWS Managed Services
  • AWS Professional Services
  • Infrastructure Event Management
  • AWS Partner Network (APN) consulting partners

Which service alerts you to events that might impact your AWS environment?

  • CloudTrail
  • Marketplace
  • AWS Partner Network (APN)
  • Personal Health Dashboard

Which API allows you to receive price alerts when prices change?

  • API Gateway
  • Pricing Calculator
  • Price List API
  • Budgets

Which cost management tool allows you to see the most detailed information about your AWS bill?

  • AWS Budgets
  • AWS Cost Explorer
  • AWS Cost and Usage Reports
  • CloudWatch billing alarm

Which features of AWS reduce your total cost of ownership (TCO)? Choose 3

  • Elastic computing
  • Pay-as-you-go pricing model
  • Encryption keys
  • Multi-tenancy

Which service allows you to simplify billing by providing a single bill for all of your accounts?

  • AWS Cost Explorer
  • AWS Organizations
  • AWS Budgets
  • AWS Managed Services

Which tool allows you to compare your estimated service costs per Region?

  • AWS Cost Explorer
  • AWS Pricing Calculator
  • AWS Budgets
  • AWS Cost and Usage Reports

Who can assist with accelerating the migration of legacy contact center infrastructure to AWS? Choose 2

  • Enterprise Support
  • AWS Managed Services
  • AWS Professional Services
  • Marketplace
  • AWS Partner Network consulting partners

What is the easiest way for a customer on the AWS Basic Support plan to increase service limits?

  • Open a technical support case from the Support Center.
  • Open a service limit increase support case via telephone.
  • Open a service limit increase support case via email.
  • Open a technical support case via chat.

Which service provides the easiest way to set up and govern a secure, multi-account AWS environment?

  • AWS Security Hub
  • Control Tower
  • AWS Marketplace
  • AWS Trusted Advisor

Which service allows you to select and deploy operating system and software patches automatically across large groups of Amazon EC2 instances?

  • AWS Trusted Advisor
  • Amazon Inspector
  • AWS Systems Manager
  • AWS Control Tower

Which of the following usage types will always be free even after the 12-month Free Tier plan has expired?

  • 5,000 images processed by Amazon Rekognition
  • 750 hours of Amazon EC2 compute capacity
  • 1 million AWS Lambda requests per month
  • 750 hours of elastic load balancing

Which types of support cases are AWS Basic Support customers limited to? Choose 2

  • Technical support
  • System administration
  • Service limit increases
  • Account and billing

Which AWS service offers free public SSL/TLS certificates for specific integrated services like Elastic Load Balancing, Amazon CloudFront, and Amazon API Gateway?

  • Certificate Manager
  • Control Tower
  • Trusted Advisor
  • Organizations

Which feature allows you to track AWS costs by labeling resources using a key and value pair?

  • Reservation budget
  • Cost allocation tags
  • Usage budget
  • Cost budget

Which cost management tool gives you the ability to be alerted when the actual or forecasted cost and usage exceeds your desired threshold?

  • AWS Cost and Usage Reports
  • AWS Cost Explorer
  • Reserved Instance (RI) Reporting
  • AWS Budgets

Which AWS cost management tool allows you to view costs for the current month, the costs of the past 13 months, and also forecasts costs for up to 12 months?

  • AWS Cost and Usage Reports
  • AWS Cost Explorer
  • AWS Budgets
  • Savings Plans

Which service helps you manage on-premises and AWS licenses?

  • AWS Cost and Usage Reports
  • AWS Cost Explorer
  • AWS Budgets
  • Savings Plans

Which AWS Trusted Advisor real-time guidance recommendations are available for AWS Basic Support and AWS Developer Support customers? Choose 3

  • Service limit checks
  • AWS CloudTrail service down
  • Amazon S3 bucket permissions
  • Security Groups - Specific Ports Unrestricted

You're hosting a web application on EC2. After a few days of production usage, you notice the traffic to the web application far exceeds what was expected. You've decided to move to a larger instance type. What AWS principle does this represent?

  • Horizontal scaling
  • Durability
  • Elasticity
  • Vertical scaling

A DevOps engineer is planning for the deployment of an application that can't be impacted if an entire geographic location is affected by a disaster. How can the engineer deploy this application?

  • Place a load balancer in front of the application.
  • Deploy the application to multiple VPCs.
  • Deploy the application to multiple Regions.
  • Deploy the application to multiple subnets.

A company is considering a serverless architecture and wants to build and run applications without having to manage infrastructure. Which AWS services should the company consider using when building applications? Choose 4

  • EC2
  • DynamoDB
  • S3
  • Lambda
  • Fargate

A company is developing a new web application that has high availability requirements. How can the company increase availability when deploying the application? Choose 2

  • Deploy the application to the Region that is closest to most of its users.
  • Deploy the application to span across multiple Availability Zones (AZs).
  • CloudFront
  • Utilize a multi-Region deployment when deploying the application.
  • S3 Transfer Acceleration

A solutions architect is designing a system to withstand the failure of one or more components. What type of system is able to withstand failure?

  • Fault Tolerant
  • Secure
  • Durable
  • Elastic

A solutions architect is designing a system to withstand the failure of one or more components. What type of system is able to withstand failure?

  • Configure the load balancer to distribute incoming traffic across your registered targets in multiple Availability Zones
  • Set up multiple edge locations for your load balancer
  • Set up cross-Region Load Balancing
  • Set up more than 1 ALB

A startup is developing a new application. They don't know how to anticipate the usage or workload demands for the application. Which benefit of cloud computing will allow the startup to automatically adjust compute capacity based on demand?

  • Durability
  • Agility
  • High availability
  • Elasticity

A company is receiving automated alerts notifying them that their only production EC2 instance is continuously reaching 100% CPU utilization. When this happens, customers cannot make purchases and receive error messages stating they should try again later because all the company's servers are busy. As part of the solution, what could be used to add or replace EC2 instances of the same size automatically across AZs?

  • Horizontal scaling
  • Application Load Balancer
  • Network Load Balancer
  • Vertical scaling

Your company would like to begin using Auto Scaling to add servers when CPU utilization reaches a certain threshold (e.g., 70%). Which service can you use to trigger actions when CPU utilization crosses the threshold?

  • EC2 logs
  • Simple Notification Service
  • Elastic Load Balancing
  • CloudWatch Alarms

Which AWS service can help you optimize your AWS environment by giving recommendations to reduce cost, increase performance, and improve security?

  • AWS Trusted Advisor
  • AWS Inspector
  • AWS Optimizations
  • AWS CloudWatch

A company has underutilized servers in its on-premises data center. Unfortunately, they are still required to pay for idle resources. Which benefit of the cloud can help the company solve this problem?

  • Elasticity
  • Security
  • High Availability
  • Loose coupling

A retail company has EC2 On-Demand Instances running to serve customer transactions. There is a set pattern of traffic where demand is high at 2 points in the day, but the instances sit idle for much of the day. What is a good way to optimize these resources?

  • Write a script to stop instances when demand is low.
  • Use an Auto Scaling group to scale out and in based on demand.
  • Use Reserved Instances instead of On-Demand Instances.
  • Use an elastic load balancer to scale out and in based on demand.

When monitoring the health of their application, a company notices one of their EC2 instances seems to handle a lot more traffic than the other instances. How can the company evenly distribute the traffic across all of its servers so that one server is not overwhelmed with requests?

  • Elastic Load Balancing
  • Auto Scaling
  • Server Migration System (SMS)
  • Simple Notification Service (SNS)

A solutions architect is designing a new application for a customer. In designing the system, the architect recommends that content be cached to reduce latency to the end user. Which piece of the AWS global infrastructure allows for content to be cached and served from the nearest point to the user?

  • WS Outposts
  • Edge location
  • Availability Zone
  • Region

What is a geographical area of the world that is a collection of logically grouped data centers?

  • Edge location
  • Data center
  • Region
  • Availability Zone (AZ)

A developer is building a new application and is given the option to deploy the application on-premises or to the AWS Cloud. What benefits does the AWS Cloud provide over an on-premises deployment? Choose 3

  • Ability to focus on building the application instead of managing servers
  • By default, AWS provides automatic distribution of applications across Regions for higher availability
  • Ability to grow and shrink computing capacity based on demand
  • Automatic Multi-AZ deployment of databases to enhance availability
  • Ability to pay-as-you-go without upfront contracts or long-term commitments

AWS purchases computing resources in large quantities at lower costs and then passes volume discounts on to their customers. Which benefit of cloud computing does this demonstrate?

  • Eliminate guessing about your infrastructure capacity needs.
  • Pay only when you use computing resources.
  • Deploy applications in multiple Regions around the world.
  • Lower pay-as-you-go prices due to massive economies of scale.

Which is the most efficient AWS feature that allows a company to restrict IAM users from making changes to a common administrator IAM role created in all accounts in their organization?

  • Shield
  • Service control policies (SCPs)
  • GuardDuty IAM findings
  • IAM user policy

Under the AWS shared responsibility model, who is responsible for the configuration of infrastructure devices?

  • The responsibility to configure infrastructure devices is not part of the AWS shared responsibility model.
  • The customer is responsible for the configuration of infrastructure devices.
  • AWS is responsible for the configuration of infrastructure devices.
  • The responsibility to configure infrastructure devices is shared between the customer and AWS.

Which of the following is an AWS Well-Architected Framework design principle related to operational excellence?

  • Use serverless architectures first.
  • Assign only the least privileges required.
  • Deploy smaller, reversible changes.
  • Scale horizontally for resilience.

In order to support their auditing and compliance efforts, a company needs to produce a report to audit the effects of password lifecycle requirements. How can they access a report that lists all users in their account along with the status of the various credentials?

  • AWS Artifact
  • Redshift
  • QuickSight
  • IAM credential report

A developer doesn't want to hardcode the database password in their application code when developing a new application. Which service will help with accessing the password without having to hardcode it?

  • Key Management Service (KMS)
  • AWS Artifact
  • IAM credential report
  • Secrets Manager

What pillar of the Well-Architected Framework would include the use of information gathered through a workload process evaluation to drive adoption of new services or resources when they become available?

  • Reliability
  • Performance Efficiency
  • Security
  • Operational Excellence

Under the shared responsibility model for EC2, who is responsible for patching the guest operating system?

  • AWS is responsible for patching the guest operating system.
  • The responsibility to patch the guest operating system is not part of the AWS shared responsibility model.
  • The customer is responsible for patching the guest operating system.
  • The responsibility for patching the guest operating system is shared between the customer and AWS.

Configuring user permissions so that users can access only the resources they need to do their job follows what principle?

  • Principle of least privilege
  • Principle of minimum permissions
  • Principle of organizations
  • IAM principle

Which service allows users to record software configuration changes within servers running on-premises over time?

  • Config
  • Trusted Advisor
  • GuardDuty
  • Inspector

A company wants to provide access to an Amazon S3 bucket to all applications running on a Reserved Instance (RI) that's been assigned to a specific Availability Zone. What's the best way to give S3 access to all applications running on the EC2 instance?

  • Use an IAM policy with Amazon S3 access
  • Use an instance profile to pass an IAM role with Amazon S3 permissions to the EC2 instance
  • Use an IAM policy with administrator access
  • Use an IAM user

How would you create and manage access keys for users that need to access AWS services from the AWS Command Line Interface (CLI)?

  • Software development kit (SDK)
  • Identity and Access Management (IAM)
  • Control Tower
  • Systems Manager

Which of the following is used to secure Amazon S3 buckets?

  • Bucket access policy
  • API key
  • Security group
  • Access keys

A developer wants to be alerted when an EC2 running their application is approaching 100% CPU utilization. Which service helps the developer do this in an automated way?

  • CloudFormation
  • CloudWatch
  • Cost budgets in AWS Budgets
  • CloudTrail

Under the shared responsibility model, which task is AWS' responsibility when managing AWS Lambda functions?

  • Ensuring the Lambda function has the proper IAM permissions to access other services and resources
  • Managing the versions of Lambda function code
  • Upgrading function code when new versions of programming languages are released
  • Managing the Lambda runtime environment

A security administrator is setting up a new IAM user and has decided to grant the least privilege. What does the principle of least privilege mean?

  • Granting the minimum requirement to perform a task
  • Granting permission to only 1 user to perform a task
  • Granting permissions to only users that have MFA enabled on their account
  • Granting permissions at the group level only

A company is in the process of migrating its workloads to AWS, and they want to develop and implement security policies. What are some of the recommended best practices for Identity and Access Management (IAM) they can put in place to make sure their accounts are secure? Choose 3

  • Allow users to pick their own passwords that are easy to remember.
  • Create individual users instead of using root.
  • Grant users full access to just the services they need.
  • Enable MFA for privileged users
  • Do not share access keys.

A company is hosting a public-facing static website out of an S3 bucket. When reviewing website analytics and traffic, the company is surprised to learn the website is accessed by millions of users around the globe. The company wants to ensure all its users are seeing fast response times. Which AWS service will help to deliver this website globally with low latency?

  • CloudFormation
  • WAF
  • CloudFront
  • S3 Transfer Acceleration

Which of the following is TRUE when considering subnets in a VPC?

  • Subnets within a VPC can only communicate with each other if an internet gateway is deployed.
  • By default, all subnets within a VPC can communicate with each other.
  • Subnets within a VPC can only communicate with each other if a NAT gateway is deployed.
  • By default, subnets within a VPC cannot communicate with each other.

A company would like to build an application that supports multiple languages. Which machine learning service allows the company to add localization to their application?

  • Polly
  • Translate
  • SageMaker
  • Rekognition

Which of the following are classified as migration services?

  • AWS OpsWorks
  • AWS Snowball
  • AWS Application Discovery Service
  • AWS Config

How can Auto Scaling help your resources handle changes on demand?

  • By adding or removing storage based on conditions you specify
  • By increasing or decreasing the size of your storage based on conditions you specify
  • By adding or removing EC2 instances from your EC2 fleet based on conditions you specify
  • By increasing or decreasing the size of your EC2 instances based on conditions you specify

For which of the below is S3 a suitable storage solution? Choose 2

  • Operating systems
  • Pictures
  • Documents
  • Databases

In order to improve fault tolerance, you would like to begin using services that provide fault tolerance. Which AWS services provide automatic replication across Availability Zones? Choose 2

  • EC2
  • VPC
  • S3
  • DynamoDb

You have just created a new bucket and uploaded a file into it. Will this be automatically viewable by anyone on the internet?

  • Only if you have an internet gateway
  • Only if you have a NAT gateway
  • Yes - by default, buckets and their contents are public
  • No - by default, buckets and their contents are private

A company that owns several warehouses (used to store and resell millions of like-new, open-box, and pre-owned items) would like to analyze images from their on-premises cameras to automatically detect if employees are wearing head covers (helmets) and other protective equipment. Which service can be used to perform the image analysis?

  • Rekognition
  • Lex
  • Translate
  • Polly

A solutions architect wants to design an application architecture that reduces the risk of cascading failures between components. Which design principles should be considered when planning the cloud architecture? Choose 2

  • Design the architecture to leverage inter-dependencies
  • Utilize loosely coupled components
  • Build monolithic systems
  • Design the architecture to reduce inter-dependencies
  • Utilize tightly coupled components

Which of the following allows you to make entire buckets (like 1 hosting an S3 website) public?

  • Bucket policies
  • Access policies
  • Access control lists
  • Bucket control lists

By default, what can a private subnet communicate with? Choose 2

  • Private subnets in a different VPC
  • The internet
  • Public subnets in the same VPC
  • Other private subnets in the same VPC
  • Public subnets in a different VPC

Which of the following services helps you deliver content to your customers faster?

  • S3
  • Elastic Block Store
  • CloudFront
  • Amazon Elastic File System

In order to maintain HIPAA (Health Insurance Portability and Accountability Act) compliance, insurance providers and health plans must archive past patients' personal health information. The data will be accessed, at most, once or twice a year when requested by the Office for Civil Rights to ensure compliance. Which AWS service will provide the most cost-effective solution for storage and retrieval of these files?

  • ElastiCache
  • DynamoDB
  • S3 Glacier Deep Archive
  • Artifact

A customer is migrating their on-premises data center to AWS and has bandwidth constraints. Which service allows them to transport exabyte-scale datasets into AWS in a cost-effective and secure manner?

  • DataSync
  • Snowmobile
  • Snowcone
  • Snowball

A large manufacturing company would like to provide real-time feedback to machine operators regarding optimum machine speeds enabling less experienced operators to detect breaks earlier and maintain quality. Which service will allow the company to train and deploy a machine learning model that can detect machine issues early?

  • SageMaker
  • Polly
  • Translate
  • Lex

When you upload an object to S3 storage, where will AWS keep it?

  • In AWS' central global storage site in the us-east-1 Region
  • In a single, central location within the Region you select
  • In multiple Availability Zones within the Region you select
  • In multiple Regions across the globe

A customer would like to store secondary backup copies of on-premises data to the cloud. The customer is not concerned about an extra level of protection by geographic redundancy but requires rapid access to the data when it is needed. Which Amazon S3 storage class should be used as the lowest cost option with rapid access?

  • S3 Standard
  • S3 One Zone-Infrequent Access
  • S3 Standard-Infrequent Access
  • S3 Glacier Deep Archive

You have a variable and intermittent workload, so you want to use a compute service that allows you to pay only for the compute resources you use, without paying for compute time when your code isn't running. Which of the following services should you use?

  • Outposts
  • Lambda
  • Lightsail
  • EC2

As an IT support center team member, you begin receiving calls from users about problems they're experiencing with your company's AWS-based point-of-sale system. You want to begin your investigation by checking with AWS for any service alerts they may be communicating. Which AWS tool will you give you the information you seek?

  • AWS Partner Network (APN)
  • AWS Personal Health Dashboard
  • AWS Trusted Advisor
  • Marketplace

AWS VPC is a component of which of the following overall service categories?

  • Compute
  • Migration Services
  • Database
  • Storage
  • Management Tools
  • Networking and Content Delivery

A company has designed a hybrid architecture and needs to connect its on-premises database to an application running on an EC2 instance in the AWS cloud using a fast, private, and secure manner. Which method allows the company to privately connect on-premises to the cloud?

  • Public internet
  • VPN tunnel using AWS VPN
  • Direct Connect
  • VPC peering

A customer wants access to the full set of Trusted Advisor checks. What's the minimum support plan they need to have access to?

  • Basic Support
  • Enterprise Support
  • Business Support
  • Developer Support

A company would like someone to help them coordinate access to AWS subject matter experts when they need help. Which support plan do they need to have?

  • Enterprise
  • Basic Support
  • Business
  • Developer Support

A company is considering migrating its applications to AWS. Which costs should the company consider when comparing its on-premises total cost of ownership (TCO) to the TCO when running on AWS? Choose 3

  • Help desk support costs
  • Software development
  • Hardware and infrastructure
  • Software license costs
  • Data center cooling, power, and space requirements

You have upgraded your AWS Support plan to the Business Support level. What is true of the Business Support plan?

  • < 1 hour response time support when your production system goes down.
  • < 15 minutes response time support if your business-critical system goes down.
  • < 24 hours response time support when your production system goes down.
  • < 15 minutes response time support when your production system goes down.

How can a customer with the Enterprise Support plan get help with billing and account questions?

  • AWS Community Forums
  • Contact the Support Concierge team.
  • Technical Account Manager (TAM)
  • AWS Online Tech Talks
  • Use the AWS Support API to programmatically open a case with AWS Support.

You need to visualize, understand, and identify trends for future charges, as well as manage your AWS costs and usage over time. Which AWS tool would you use?

  • AWS Cost and Usage Report
  • AWS Cost Explorer
  • Amazon CloudWatch
  • Trusted Advisor

A company wants to ensure all AWS accounts in their environment conform to company-wide policies. Which services can help?

  • Organizations
  • Trusted Advisor
  • Control Tower
  • Systems Manager

A project manager wants to identify, organize, search for, and filter all EC2 instances belonging to the Marketing department for budget management purposes. What is the best strategy for the project manager to identify Marketing resources?

  • Use Systems Manager
  • Open a case with AWS Support
  • Use tags
  • Talk with a Technical Account Manager (TAM)

A customer is on the Enterprise Support plan, and they've reported a business-critical system down support case. What is the guaranteed response time from AWS Support?

  • Less than 24 hours
  • Less than 1 hour
  • Less than 15 minutes
  • Less than 5 minutes

Which AWS tool is specifically designed to help a company estimate their potential cloud bill for migrating workloads and calculate the overall total cost of ownership (TCO) based on their proposed workloads?

  • The company can use the Cost Explorer to visualize its estimated TCO.
  • The company can research the published prices of the AWS services and manually calculate the estimate.
  • The company can use the AWS Pricing Calculator.
  • The company can open an account and billing support case with AWS Support to get help with estimating the TCO.

A developer deployed an application that consisted of 1 Lambda function, a DynamoDB table, and a firewall using Web Application Firewall (WAF) via the AWS Command Line Interface (CLI). When attempting to access the application's resources via the AWS Management Console, the developer cannot find the Lambda function or DynamoDB table. What could be the problem?

  • The default rules in WAF prevent everyone on the internet from accessing the application unless specifically granted.
  • The developer is probably in a different Region from where the resources were initially deployed.
  • The developer probably forgot to assign the appropriate IAM access permissions to themselves before closing the CLI.
  • The developer probably forgot to issue the "save" command when using the CLI.

A company is rearchitecting its monolithic application using a microservices architecture. Which design principle for cloud architecture should the company consider?

  • Implement loose coupling.
  • Manually monitor systems for failure.
  • Build interdependent systems.
  • Implement tight coupling.

When considering common cloud computing models, which model is Amazon Elastic Compute Cloud (AWS EC2) an example of?

  • Infrastructure as a Service (IaaS)
  • Software as a Service (SaaS)
  • FaaS (Function as a Service)
  • Platform as a Service (PaaS)

A new web application is getting much more traffic than expected. You decide to add another EC2 instance to share the load. Which AWS concept best describes the act of changing the number of instances using the same instance size?

  • Horizontal scaling
  • Durability
  • Vertical scaling
  • Elasticity

A company is considering establishing a dedicated network connection from their on-premises data center to their AWS Cloud environment. They want a private connection that provides a more consistent network experience than the internet. Which cloud type gives access to the cloud from on-premises infrastructure?

  • Public cloud
  • Multi-cloud
  • Hybrid cloud
  • Private cloud

During disaster recovery exercises, you need to re-route traffic from EC2 instances to instances in another Region. With which service can you do this?

  • VPC Peering
  • Route 53
  • AWS Auto Scaling
  • CloudFront

The CTO of a software company has requested an executive summary detailing the advantages of a potential move to the AWS Cloud. What can you say is an advantage of an RDS database over a traditional database?

  • AWS maintains the underlying OS and performs software patching on the database.
  • There is much greater access for DBAs.
  • It is much easier to convert to a NoSQL database.
  • It is 5 times faster than traditional databases.

Your company is moving to the AWS Cloud and is reviewing the shared responsibility model. Which item is entirely the responsibility of AWS?

  • Storing CloudFormation templates in another region for disaster recovery.
  • Physical and environmental controls
  • Implementing IAM groups
  • Patching of the guest OS

Your company has decided to use Amazon WorkSpaces. They can use Amazon WorkSpaces to provision either Windows or Linux desktops in just a few minutes. What type of solution is this?

  • PaaS
  • IaaS
  • SaaS
  • DaaS

Your company has decided to use Amazon WorkSpaces. They can use Amazon WorkSpaces to provision either Windows or Linux desktops in just a few minutes. What type of solution is this?

  • PaaS
  • IaaS
  • SaaS
  • DaaS

Which AWS service can provide a Desktop as a Service (DaaS) solution?

  • AWS Systems Manager
  • Elastic Beanstalk
  • Amazon WorkSpaces
  • EC2

Deploying your EC2 instances across multiple AZs will help address which cloud concept?

  • High availability
  • Elasticity
  • Scalability
  • Automation

A company is considering moving its data and applications to the cloud. What are some of the benefits of moving to the cloud? Choose 2

  • Gain access to AWS Support, a team of dedicated AWS experts, to help with custom software development.
  • Shift the responsibility of security to AWS.
  • Operate production workloads that are more highly available, fault tolerant, and scalable.
  • Provision exactly the right type and size of computing resources you need.

A company can provision a new EC2 instance at the click of a button, which reduces the time to make those resources available to their development team from weeks to just minutes. Which benefit of cloud computing does this demonstrate?

  • Go global in minutes.
  • Trade capital expense for variable expense.
  • Increase speed and agility.
  • Stop spending money running and maintaining data centers.

You are reviewing the AWS Shared Responsibility model to present an overview to management on what your company is responsible for in AWS. Which option is a customer responsibility?

  • Customer data
  • Networking
  • Availability Zones
  • Edge locations

Which is a core design principle for deploying resources in AWS?

  • Plan ahead for hardware capacity.
  • Estimate your S3 storage needs up front.
  • Use a tight coupling of your resources and applications.
  • Deploy in multiple Availability Zones.

Which statement below is one of the 6 advantages of cloud computing?

  • Trade variable expense for capital expense.
  • Easily guess capacity.
  • Benefit from increased speed and agility.
  • Benefit from minor economies of scale.

Which benefit of cloud computing is demonstrated when you don't have to plan ahead of time how much capacity you will need to run your applications?

  • Elasticity
  • Durability
  • High availability
  • Agility

A company is using Trusted Advisor to ensure they are following AWS best practices. What real-time guidance does Trusted Advisor provide? Choose 3

  • Low utilization on EC2 instances
  • Upcoming user interface changes to the console
  • Amazon services down
  • Open-access permissions for S3 buckets
  • Exposed access keys

Which of the following acts like built-in firewalls per instance for your virtual servers?

  • Network access control lists
  • Security groups
  • Route tables
  • Availability Zones

Which of the below are TRUE when running a database in an EC2 instance? Choose 3

  • AWS is responsible for managing access to the database.
  • The customer is responsible for managing access to the database.
  • AWS is responsible for updating the database software.
  • AWS is responsible for updating the guest operating system.
  • The customer is responsible for updating the guest operating system.
  • The customer is responsible for updating the database software.

Which are focuses of the security pillar of the Well-Architected Framework? Choose 2

  • Track who did what and when.
  • Only encrypt data in transit.
  • Assign only the least privilege required.
  • Perform tasks manually.

Which of the following are focuses of the performance efficiency pillar of the Well-Architected Framework? Choose 2

  • Use multi-region deployments.
  • Use a serverless architecture first.
  • Experiment with on-premises resources.
  • Delegate tasks to internal engineers.

Which security concept confirms that users are who they say they are, by presenting an identity (username) and providing a verification (password)?

  • Root user
  • Principle of least privilege
  • Authorization
  • Authentication

When AWS uses tape media to perform backups in their data centers, who would be responsible for their safe and secure disposal?

  • Customer
  • AWS
  • Shared Responsibility
  • Third Parties

Which of the following are pillars found in the AWS Well-Architected Framework? Choose 2

  • Cost Optimization
  • Deploying to multiple Availability Zones
  • Encrypting data at rest
  • Operational Excellence
  • Performance Optimization

Under the shared responsibility model, which of the following is an example of security of the cloud? Choose 3

  • Applying security patches to the guest operating system
  • Managing the AWS global infrastructure
  • Protecting the data center infrastructure
  • Managing network traffic
  • Maintaining networking components

Broadly speaking, as a customer of AWS, you are responsible for:

  • Security OF the Cloud
  • No security — AWS will manage all security for you
  • Security IN the Cloud
  • Security both IN and OF the Cloud

Select all the TRUE statements regarding the AWS Shared Responsibility Model. (Choose 3).

  • Customers are responsible for security "in" the cloud.
  • AWS is responsible for managing EC2 client firewalls.
  • The customer is responsible for managing the underlying EC2 instance hypervisor.
  • AWS manages the hardware and AWS Global Infrastructure.
  • AWS is responsible for security "of" the cloud.

Which of the following are best practices when it comes to securing your AWS account? Choose 5

  • Activate MFA on the root account
  • Use groups to assign permissions
  • Delete your root access keys.
  • Delete your root account password.
  • Store your root account keys on your application for easy access.
  • Create individual IAM users
  • Apply an IAM password policy

Which of the below is true about root accounts on AWS? Choose 2

  • Speak with each IAM user individually about the importance of creating strong passwords.
  • Hold an AWS webinar to stress the importance of creating strong passwords.
  • Ask for the password of each user and create a much stronger one by yourself.
  • Apply an IAM password policy to ensure users create appropriately strong passwords.

The root user has full access to everything in the AWS account. Choose 2

  • The root user should be disabled after you create an admin user.
  • The root user is the recommended way to work in the AWS Console.
  • The root user should not be used for day-to-day activities.
  • The root user will be used by AWS should they need to help you with something in your account.

You are a Systems Administrator who has just started adding IAM users to your company’s AWS account. However, you worry that the users will not create passwords strong enough to prevent unauthorized access. What is the most reliable way to ensure that users are using strong passwords?

  • Speak with each IAM user individually about the importance of creating strong passwords.
  • Hold an AWS webinar to stress the importance of creating strong passwords.
  • Ask for the password of each user and create a much stronger one by yourself.
  • Apply an IAM password policy to ensure users create appropriately strong passwords.

You just had a Data Analyst join the company, and you have been tasked with creating a new IAM user accordingly. Although the user has received all the necessary credentials, she realized that she cannot perform any Amazon RDS actions on the Clients table. Which of the following are possible solutions to this issue? Choose 2

  • Create an identity-based policy.
  • Create a ticket for the Help Desk to resolve the issue.
  • Double-check the credentials you sent to the user.
  • Add the user to the group that has the necessary permission policy.
  • Supply the password necessary to log into the AWS Console.

According to the AWS Shared Responsibility Model, which of the following is the customer responsible for? Choose 3

  • Virtual Private Clouds (VPCs)
  • Security groups
  • Subnets
  • Amazon VPC service infrastructure

Which of the following are load balancer types offered by AWS? Choose 3

  • Application
  • Classic
  • Service
  • Database
  • Network
  • Web
  • Original

A company is using CloudTrail to simplify operational analysis and troubleshooting. When tracking user activity, which content fields does CloudTrail track when a user accesses the AWS Management Console? Chooose 2

  • Username
  • Resource tag
  • Previous state of the affected resource
  • Availability Zone
  • Region

You need to allow IPv4 resources in a private subnet to connect to services outside your VPC, but you can't allow external services to initiate a connection with those private IPv4 resources. Which of the following must be present to enable this access?

  • Network access control lists
  • Security groups
  • Route tables
  • NAT gateway

Which of the following engines are classified as relational databases on AWS? Choose 2

  • Redshift
  • DynamoDB
  • Aurora
  • MariaDB

A company would like to add a support chatbot to the help page on their website. Which service will allow the users to build a conversational interface using voice and text?

  • Lex
  • Polly
  • Translate
  • Rekognition

Which of the following can be specified as an origin when creating a CloudFront distribution? Choose 3

  • An RDS instance
  • An elastic load balancer
  • A domain name
  • An S3 bucket

Which of the following allows you to restrict access to an entire S3 bucket?

  • Bucket policies
  • Bucket control lists
  • Access policies
  • Access control lists

Upon attempting to create an additional S3 bucket, you realize you have reached your S3 bucket limit in your AWS account. You anticipate creating even more S3 buckets in the future for your photos and documents. Which of the following is the best long-term solution?

  • Submit a service limit increase.
  • Simply create the S3 bucket; AWS will automatically override the bucket limit.
  • Consolidate files into half of the S3 buckets and delete the empty ones.
  • Delete the S3 buckets you barely use.

Which storage service can provide very high durability storage for objects?

  • Amazon S3
  • Amazon Aurora
  • RDS MySQL
  • DynamoDB

You have been tasked with creating identical, repeatable infrastructure for your customers. Which service will you use?

  • AWS Config
  • CloudFront
  • CloudFormation
  • CloudWatch

After experiencing unusual behavior in your AWS account, you need to determine if there are any issues with AWS that may be affecting your account. What section of the AWS Management Console helps you inspect account alerts and find remediation guidance for your account?

  • AWS Health Dashboard
  • AWS Knowledge Center
  • AWS SNS
  • AWS CloudWatch

Which of the following best describes DynamoDB?

  • DynamoDB is a Mongo database.
  • DynamoDB is a SQL database.
  • DynamoDB is a MySQL database.
  • DynamoDB is a NoSQL database.

A user has created several IAM users in their account to perform administrative and general tasks. How can the user monitor and track the IP address of the users performing activities in their account?

  • Managed Services
  • CloudTrail
  • OpsWorks
  • CloudWatch

Which of the following tools provides a view of the performance and availability of your AWS services based on your requirements?

  • AWS Trusted Advisor
  • AWS Health Dashboard
  • AWS Knowledge Center
  • AWS Systems Manager

You have a MySQL database that you want to migrate to the cloud, and you need it to be significantly faster there. You are looking for a speed increase up to 5 times the current performance. Which AWS offering could you use?

  • Amazon Aurora
  • DynamoDB
  • ElastiCache
  • Amazon RDS MySQL

You want to use an AWS service that enables you to notify select Tech Support members in your company (via email) of any cloud-related issues to attend to. Which of the following services will accomplish that?

  • Simple Queue Service
  • Simple Notification Service
  • Simple Workflow Service
  • Simple Email Service

Which of the following database migrations are classified as heterogeneous? Choose 2

  • Oracle to Amazon Aurora PostgreSQL
  • MySQL to Amazon Aurora MySQL
  • Microsoft SQL Server to Amazon Aurora PostgreSQL
  • Oracle to Amazon RDS for Oracle

A developer would like to access AWS services from application code. How can a developer achieve this?

  • CodePipeline
  • Software Development Kit (SDK)
  • CodeCommit
  • CodeBuild

Your employer, a major digital media company, needs you to implement an AWS service that delivers its dynamic web content worldwide, relying on edge locations to improve latency. Which of the following services should you pick to accomplish that?

  • CloudFront
  • CloudTrail
  • CloudWatch
  • CloudConnect

Which of the following can be used to author CloudFormation templates? Choose 2

  • YAML
  • CAMEL
  • JSON
  • Python

You are trying out AWS on a trial basis and need to deploy a web application without having to configure servers. Which AWS service can you use?

  • CloudFormation
  • Elastic Beanstalk
  • ECS
  • Auto Scaling

What benefits can CloudFront bring to your e-commerce website? Choose 3

  • Lower latency for customers of your e-commerce website
  • Advanced analytics into customer journeys
  • Protection against network and application layer attacks via WAF
  • A scalable managed database that integrates seamlessly with Lambda and EC2
  • Increased application availability

A company has multiple AWS accounts across many departments. They are considering using Organizations to group all their accounts under 1 master payer account. What are the benefits of using Organizations? Choose 3

  • They can reduce costs by sharing resources across accounts.
  • They can automatically be alerted when new accounts are set up.
  • The IAM integration allows for IAM users to be deleted automatically when an account is closed.
  • They can easily add new accounts or create new accounts.
  • They can receive 1 bill for all their AWS accounts.

A company has made the decision to migrate its internal on-premises data center to the cloud. Who can help the company plan and conduct the migration? Choose 2

  • AWS Infrastructure Event Management
  • Consulting partner from the AWS Partner Network (APN)
  • Marketplace
  • AWS Support

An independent developer needs help with monitoring service limits to ensure they don't exceed free-tier usage on their account. Which services will help them monitor service limits? Choose 2

  • Inspector
  • GuardDuty
  • CloudWatch
  • Trusted Advisor
  • Config

A company would like to reduce operational overhead when operating AWS infrastructure. Which service can help them do this?

  • Managed Services
  • Technology partner from the AWS Partner Network (APN)
  • Consulting partner from the AWS Partner Network (APN)
  • Professional Services

Which AWS service would enable you to view the spending distribution in 1 of your AWS accounts?

  • AWS Cost Explorer
  • Billing Advisor
  • AWS Spending Explorer
  • AWS Organizations

Your Finance Department has instructed you to save costs wherever possible when using the AWS Cloud. You notice that using reserved EC2 instances on a 1-year contract will save money. What payment method will save the most money?

  • All Upfront
  • Deferred
  • No Upfront
  • Partial Upfront

A small software company is starting to work with the AWS Cloud. Which service will allow them to find, test, buy, and deploy software that runs on AWS?

  • ElastiCache
  • Organizations
  • AWS Marketplace
  • Service Catalog

Your company is considering migrating its data center to the cloud. Which of the following is an advantage of the AWS Cloud over an on-premises data center?

  • Replace upfront capital expenses with low variable costs.
  • Replace low variable costs with upfront capital expenses.
  • Replace upfront operational expenses with low variable operational expenses.
  • Maintain physical access to the new data center but share responsibility with AWS.

You are managing the company's AWS account. The current support plan is Basic, but you would like to begin using Infrastructure Event Management. What support plan (that already normally includes Infrastructure Event Management) should you upgrade to?

  • Upgrade to the Enterprise plan.
  • Upgrade to the Business plan. No other steps are necessary.
  • Upgrade to the Developer plan.
  • Do nothing. It is included in the Basic plan.

You have many database backups you need to store for an indefinite amount of time. If the backups are ever needed, they just need to be retrieved within 4 hours. What is the lowest-cost solution for this scenario?

  • Amazon S3 Standard-IA
  • Amazon S3
  • S3 Glacier Flexible Retrieval (formerly S3 Glacier)
  • Amazon EFS

Your sales operations group would like to perform monthly analyses on large amounts of sales activity. They want to be able to rank the performance of different territories, product categories, and sales channels. They will use visualization tools to generate graphical representations of the data. Which AWS service will provide the best solution for storing the sales data?

  • Amazon Redshift
  • Amazon ElastiCache
  • Amazon DynamoDB
  • Amazon Aurora

You need to stream data in real time for a dashboard application. Which AWS service would you use?

  • AWS CloudWatch
  • AWS CloudTrail
  • Amazon Redshift
  • AWS Kinesis

How can a customer on the Developer Support plan open a system impaired support case?

  • Contact the Technical Account Manager (TAM) via chat.
  • Open a technical support case via chat.
  • Contact the Support Concierge team via phone.
  • Open a technical support case via email.

A large company is using multiple AWS accounts and would like to benefit from available volume discounts in AWS. Which AWS feature will enable the company to get volume discounts?

  • Contact AWS to request volume discounts.
  • Use AWS Organizations and its consolidated billing feature to consolidate billing and payment for multiple AWS accounts.
  • Use free tier as much as possible.
  • Upgrade to an Enterprise Support plan

A company is considering the cloud deployment models when planning a new application. Which deployment model allows the company to fully stop spending money running and maintaining data centers?

  • Public cloud
  • Private cloud
  • Infrastructure as a Service (IaaS)
  • Hybrid cloud

Which type of user is created when you initially sign up for an AWS account?

  • Limited access user
  • Full access user
  • Administrator user
  • Root user

You have an EC2 instance that contains a web application being put into operation. To prepare for the application going live for public use, you add a few more instances in a distributed manner in order to handle an increase in load. Which concept is used to measure a system's ability to grow to accommodate an increase in demand?

  • Durability
  • Reliability
  • Scalability
  • Elasticity

Under the shared responsibility model, for which of the following does AWS NOT assume responsibility?

  • Hypervisors
  • Physical security of AWS facilities
  • Networking
  • Customer data

Which AWS design principle can be a valuable feature when deploying applications?

  • Regional coupling
  • Loose coupling
  • Tight coupling
  • Hardware coupling

Which statement is true regarding the AWS Global Infrastructure?

  • Each AWS Region consists of multiple, isolated, and physically separate AZs within a geographic area.
  • Edge locations contain Regions.
  • Each AWS Availability Zone contains multiple Regions.
  • Availability Zones contain edge locations

Which of the following is correct regarding the number of Regions, Availability Zones, edge locations, and data centers?

  • There are more Availability Zones than Regions
  • The number of Availability Zones is the same as the number of Regions.
  • There are more Regions than Availability Zones.
  • There are more Availability Zones than edge locations

Using Infrastructure as Code (IaC) is related to which cloud concept?

  • Scalability
  • Elasticity
  • High availability
  • Automation

Which of the following is an AWS global service?

  • EC2
  • RDS
  • CloudFront
  • VPC

Which AWS service can you use to connect your AWS Cloud with an on-premises data center?

  • VPC peering
  • IAM
  • Internet gateway
  • Virtual private gateway

Which AWS service can you use to connect your AWS Cloud with an on-premises data center?

  • VPC peering
  • IAM
  • Internet gateway
  • Virtual private gateway

Which of the following is an AWS global service?

  • VPC
  • IAM
  • Amazon RDS
  • EC2

What defines long-term data protection?

  • Agility
  • High availability
  • Elasticity
  • Durability

Your company has decided to migrate entirely to the AWS Cloud. Which answers are a part of the 6 advantages of cloud computing? Choose 2

  • Trade variable expense for capital expense.
  • Benefit from minor economies of scale.
  • Stop spending money running and maintaining data centers.
  • Go global in minutes

What are the ways a user can access resources in their AWS account? Choose 3

  • AWS Command Line Interface (CLI)
  • API Gateway
  • Application code
  • AWS Management Console

Which of the following statements about AWS Regions is true? Choose 2

  • Regions are generally specific geographical areas.
  • Regions are automatically fully synchronized to contain the same data globally
  • Regions are user-defined constructs.
  • Regions are made up of Availability Zones.

The Chief Marketing Officer of the hotel chain you work for would like to develop a solution to enable voice recognition capabilities in rooms, so customers can request services without picking up the phone. Competitors have already begun rolling out these technologies in an attempt to improve their customers' experience. Which benefit of the AWS Cloud would you most emphasize to the CMO in your business case for creating an AWS-based solution that allows you to innovate more quickly and deliver your applications faster, as a response to your competitors?

  • Cost savings
  • Agility
  • Deploy globally in minutes
  • Elasticity

Which of the following are characteristics of Regions? Choose 3

  • They contain only the resources and services specifically deployed to them.
  • They are grouped in geographic locations.
  • They are fully independent and isolated.
  • They are dependent and shared.

Which policy will provide information on performing penetration testing on your EC2 instances?

  • JSON policy
  • IAM policy
  • AWS Customer Agreement
  • Customer Service Policy for Penetration Testing

A customer needs to identify vulnerabilities on their EC2 instances, such as unintended network access. Which services will provide a report of findings? Choose 2

  • Inspector
  • Trusted Advisor
  • Macie
  • IAM credential report
  • AWS Artifact

What AWS service protects against distributed denial of service (DDoS) attacks at the network and transport layers (layer 3 and 4) and the application layer (layer 7)?

  • AWS WAF
  • DynamoDB
  • AWS Inspector
  • AWS Shield Advanced

A customer is managing multiple AWS accounts using AWS Organizations. What can the customer use to restrict the same permissions across all AWS accounts managed under AWS Organizations using minimal effort?

  • S3 bucket policy
  • IAM organization policy
  • IAM user policy
  • Service control policies

Which of the following is a design principle of the Well-Architected Framework's reliability pillar?

  • Maximize utilization
  • Recover from failure automatically
  • Scale vertically for resilience
  • Implement recovery procedures without testing

You are concerned about access to your top-secret application by stolen passwords. What additional layer of security can you add for logging in to the AWS Management Console, in addition to user passwords?

  • AWS Transcribe
  • Secret access keys
  • Multi-factor authentication
  • AWS Voice Recognition

An oil and gas utility company which is highly regulated must create a Cloud governance scheme. The company is organized into multiple autonomous departments which will all be using AWS resources. These departments each sponsor independent projects that are reviewed by regulatory boards for the approval of customer price increases. The code and infrastructure for each project has production, development, and testing environments. Which of the following account strategies will maximize security and operational efficiency for the company?

  • Create multiple AWS accounts: 1 for the production environment, 1 for the development environment, and 1 for the testing environment for all departments.
  • Create a single AWS account for centralized security management.
  • Create multiple AWS accounts, 1 for each autonomous department within the company.
  • Create an Organizational Unit structure in AWS Organizations with separate underlying accounts for production, development, and testing environments.

A company is configuring IAM for its new AWS account. There are 5 departments with between 5 to 10 users in each department. How can they efficiently apply access permissions for each of these departments and simplify management of these users?

  • Create an IAM group for each department. Add the department's members to the group.
  • Create policies for each department that define the permissions needed. Create an IAM group for each department and attach the policy to each group. Add each department's members to their respective IAM group.
  • Create an IAM role defining the permissions needed. Create an IAM group and attach the policy to the group. Add the department's members to the group.
  • Create policies defining the permissions needed. Attach the policies to all users in each department.

A purchasing department staff member is set up as an AWS user in the company’s Procurement AWS account. At each month-end, the staff member needs access to an application running on EC2 in the company’s Accounts Payable AWS account to reconcile reports. Which of the following provides the most secure and operationally efficient way to give the staff member access to the Accounts Payable application?

  • Have the user request temporary security credentials for the application by assuming a role
  • Create a user for the staff member in the Accounts Payable AWS account.
  • Invoke an AWS Lambda function to run the application in the Accounts Payable AWS account.
  • Configure Active Directory integration so you can federate the staff member’s access to the Accounts Payable AWS account.

A customer has set up an Amazon S3 bucket and wants to limit access to specific users. What is the most efficient way to do so?

  • IAM user policy
  • Bucket access policy
  • IAM role assumed by the user
  • AmazonS3FullAccess managed policy

A customer has multiple IAM users that need the same access permissions. How can the customer provide the same access permissions to all the users quickly and efficiently?

  • By assigning users to an EC2 security group
  • By creating a policy and assigning it to each user
  • By assigning a preconfigured AWS managed policy to each user
  • By assigning users to an IAM group that has the needed permissions.

When talking about AWS security, what does "authentication" refer to?

  • Identifying who is accessing the system
  • Logging in to the Console
  • A user delegating access to another user temporarily
  • Evaluating what permissions a user has

When talking about AWS security, what does "authorization" refer to?

  • Evaluating what permissions a user has
  • A user delegating access to another user temporarily
  • Identifying who is accessing the system
  • Logging in to the Console

Under the shared responsibility model, which of the following is the customer’s responsibility when using Amazon RDS? Choose 4

  • Taking database backups
  • Managing infrastructure security in RDS
  • Creating and managing database users
  • Collecting monitoring data to debug failures
  • Using AWS encryption solutions to protect data

Which AWS service provides central governance and management across multiple AWS accounts?

  • AWS Organizations
  • CloudFormation
  • Identity and Access Management
  • AWS Systems Manager

Which credentials can you use to access the AWS Management Console?

  • Your access key
  • Your username and password
  • Your security token
  • Your secret access key

For a subnet to be public and send non-local traffic to the internet, we must update the route table of the public subnet and attach which of the following to the VPC that contains the subnet?

  • Network access control list
  • Route 53
  • Router
  • Internet gateway

An organization needs to run a MySQL relational database on AWS. They plan to hire their own database administrators to manage their databases, including taking backups, using replication, and clustering. Which option provides the customer the control and flexibility needed?

  • Use the Amazon Relational Database Service (RDS) to launch the MySQL database.
  • Open a case with AWS Support to have them assist the database administrators with the installation of the MySQL database.
  • Use Systems Manager to install the MySQL database directly to on-premises servers.
  • Install the MySQL database directly on an EC2 instance.

A company with a business-critical application needs to ensure business continuity and that they will not be impacted by capacity restraints in a given Region. How can the company ensure this? Choose 3

  • Savings Plan with a capacity reservation
  • Spot instance with a capacity reservation
  • Standard Reserved Instance (RI) with a capacity reservation
  • On-demand capacity reservation
  • Convertible Reserved Instance (RI) with a capacity reservation

When might Auto Scaling be used?

  • To control provisioning of S3 bucket capacity
  • To provision resources that can be adjusted once per 24-hour period
  • When you require scalable capacity to maintain service levels in your environment
  • Where predictable workload patterns exist

A company has developed a popular online multiplayer gaming application. How can the company enhance its players' online experience and improve overall application availability and reduce in-game latency?

  • Global Accelerator
  • CloudFront
  • Route 53
  • CloudTrail

Your team needs to begin monitoring the applications running in your AWS account by collecting metrics, logs, and events. Which AWS service can you use?

  • AWS Config
  • Amazon CloudTrail
  • AWS App Monitoring
  • Amazon CloudWatch

Which of the following is AWS' data warehousing service?

  • EMR
  • Snowball
  • Redshift
  • S3 Big Data

A company has provisioned an EC2 instance as a web server. The web application on the server is running within a subnet within a VPC. For some reason, the application is unable to access the internet. Which component is missing?

  • Network Access Control List (NACL)
  • Peering connection
  • Private IP address for the instance
  • Internet gateway

There have been some questionable activities in your AWS account. You need to review your event history, such as actions taken from the AWS Management Console and the CLI. Which service records this type of information?

  • IAM
  • Amazon CloudWatch
  • AWS CloudTrail
  • AWS Config

A new application rolled out by the development team is going to require load balancing of HTTP and HTTPS traffic. Which load balancer is best suited for this type of traffic?

  • Network Load Balancer
  • Classic Load Balancer
  • Application Load Balancer
  • HTTP Load Balancer

A company is planning for a one-time sale of 75% off all products on its website. They expect to see a short-term spike on the sale day. Which EC2 instance type should the company use to meet its requirements and maximize flexibility?

  • Standard Reserved Instance (RI)
  • EC2 Spot
  • Convertible Reserved Instance (RI)
  • On-Demand

A college student wants to quickly launch a WordPress website but doesn't have a lot of cloud experience. Which service will help the student launch the website with a low, predictable monthly fee?

  • Fargate
  • Lightsail
  • Outposts
  • EC2 instance

What AWS service lets you provision a logically isolated section of the AWS Cloud?

  • Amazon RDS
  • Amazon Route 53
  • Amazon Virtual Private Cloud
  • Elastic network interface

With which AWS service, coupled with EC2, can you implement elasticity by adding and removing instances as needed?

  • Elastic Beanstalk
  • AWS Systems Manager
  • Auto Scaling
  • CloudFormation

A company needs a scalable data warehouse to consolidate multiple data sources for reporting, where real-time transaction processing (insert, update, and delete) is not required. Which solution best supports this requirement?

  • Elastic MapReduce (EMR)
  • Relational Database Service (RDS)
  • Redshift
  • Data Pipeline

Which of the following are steps you should take in securing your AWS account? Choose 3

  • Assign policies directly to your administrative users
  • Use groups to delegate access to IAM users.
  • Activate Multi-factor Authentication (MFA) on your root account.
  • Create individual IAM users.

Your company is migrating its services to the AWS Cloud. The DevOps team has heard about Infrastructure as Code and wants to investigate this concept. Which AWS service would they investigate?

  • AWS CloudFormation
  • Elastic Beanstalk
  • AWS Lambda
  • CodeCommit

When analyzing application performance, a developer realizes the queries to the database are taking a long time. What can the developer implement to store common queries and improve performance?

  • Elastic Block Store (EBS)
  • CloudFront
  • Simple Queue Service (SQS)
  • ElastiCache

A developer has noticed several SQL injection attacks against a web application running on an EC2 spot instance. What is the best way to prevent this type of attack?

  • Private subnet
  • Shield Standard
  • Shield Advanced
  • Web Application Firewall (WAF)

Your company utilizes DNS and wants to migrate DNS and management of DNS to the cloud. Which AWS service would you use?

  • Application Load Balancers
  • CloudFront
  • CloudFormation
  • Route 53

You have 2 software systems that need to communicate, and you also need to ensure messages are not lost between them. Which AWS service can help meet these requirements?

  • CloudWatch
  • SQS
  • SNS
  • SES

The load on your application fluctuates by day of the week. Wednesdays have the most traffic, and Saturdays have the least traffic. Which AWS service allows you to ensure you have the correct amount of compute capacity while also optimizing on a cost basis?

  • Auto Scaling
  • CloudWatch
  • Trusted Advisor
  • Control Tower

Which of the following EC2 instance types will realize a savings over time in exchange for a contracted term-of-service?

  • Reserved Instances
  • Spot Instances
  • Discount Instances
  • On-Demand Instances

You have a web application that needs to run for a short period of time. It is all right if there are interruptions in the application. Which EC2 instance type would be best for this use case?

  • Dedicated Instance
  • Reserved Instance
  • Spot Instance
  • On-Demand Instance

A company is trying to visualize and forecast its costs and usage over time. Which service can help them?

  • Cost and Usage Report
  • AWS Budgets
  • AWS Cost Explorer
  • AWS Organizations

A system administrator works for a company and manages several AWS accounts. He would like to use a Convertible Reserved Instance (RI) across different AWS accounts. How can this be set up?

  • By using AWS Cost Explorer
  • By using combined billing within AWS Budgets
  • By using consolidated billing with AWS Organizations
  • By using a service control policy (SCP) under Control Tower

Which of the following are valid EC2 pricing options? Choose 2

  • Global
  • Enterprise
  • On-Demand
  • Reserved

Which of the following support services do all accounts receive as part of the AWS Support Basic tier?

  • Billing support
  • Architectural support
  • Technical Account Manager
  • 24/7 support via phone and chat

A customer provisioned an on-demand EC2 instance using a Linux AMI. The instance ran for 10 hours, 3 minutes, and 7 seconds before the user terminated it. How much time will the customer be billed for?

  • 10 hours, 3 minutes, and 7 seconds
  • 10 hours, 3 minutes
  • 10 hours
  • 10 hours, 4 minutes

You work for a financial company that has several mission-critical workloads running on AWS. Which AWS Support plan should you use if you want response times in under 15 minutes when issues occur?

  • Enterprise
  • Business
  • Basic
  • Developer

What can we do in AWS to receive the benefits of volume pricing for your multiple AWS accounts?

  • Use consolidated billing in AWS Organizations.
  • You will receive volume pricing by default.
  • Use AWS Trusted Advisor
  • Purchase services in bulk from AWS Marketplace.

A user is looking to buy a prebuilt solution that runs on AWS that allows them to track projects. Where can the user go to find a catalog of AWS-recognized providers selling third-party solutions to individuals?

  • AWS Community Forums
  • Managed Services
  • Consulting partner from the AWS Partner Network (APN)
  • Marketplace

When you access tools provided to build a storefront application that runs on another company’s server, which cloud computing model are you using?

  • Platform as a Service (PaaS)
  • Infrastructure as a Service (IaaS)
  • Software as a Service (SaaS)
  • Function as a Service (FaaS)

A company is considering migrating to the cloud. How does moving to the cloud reduce upfront costs?

  • By replacing large variable expenditures with lower capital investments
  • By allowing the provisioning of resources at a fixed price even during high peak times
  • By allowing you to pay upfront for software to lock in savings
  • By replacing large capital expenditures with lower variable costs spread over time

When you access your personal email through a web browser using an application like Gmail, which cloud computing model are you using?

  • Infrastructure as a Service (IaaS)
  • Function as a Service (FaaS)
  • Platform as a Service (PaaS)
  • Software as a Service (SaaS)

When you pay a subscription fee to a hosting company to serve your website on an instance you manage, which cloud computing model are you using?

  • Function as a Service (FaaS)
  • Platform as a Service (PaaS)
  • Software as a Service (SaaS)
  • Infrastructure as a Service (IaaS)

A solutions architect is designing a new web application to be highly available. There are regulatory requirements that require multiple EC2 instances to be provisioned in the same geographic location. Where should the EC2 instances be placed?

  • Multiple Availability Zones
  • Cluster placement group
  • Multiple subnets
  • Multiple Regions

You have a mission-critical application that must be globally available at all times. Which deployment strategy should you follow?

  • Multi-Region
  • Multi-Availability Zone
  • Deploy to all Availability Zones in your home region.
  • Multi-VPC in 2 AWS Regions

In the AWS Global Infrastructure, what are edge locations responsible for?

  • Providing disaster recovery services
  • Providing redundant backup to your AWS services
  • Hosting a content delivery network called CloudFront
  • Providing independent power grids to Availability Zones

With AWS services, you can use as many resources as you need, as well as use them when you need them. Which of the following terms can be applied to this concept? Choose 2

  • Temporary resources
  • Dedicated resources
  • Disposable resources
  • Fixed resources

Which of the below is correct when looking at Regions, Availability Zones, edge locations, and data centers? Choose 2

  • Availability Zones contain data centers
  • Data centers contain Availability Zones
  • Regions contain Availability Zones
  • Edge locations contain Availability Zones

Which of the following best describes a system that will remain operational even in the event of a component failure?

  • Fault tolerant
  • Scalable
  • Elastic
  • Highly available

There are several options for interacting with and accessing resources in your AWS account. Which of the following are ways to interact with AWS services? Choose 3

  • AWS Management Console
  • CloudFormation
  • AWS Command Line Interface (CLI)
  • Software Development Kit (SDK)
  • Platform as a Service (PaaS)

Which of the following statements is true of AWS Regions? Choose 2

  • They are composed of Availability Zones.
  • They automatically replicate resources among each other.
  • There are no charges for data transferred between them.
  • They are independent geographical areas.

A person new to the cloud is learning about the services that offer compute power. Which AWS services offer computing resources in the cloud?

  • Amazon Cognito
  • Amazon Simple Storage Service (S3)
  • AWS Elastic Beanstalk
  • AWS Lambda
  • Amazon Elastic Compute Cloud (EC2)

You are gathering information to present to management on a potential move to the AWS Cloud. Can you identify advantages of cloud computing? Choose 2

  • Benefit from small economies of scale.
  • Easily predict capacity.
  • Trade capital expense for variable expense.
  • Increase speed and agility.

Which types of deployments offer high availability? Choose 2

  • Single-AZ deployments
  • Multi-Region deployments
  • Multi-AZ deployments
  • Single-Region deployments

Which of the following scenarios are examples of scaling an IT architecture vertically? Choose 2

  • Resizing an RDS instance type from db.r5.large to db.r5.2xlarge
  • Adding 2 more EC2 instances
  • Resizing an EC2 instance type from a1.medium to a1.xlarge for more CPU and memory power
  • Adding 2 more RDS instances

Which of the following is NOT part of the AWS Global infrastructure?

  • Availability Zones
  • Regions
  • Security groups
  • Edge locations

You are setting up an S3 bucket to host a public website. You have uploaded the files for your website to S3, but when clicking on the object URL of the file to verify it can be seen, you receive the message, "access denied". You have tried making the file public but the option is not available. What configuration has been missed?

  • The IAM user for S3 public website hosting is currently disabled.
  • Removing "Block Public Access" from the bucket.
  • Adding a CNAME value to Route 53 for the website.
  • Creating and linking an S3 IAM role to your S3 bucket

An IAM user with administrative access is attempting to close the AWS account. After troubleshooting, the admin user uncovers they need to sign in with root user credentials in order to perform this task. What other tasks require root user credentials? Choose 3

  • Changing the email address associated with the account
  • Modifying the support plan
  • Create a user with administrative access
  • Configuring an Amazon S3 bucket to enable MFA (multi-factor authentication)
  • Activate IAM access to the Billing and Cost Management console

As an AWS account administrator, you are in charge of creating AWS accounts and securing those accounts. What steps can you take? Choose 2

  • Create multi-factor authentication for the root account.
  • Add IP restrictions for all accounts.
  • Grant admin access to all users.
  • Create functional groups for each department and use a common password for each group.
  • Store the root account credentials in SharePoint.

Which of the below are you responsible for managing when storing data in S3? Choose 2

  • Who has access to the S3 service
  • Who has access to the S3 infrastructure software
  • Who has access to the storage hardware
  • Who has access to the network hardware
  • Who has access to data you stored on the S3 service

Which of the following are design principles from the security pillar of the AWS Well-Architected Framework? Choose 3

  • Perform operations as code
  • Enable traceability
  • Apply security at all layers
  • Protect data in transit and at rest
  • Use serverless architectures

What does a developer need in order to log in to an EC2 instance via SSH from their local machine? Choose 2

  • Key Management System (KMS) generated key
  • Public key
  • SSH client
  • API key
  • Private key

Which pillar of the Well-Architected Framework encourages performing operations as code (for example, encouraging the use of services such as CloudFormation) as one of its design principles?

  • Security
  • Reliability
  • Operational excellence
  • Performance efficiency

You are currently running an application in a production environment, but you want to ensure that it is free of vulnerabilities. Which of the following AWS services would you need to use?

  • AWS Web Application Firewall (WAF)
  • Amazon Inspector
  • AWS Shield
  • AWS Trusted Inspector

You would like to give an application running on one of your EC2 instances access to an S3 bucket. What is the best way to implement this?

  • Assign the instance an IAM role
  • Give the application a set of access keys
  • Use an IAM user for the application
  • Make the bucket public

You are storing sensitive employee information in an S3 bucket. What can you use to give bucket access only to authorized personnel?

  • Network access control list (NACL)
  • Login and password
  • Access keys
  • Bucket policy

How can a customer meet corporate, contractual, and regulatory compliance requirements for data security by using dedicated hardware in the cloud?

  • Secrets Manager
  • DynamoDB
  • CloudHSM
  • Identity and Access Management

Which of the following are programmatic access types enabling users to interact with AWS services? Choose 3

  • API calls
  • Python
  • AWS CLI
  • AWS SDKs

According to the Shared Responsibility Model, which of the following is AWS responsible for? Choose 2

  • Amazon Virtual Private Cloud infrastructure
  • Subnets
  • Network access control lists
  • Security groups
  • Elastic Cloud Compute (EC2) infrastructure

Developers in your company need to interact with AWS from the Command Line Interface. Which security item will you need to provide to the developers?

  • Login ID
  • Access key
  • Security token
  • Root password

Which of the following are focuses of the cost optimization pillar of the Well-Architected Framework? Choose 3

  • Measure overall efficiency.
  • Pay for extra resources to cover demand.
  • Implement cloud financial management.
  • Utilize consumption-based pricing.

For which services is DDoS protection via AWS Shield Advanced supported? Choose 3

  • GuardDuty
  • Route 53
  • Elastic Load Balancing
  • CloudFront

Which of the following is NOT a compute service?

  • Elastic Block Store
  • Lambda
  • Elastic Beanstalk
  • EC2

Scientists would like to analyze terabytes of scientific data from a rover that landed on Mars. Which service will help them find trends and understand the vast amount of data using Hadoop?

  • Data Pipeline
  • SageMaker
  • Elastic MapReduce (EMR)
  • Kinesis

Which of the following are AWS compute services? Choose 2

  • Lambda
  • SQS
  • RDS
  • EC2

Several S3 buckets have been deleted, and a few EC2 instances have been terminated. Which AWS service can you use to determine who took these actions?

  • Amazon Inspector
  • AWS CloudTrail
  • Trusted Advisor
  • AWS CloudWatch

A development team wants to gain full observability into the health of their applications and instances in order to provide the best service level to users of their applications. Which services can help them monitor the health of their applications and instances? Choose 3

  • Route 53
  • Elastic Load Balancing
  • Elastic Beanstalk
  • CloudTrail
  • Simple Notification Service (SNS)

Which of the following AWS services allows you to run complex analytic queries against petabytes of structured data, use sophisticated query optimization, has columnar storage on high-performance local disks, and has massively parallel query execution?

  • DynamoDB
  • Kinesis
  • EMR
  • Redshift

A customer wants to run an application on a local version of an EC2 instance in a disconnected environment. Which Snow Family device supports this?

  • Snowball Edge compute-optimized
  • Snowcone
  • Snowmobile
  • Snowball Edge storage-optimized

You have a project that will require 90 hours of computing time. There is no deadline, and the work can be stopped and restarted without adverse effect. Which of the following computing options offers the most cost-effective solution?

  • Spot Instances
  • Custom Instances
  • Reserved Instances
  • On-Demand Instances

You have been tasked to create an S3 bucket for storing templates. A team member has forwarded you the templates, which are used for creating multiple different AWS resources such as S3 buckets, EC2 instances, and VPCs. Which service uses these templates to create AWS resources?

  • OpsWorks
  • EC2
  • Elastic Beanstalk
  • CloudFormation

A developer has created an application that will allow viewers of a popular TV show to vote for their favorite contestants. They expect to have 50 million viewers all voting at the same time at the end of each performance. When designing the system, they want to keep the voting and tallying functionality as separate standalone components. Which service will promote loose coupling between the 2 components using asynchronous integration?

  • Identity and Access Management (IAM)
  • Simple Notification Service (SNS)
  • Simple Email Service (SES)
  • Simple Queue Service (SQS)

A company ingests data to S3 using Kinesis. What is the easiest way for the company to run ad hoc SQL queries against the data in S3 without the need to manage servers?

  • Import the data into the RDS management console.
  • Use Macie.
  • Use Athena.
  • Use DMS to migrate the data to a DynamoDB table for easy querying.

Which AWS service is specifically designed to assist you in processing large datasets?

  • ElastiCache
  • EMR
  • Redshift
  • EC2

A company wants to build a customer identity graph to provide a single unified view of customers and prospects by linking identifiers like website browsing history, preferences, and more. Which database product allows the customer to store and navigate billions of interconnected relationships?

  • DocumentDB
  • Neptune
  • DynamoDB
  • Aurora

A development team has created a large amount of CloudFormation templates in the JSON format. Which AWS database would be best suited for storing these documents?

  • Amazon DocumentDB
  • Amazon RedShift
  • Amazon Aurora
  • AWS MySQL

You need to host a file in a location that is publicly accessible from anywhere in the world. Which AWS service would meet that need at the lowest cost?

  • EBS
  • S3
  • EC2
  • RDS

Several EC2 instances in a public subnet need internet access. Which will you configure as 1 step in granting internet access?

  • Internet gateway
  • API Gateway
  • NAT gateway
  • VPC peering

A gaming company is using the AWS Developer Tools suite to develop, build, and deploy their applications. Which AWS service can be used to trace user requests from end to end through the application?

  • AWS X-Ray
  • AWS Inspector
  • CloudWatch
  • CloudTrail

A company is looking to lower its total cost of ownership (TCO) by moving the file system used for its business-critical, Linux-based applications to a managed file system in the cloud. Which service meets their needs?

  • Elastic Block Store (EBS)
  • Elastic File System (EFS)
  • FSx
  • Storage Gateway

A company wants to deploy applications entirely on a serverless platform. Which AWS service can they use to build their applications without worrying about managing servers?

  • CloudFormation
  • EC2
  • AWS Lambda
  • ElastiCach

A travel company has an application that serves customers worldwide. Which AWS service can speed up delivery of content to this widespread customer base?

  • CloudFront
  • CodeDeploy
  • S3
  • OpsWorks

Which AWS service allows the deployment of resources in code templates, otherwise known as Infrastructure as Code?

  • CloudFormation
  • Elastic Beanstalk
  • Systems Manager
  • OpsWorks

You need a "virtual hard disk" for your EC2 instance. Which of the following should you choose?

  • S3
  • VPC
  • EBS
  • RDS

Which of the following are criteria affecting your billing for RDS? Choose 3

  • Additional storage
  • Standard monitoring services
  • Internet data transfer
  • Running duration of the RDS instances

You need to purchase Reserved Instances for a 3-year project. But a company initiative may change all the company compute operating systems from Windows to Linux midway through this project. What type of Reserved Instance should you purchase?

  • Automatic
  • Zonal
  • Convertible
  • Standard

You need a paid AWS Support plan for your production workloads but want to keep costs to a minimum. Which of the following plans should you choose?

  • Basic
  • Developer
  • Enterprise
  • Business

Which of the following AWS Support levels offers 24x7 support via phone or chat?

  • Developer
  • Basic
  • Business
  • Individual

You need to track your AWS costs on a detailed level. Which tool will allow you to do this?

  • AWS Organizations
  • Cost Allocation Tags
  • CloudWatch
  • AWS CloudTrail

Which of the following are support levels offered by AWS? Choose 3

  • Individual
  • Basic
  • Business
  • Developer
  • Start-up

Which S3 storage class is the best value for long-term archive?

  • S3 Glacier Flexible Retrieval
  • S3 Standard Infrequent-Access
  • S3 Standard
  • S3 Intelligent-Tiering

A company would like to call AWS support to open cases when issues arise. What's the minimum support plan they need to subscribe to in order to have telephone access?

  • Developer Support
  • Basic support
  • Business Support
  • Enterprise

You are an AWS Enterprise customer with questions about billing and your overall AWS account. Which of the following AWS Support personnel should you contact?

  • AWS Concierge
  • AWS Billing and Accounts
  • AWS Technical Account Manager
  • AWS Support

Which of the following statements are true regarding AWS Reserved Instances? Choose 3

  • Reserved Instances act as a discount on new or existing On-Demand Instances.
  • Reserved Instances are available in all up-front, partial up-front, or no upfront payments.
  • Reserved Instances usually have contract terms of one or three years. The longer the term, the higher the savings.
  • Convertible Reserved Instances can be exchanged for another Convertible Reserved Instance with different length contract terms.

A telecommunications company has hired you as a consultant to develop a business case for moving its IT applications and infrastructure to AWS. The company's leadership understands the agility value of the cloud, but the finance group is not interested in shifting capital expense to operating expense due to the company's tax structure. What will you include in the business case to attempt to satisfy everyone at the company?

  • Show the company the TCO value of moving to an operating expense model.
  • Suggest that the company wait to migrate to AWS until the current infrastructure is fully depreciated.
  • Suggest that the company make Reserved Instance purchases and capitalize them.
  • Show the value of an elastic infrastructure for avoiding wasted capacity.

What is the time that passes between a user request and the resulting response called?

  • Latency
  • Agility
  • Durability
  • Availability

You want to define a secure private network in an AWS account where you launch your resources. What do you need to configure?

  • AWS Organizations
  • Virtual private network (VPN)
  • Internet gateway
  • Virtual private cloud (VPC)

Which of the following are characteristics of Availability Zones? Choose 3

  • Contain redundant connectivity
  • Contain redundant networking
  • Contain physically separated data centers
  • Contain shared power

A company runs workloads in the cloud with unknown and dynamic user demand. Which usage features make the cloud cost effective for this type of workload? Choose 2

  • Pay-as-you-go
  • Performance efficiency
  • Shared security model
  • Reliability
  • On-demand

Which of the following are a collection of data centers within a specific Region?

  • Edge locations
  • Regions
  • Availability Zones
  • AWS origins

If you have a new application and you are not sure about future demand, which of the below characteristics of cloud make cloud an ideal place to host it? Choose 3

  • Scalability
  • Pay as you go
  • High availability
  • No upfront payment
  • Performance efficiency
  • No single point of failure

The AWS global infrastructure includes Regions, Availability Zones, and edge locations. Which best describes the relationship between the infrastructure components? Choose 2

  • There are more Availability Zones than edge locations.
  • There are more edge locations than Regions.
  • There are more Availability Zones than Regions.
  • There are more Regions than edge locations.
  • There are more Regions than Availability Zones.

Which of the following are advantages of cloud computing? Choose 3

  • Elasticity
  • Requires large amounts of capital
  • Variable expense
  • Agility

Which of the following best describes an AWS Region?

  • A collection of data centers that are spread evenly around a specific continent
  • A specific geographic location designed to provide high availability to a certain area.
  • A console that gives you a quick, global picture of your cloud computing environment
  • A collection of databases that can only be accessed from a specific geographic region

Which cloud computing model offers fundamental building blocks that can be rented?

  • Infrastructure as a Service (IaaS)
  • Platform as a Service (PaaS)
  • Software as a Service (SaaS)
  • Function as a Service (FaaS)

A company has developed a new web application that uses Amazon RDS MySQL as the backend database. The company wants to ensure the application is highly available. Which feature of RDS can ensure high availability?

  • Using Multi-AZ deployment
  • Using CloudFront to ensure the data is available globally
  • Using CloudWatch to monitor the uptime of the application
  • Using Trusted Advisor to check for resource bottlenecks

Which of the following are advantages of cloud computing? Choose 3

  • You can stop guessing capacity.
  • You can go global in minutes.
  • You can trade variable expense for capital expense.
  • You can increase speed and agility.

In the AWS Global Infrastructure, which components are physically separated and connected through low-latency links, enabling fault tolerance and high availability?

  • Regions
  • Virtual Private Clouds (VPCs)
  • Availability Zones
  • Route 53

VMware Cloud on AWS allows companies to migrate and extend their on-premises VMware vSphere-based environments to AWS Cloud using Amazon EC2. Which of the following choices accurately classifies this deployment model?

  • On-premises
  • Hybrid
  • Shared services
  • Cloud

How can new AWS users easily search for and find services in their AWS accounts?

  • Application code
  • Command Line Interface (CLI)
  • Software Development Kits (SDKs)
  • AWS Management Console

Which of the following is correct regarding the number of Regions, Availability Zones, edge locations, and data centers?

  • There are more Regions than edge locations.
  • The number of Availability Zones is the same as the number of edge locations.
  • There are more edge locations than Availability Zones.
  • There are more Availability Zones than edge locations.

You are creating a few IAM policies. This is the first time you have worked with IAM policies. Which tool can you use to test IAM policies?

  • Amazon Inspector
  • IAM policy simulator
  • CloudWatch
  • Amazon GuardDuty

Which security service provides enhanced protections and 24/7 access to AWS experts for a fee when issues arise?

  • Macie
  • AWS Shield Standard
  • AWS Shield Advanced
  • Enterprise Support

Which of the following is AWS responsible for in the Shared Responsibility Model? Choose 3

  • Regions
  • Edge locations
  • Customer data
  • Availability Zones

You added a recently hired HR Assistant to the IAM group named 'HumanResources'. Which of the following statements will apply to that user? Choose 2

  • The HR Assistant becomes leader of the Human Resources department.
  • The HR Assistant inherits the permissions of the 'HumanResources' group.
  • The HR Assistant becomes an IAM member of the company’s Human Resources department.
  • The HR Assistant becomes the AWS root account user.

Which of the below statements are correct in relation to security responsibilities in AWS? Choose 2

  • As an AWS customer, you are responsible for the security IN the Cloud.
  • AWS is responsible for the security OF the Cloud.
  • AWS is responsible for the security IN the Cloud.
  • As an AWS customer, you are responsible for the security OF the Cloud.

You need to use an AWS service to assess software vulnerabilities and unintended network exposure of your Amazon EC2 instances. Which of the following services should you use?

  • AWS Shield
  • AWS WAF
  • Amazon Inspector
  • AWS Trusted Advisor

Which of the below are you responsible for when running an RDS database on AWS?

  • Controlling access to the network hardware
  • Updating the database software
  • Controlling access to the database
  • Controlling access to the compute hardware
  • Updating the host operating system

What type of long-term credentials for IAM users can be used to sign programmatic requests to the AWS CLI or AWS API (directly or using the AWS SDK)?

  • Security token
  • Root user credentials
  • Access keys
  • Username and password

In Identity and Access Management (IAM), which term applies to a person or application that uses the AWS account root user, an IAM user, or an IAM role to sign in and make requests to AWS?

  • Entity
  • Principal
  • Resource
  • Identity

Broadly speaking, AWS is responsible for:

  • Security both IN and OF the Cloud
  • Security IN the Cloud
  • Security OF the Cloud
  • No security — security is up to the customer to manage

A new application needs temporary access to resources in AWS. How can this best be achieved?

  • Add the application to a group that has the appropriate permissions.
  • Store an access key in an S3 bucket and give the application access to the bucket.
  • Create an IAM role and have the application assume the role.
  • Create an IAM policy and attach it to the application.

Instead of relying on a single data center to provide its services across the world, AWS relies on several separate geographic areas, each of which consists of one or more isolated locations. What are the official names for these separate geographic areas, and what is the name for the one or more multiple, isolated locations?

  • Locations; data centers
  • Sections; Availability Zones
  • Regions; data centers
  • Regions; Availability Zones

What is the most efficient intelligent threat detection service that can be used to analyze malicious or unauthorized activity and continuously monitor CloudTrail event logs, Amazon VPC Flow Logs, and DNS logs?

  • AWS Config
  • Amazon GuardDuty
  • Amazon Inspector
  • Amazon CloudWatch

Which of the following services will help you optimize your entire AWS environment in real-time following AWS best practices?

  • AWS Trusted Advisor
  • AWS Inspector
  • AWS Shield
  • AWS WAF

Which of the below are TRUE statements when it comes to network security for an EC2 instance in AWS? Choose 3

  • AWS is responsible for ensuring malicious traffic does not reach the EC2 instance.
  • AWS is responsible for ensuring unwanted traffic does not reach the EC2 instance.
  • AWS is responsible for ensuring malicious traffic does not impair the network hardware.
  • The customer is responsible for ensuring unwanted traffic does not reach the EC2 instance.
  • The customer is responsible for ensuring malicious traffic does not reach the EC2 instance.
  • The customer is responsible for ensuring malicious traffic does not impair the network hardware.

A healthcare agency needs to store certain patient information for up to 10 years. To save cost, they want to archive this data to cheaper storage. The data needs to be retrieved within 12 hours. Which is the cheapest option?

  • Glacier Deep Archive
  • Redshift
  • S3 Standard-IA
  • Amazon S3 Glacier Flexible Retrieval (Formerly S3 Glacier)

You have a read-heavy application workload resulting in I/O-intensive Amazon RDS database queries. Which service is most suitable to improve performance?

  • DynamoDB
  • ElastiCache
  • Redshift
  • DAX

A company would like to automate the configuration of its servers and deploy code to servers in the cloud and on-premises. Which service meets the requirement?

  • Elastic Beanstalk
  • CodeDeploy
  • CodeBuild
  • OpsWorks

Which services can host a MariaDB database? Choose 2

  • EC2
  • DocumentDB
  • DynamoDB
  • RDS
  • Aurora

You have been tasked with developing a plan to move applications to AWS and use AWS services to house code, build, and deploy these applications. Which AWS service will allow you to host Git-based repositories?

  • GitHub
  • AWS CodeBuild
  • AWS CodeCommit
  • AWS CodeDeploy

A customer has a complex multi-resource application environment containing multiple EC2 instances, load balancers, S3 buckets, and more. They'd like to provision these resources in an automated and repeatable manner from environment to environment using Infrastructure as Code (IaC). Which service achieves this?

  • CloudFormation
  • AWS Management Console
  • AWS Command Line Interface (CLI)
  • Business Support plan

A company would like to implement a hybrid storage model where they connect on-premises data storage to storage in the AWS Cloud in order to move their backups to the cloud. What is the best and most efficient way to achieve this?

  • Site-to-Site VPN
  • Elastic File System (EFS)
  • Storage Gateway
  • Direct Connect

Which of the following are storage services? Choose 2

  • AWS Elastic File System
  • AWS RDS
  • S3
  • S3 is a storage service.
  • AWS VPC

Which of the following is AWS' event-driven, serverless compute service?

  • EC2
  • Lambda
  • Lightsail
  • Elastic Beanstalk

A customer would like the ability to send HTML formatted emails from their application for marketing campaigns. Which service should the customer consider using?

  • Lambda
  • Simple Notification Service (SNS)
  • Simple Queue Service (SQS)
  • Data Pipeline
  • Simple Email Service (SES)

Which of the following can you host on S3?

  • Dynamic websites
  • Streaming websites
  • Static websites
  • E-commerce websites

A company is deploying an application to an EC2 instance. They care most about achieving the lowest cost possible and don't mind if their workloads are interrupted. Which pricing option should the company consider?

  • Reserved Instance
  • Savings Plan
  • Dedicated Host
  • Spot Instance

You need to store key-value pairs of users and their high scores for a gaming application. Which is the fastest and cheapest storage option for this type of data?

  • Amazon RedShift
  • DynamoDB
  • Amazon S3
  • RDS MySQL

Which of the following are valid ways for an IAM user to manage AWS resources? Choose 3

  • Using the AWS SDK
  • Security group access via the AWS command line
  • Emergency access via Identity and Access Management (IAM)
  • Programmatic access via the command line
  • AWS Management Console access

A customer would like to use machine learning to uncover the meaning and relationships in text from customer support incidents to ensure customers are happy after speaking to a support agent. How can they process the text from customer support incidents?

  • Macie
  • SNS
  • Comprehend
  • Amazon Connect

How does S3 Transfer Acceleration help you get your data into S3 quicker?

  • By splitting up your data into smaller chunks and uploading it simultaneously, then putting it back together on S3
  • By compressing your data to make it smaller for upload, then de-compressing it onto S3
  • By letting you send the data in on a disk you provide (saving on upload times), then copying it to S3
  • By using AWS' network of edge locations to upload to a location closest to you before taking the most optimal path within AWS' network

Which of the following AWS services is a fast, fully managed data warehouse that makes it simple and cost-effective to analyze all your data using standard SQL and your existing business intelligence tools.

  • EMR
  • DynamoDB
  • Redshift
  • Kinesis

Your design team has recommended the need to distribute incoming traffic across multiple EC2 instances and also across multiple Availability Zones. Which AWS service can accomplish this?

  • Elastic Load Balancing
  • CloudFront
  • CloudFormation
  • Auto Scaling

Which of the following statements are true about the Amazon EC2 service? Choose 3

  • It supplies various configurations of CPU, memory, storage, and network capacity. You can use a preconfigured template called an Amazon Machine Image (AMI) to launch your instance.
  • It provides scalable computing capacity in the AWS cloud.
  • It is used to launch up to 5 servers.
  • It provides virtual computing environments.
  • It provides a virtual database environment.

An EC2 instance in your VPC needs which of the following for the internet gateway to route its traffic to the internet?

  • Private IP address
  • CNAME
  • A record
  • Public IP address

Which of the following AWS services gives you a personalized view of the performance and availability of the AWS services underlying your AWS resources, alerting you and providing remediation guidance when AWS is experiencing events that may affect you?

  • Trusted Advisor
  • CloudTrail
  • AWS Personal Health Dashboard
  • AWS Systems Manager

A fantasy sports company needs to run an application for the length of a football season (5 months). They will run the application on an EC2 instance and there can be no interruption. Which purchasing option best suits this use case?

  • Dedicated
  • Selected
  • Reserved
  • Spot
  • On-Demand

A healthcare company has nightly batch jobs that can afford to be interrupted. Which EC2 pricing model can meet this need and provide great savings by using a supply-and-demand model?

  • On-Demand
  • Standard Reserved Instances
  • Spot Instances
  • Scheduled Reserved Instances

You want to monitor the cost of using your AWS services and receive alerts when the thresholds you define are met. Which of the following AWS Budgets types should you create?

  • Reservation budget
  • Savings Plans budget
  • Usage budget
  • Cost budget

A company would like to understand its total cost of ownership (TCO) when all workloads are moved to the cloud. Which should the company consider in their AWS TCO? Choose 3

  • Compute costs
  • Infrastructure costs
  • Data transfer costs
  • Building security costs
  • Storage costs

If you want access to all AWS Trusted Advisor checks, which of the AWS Support plans will provide that? Choose 2

  • Business
  • Enterprise
  • Basic
  • Developer

For enhanced technical support, some AWS Support plans enable you to have an unlimited number of contacts that can open an unlimited amount of cases. Which of the following choices offer this feature? Choose 3

  • Business
  • Enterprise
  • Developer
  • Basic

Which of the following services are available 24x7 for all AWS Support plans?

  • AWS documentation
  • Cloud Support Engineers
  • Customer service
  • Support forums

When would you use the EC2 On-Demand pricing model? Choose 2

  • Discounted cost model compared to Reserved Instances
  • No upfront payments required
  • Guaranteed cost
  • Unpredictable workloads that cannot be interrupted

Which of the following AWS Support pricing plans provides a Technical Account Manager (TAM) for proactive guidance on your AWS account?

  • Developer
  • Business
  • Enterprise
  • Basic

You have a short-term computing task to complete. It is essential that this task run uninterrupted from start to finish. Which is the best EC2 option for this task?

  • Reserved Instance
  • Spot Instance
  • Dedicated Host
  • On-Demand Instance

A system's ability to grow to accommodate an increase in demands is an example of which cloud concept?

  • Automation
  • High availability
  • Elasticity
  • Scalability

Which defines one or more discrete data centers with redundant power, networking, and connectivity?

  • Edge location
  • AWS Local Zones
  • Region
  • Availability Zone

Which of the following does Amazon ensure will happen when paying for AWS on an as-needed basis? Choose 3

  • Spending less money in the long term
  • Redirecting focus to innovation and invention
  • Reducing procurement complexity
  • Spending more money in the long term
  • Enabling the full elasticity of business operations

When architecting a solution on AWS, it is important to know if you are designing for zero downtime even if a component fails or if you are designing for reliable performance and minimal (but non-zero) downtime. Which of the following terms best describes the latter solution?

  • Fault tolerant
  • Elastic
  • High availability
  • Scalable

Who are the main users of the AWS Command Line Interface (CLI)?

  • New cloud users
  • Business Analysts
  • Developers
  • Non-technical roles

Which of the following are characteristics of cloud computing? Choose 3

  • No extra skills or training are required.
  • Pay-as-you-go pricing
  • On-demand delivery
  • Services are delivered via the internet.
  • Cloud charges are capital expenditures.

You have recently started using AWS and now need to launch a large number of instances in your VPC. You learn that this number exceeds the service limits for instances in a VPC. What can you do?

  • Upgrade your support plan to increase this service limit.
  • Contact AWS and request a service limit increase.
  • Use the Limits page in the Amazon EC2 console to request an increase in the limits for resources provided by Amazon EC2 or Amazon VPC on a per-Region basis.
  • Use Auto Scaling and the service limit can be exceeded.
  • There is nothing that can be done. Redesign based on a smaller number of instances.

A company on the Business Support plan currently runs all their applications in a single Region. They have made the decision to expand to multiple Regions. What is the process to start deploying their applications to the new Regions?

  • Reach out to their Technical Account Manager (TAM) for assistance.
  • Just start deploying the applications to the new Regions.
  • Open an account and billing support case with AWS Support.
  • Copy the existing Availability Zone group to the new Regions.

Which of the following best describes Availability Zones (AZs)?

  • Restricted areas designed specifically for the creation of virtual private clouds (VPCs) that span AZs
  • A content distribution network used to deliver content to users
  • Two zones containing compute resources that are designed to automatically maintain synchronized copies of each other's data
  • Distinct locations from within an AWS Region that are engineered to be isolated from failures

An organization is considering migrating internal applications to the AWS Cloud. The organization will follow the pillars of the AWS Well-Architected Framework. Which items are pillars of the AWS Well-Architected Framework? Choose 2

  • Operational Excellence
  • Ease of Use
  • Elasticity
  • Scalability
  • Reliability

Which service allows you to connect a private cloud to a public cloud?

  • Server Migration Service (SMS)
  • Direct Connect
  • Route 53
  • CodeDeploy

Which benefit of cloud computing helps you innovate faster and gives you speed to market?

  • Agility
  • Durability
  • Elasticity
  • High availability

Which deployment types offers the advantages of cloud computing? Choose 2

  • Private cloud
  • On-premises cloud
  • Hybrid cloud
  • Public cloud

Which benefit of cloud computing allows you to avoid planning ahead of time for how much capacity you need?

  • Agility
  • Durability
  • Elasticity
  • High availability

In AWS, you can stop or terminate instances when not in use. Which of the following concepts describes this capability?

  • Scalability
  • Automation
  • Loose coupling
  • Elasticity

The AWS Global Infrastructure comprises Regions, Availability Zones, and edge locations, and there is a different number of each infrastructure element. Select the option that shows the correct order from greatest to least.

  • Number of Availability Zones > Number of Regions > Number of Edge Locations
  • Number of Availability Zones > Number of Edge Locations > Number of Regions
  • Number of Regions > Number of Availability Zones > Number of Edge Locations
  • Number of Edge Locations > Number of Availability Zones > Number of Regions

Which component of the AWS Global Infrastructure caches content for fast delivery to users?

  • Regions
  • Availability Zones
  • Edge locations
  • Data centers

Which term refers to the Identity and Access Management (IAM) resource objects that AWS uses for authentication?

  • Resources
  • Principal
  • Entities
  • Identities

Which of the following AWS services controls authentication and authorization within an AWS account?

  • Access control lists
  • AWS Shield
  • Security groups
  • IAM

Enabling Amazon GuardDuty automatically grants the service permission to analyze continuous metadata streams from which of the following data sources? Choose 3

  • VPC Flow Logs
  • Sensitive data in Amazon S3 buckets
  • DNS query logs
  • AWS CloudTrail logs

How are permissions assigned to an IAM group? Choose 2

  • Security group
  • Collection
  • Policies
  • Roles

Which following statement is true of newly created security groups with their default rules?

  • New security groups block outbound traffic and allow all incoming traffic.
  • New security groups allow only outbound traffic and block all incoming traffic.
  • New security groups allow both incoming and outbound traffic.
  • New security groups block both incoming and outbound traffic.

Your company has recently migrated large amounts of data to the AWS Cloud in S3 buckets. It is necessary to discover and protect the sensitive data in these buckets. Which AWS service can do that?

  • Amazon Macie
  • CloudTrail
  • GuardDuty
  • AWS Inspector

Users need to access AWS resources from the Command Line Interface. Which IAM option can be used for authentication?

  • IAM group
  • Access keys
  • IAM role
  • IAM policy

When considering the security of an AWS EC2 instance, which of the below are users responsible for? Choose 2

  • Physical and environmental controls
  • Patching and maintenance of OS and applications
  • Security configuration
  • Patching and maintenance of server hardware

A company has a large number of S3 buckets and needs to manage and automate tasks on these buckets at one time. Which AWS feature can do this?

  • Resource groups
  • Tagging
  • IAM groups
  • IAM

AWS uses the shared responsibility model. For security, which of the following are the responsibilities of AWS? Choose 3

  • Disk disposal
  • User password rules
  • Network patching
  • Physically securing compute resources
  • Configure security groups

Which of the following is an AWS managed distributed denial-of-service (DDoS) protection service?

  • AWS WAF
  • AWS Shield
  • AWS Inspector
  • Amazon GuardDuty

Which of the below are you responsible for when running an EC2 instance on AWS? Choose 2

  • Patching the operating system
  • Patching the applications
  • Patching the network hardware
  • Patching the compute hardware

How would a customer create a virtual firewall for an EC2 instance?

  • With a web application firewall
  • With an IAM group
  • With AWS Shield
  • With a security group

Which of the following is AWS' managed DDoS protection service?

  • Access control lists
  • AWS WAF
  • AWS Shield
  • Security groups

According to the AWS Shared Responsibility Model, which of the following is the customer responsible for? Choose 3

  • Network access control lists (network ACLs)
  • Amazon Virtual Private Cloud (VPC) service
  • Subnets
  • Security groups

You are working with IAM and need to attach policies to users, groups, and roles. Which of the following will you be attaching these policies to?

  • Identities
  • Resources
  • Entities
  • Principals

Which of the following falls under the AWS compute services category? Choose 2

  • Amazon Rekognition
  • Amazon Elastic MapReduce (EMR)
  • ElastiCache
  • Amazon Elastic Beanstalk
  • AWS Lambda

Which of the following provides the least expensive Amazon S3 storage?

  • Glacier
  • Intelligent Tiering
  • One Zone-Infrequent Access
  • Glacier Deep Archive

You need to execute code in response to a specific change to your S3 bucket. Which of the following compute services should you choose to execute your code?

  • Direct Connect
  • Lightsail
  • Lambda
  • EC2

Which of the following services does the AWS Shield Standard plan provide? Choose 2

  • Reimburse related Route 53, CloudFront, and ELB DDoS charges
  • Assistance with protection from common DDoS attacks
  • Post-attack analysis
  • Network flow monitoring

VPC, CloudFront, and Route 53 are examples of what type of AWS service?

  • Migration and Transfer
  • Database
  • Networking and Content Delivery
  • Compute

Which of the following compute services is ideal if you need to run a simple website or a simple e-commerce application?

  • Lambda
  • Elastic Beanstalk
  • EC2
  • Lightsail

Which of the following is true of AWS Lambda? Choose 3

  • It supports several popular programming languages for writing application code.
  • It triggers charges whether your code is running or not.
  • It lets you run code without provisioning or managing servers.
  • It is a serverless computing platform.

You've been tasked with assessing your AWS infrastructure in terms of cost optimization. Which of the following AWS services would help with this task?

  • AWS Personal Health Dashboard
  • CloudTrail
  • AWS Systems Manager
  • Trusted Advisor

Which of the following statements are true of Amazon Aurora? Choose 2

  • It can deliver up to five times the throughput of MySQL.
  • It is compatible with MariaDB.
  • It is compatible with Oracle.
  • It is a Relational Database Service (RDS) database engine developed by Amazon.

Which of the following statements is true of AWS CloudTrail? Choose 3

  • When you create an AWS account, you will have to manually enable CloudTrail.
  • With CloudTrail, you can create a trail that either applies to one Region or to all Regions.
  • CloudTrail delivers log files within 15 minutes of account activity.
  • Log files are encrypted

ElastiCache is an example of what type of AWS service?

  • Compute
  • Database
  • Analytics
  • Storage

Which of the following are AWS Security, Identity, and Compliance services? Choose 3

  • AWS Key Management Service (KMS)
  • AWS Trusted Advisor
  • AWS Secrets Manager
  • AWS Security Hub
  • AWS Control Tower

Your application needs fully managed storage for objects. Which of the following options should you choose?

  • S3
  • RDS
  • EBS
  • EC2

Which of the following statements are true of Amazon Redshift? Choose 2

  • It stores unstructured data.
  • It is used for transactional systems.
  • It is designed for storing petabytes of data.
  • It is a data warehouse service.

In order to comply with regulatory mandates, some of your data needs to be retained in perpetuity. Which of the following AWS storage classes offers low-cost, long-term data archival?

  • S3
  • S3 Glacier
  • EFS
  • Redshift

Which of the following AWS services enables you to continuously monitor and record configuration changes of your resources?

  • AWS Config
  • AWS CloudTrail
  • Amazon GuardDuty
  • AWS Trusted Advisor

Which of the following engines are classified as relational databases on AWS? Choose 3

  • Oracle
  • DynamoDB
  • MySQL
  • PostgreSQL
  • Redshift

Which of the following AWS services fall under the Migration and Transfer category? Choose 2

  • Amazon Redshift
  • Amazon ElastiCache
  • AWS Database Migration Service
  • AWS Snowball

Which of the following AWS services is an example of Platform as a Service?

  • AWS Elastic Beanstalk
  • Amazon S3
  • Amazon Virtual Private Cloud
  • AWS Lambda

Which of the following are part of the AWS storage services category? Choose 3

  • Amazon S3
  • Amazon RDS
  • Storage Gateway
  • Amazon Redshift
  • Amazon EFS

Your company hosts gaming applications online and would like to deliver these apps to a worldwide audience. Which AWS service would enable delivery to users worldwide and greatly improve response times?

  • CloudFront
  • DynamoDB
  • CloudFormation
  • ElastiCache

Which of the following enables you to interact with AWS services using only textual commands?

  • AWS Management Console
  • AWS CLI
  • Amazon API Gateway
  • AWS SDK

You are leading a pilot program to try the AWS Cloud for 1 of your applications. You have been instructed to provide an estimate of your AWS bill. Which service will allow you to do this by manually entering your planned resources by service?

  • AWS CloudTrail
  • AWS Cost Explorer
  • AWS Cost and Usage Report
  • AWS Pricing Calculator

Which of the following AWS services can be used to create billing alarms?

  • Macie
  • Cost Explorer
  • Athena
  • CloudWatch

When would you use the Reserved Instance pricing model? Choose 2

  • Your application requires a capacity reservation
  • Ability to bid on the lowest compute price possible
  • Your application has unpredictable workloads
  • Your application has steady state usage

Which of the following support plans features access to Enhanced Technical Support via email only during business hours?

  • Developer
  • Basic
  • Business
  • Enterprise

Which of the following AWS Support levels offers the assistance of a Technical Account Manager?

  • Premium
  • Developer
  • Enterprise
  • Business

Which of the following does AWS use to notify you by email when you exceed 85% of your Free Tier limits for each service?

  • AWS Budgets
  • AWS Personal Health Dashboard
  • AWS Cost Explorer
  • AWS Organizations

A company has multiple AWS accounts across multiple Regions. Which AWS service can be used to manage these accounts and provide consolidated billing?

  • Trusted Advisor
  • CloudFormation
  • Identity and Access Management
  • AWS Organizations

Your Development team uses 4 On-Demand EC2 instances. Your QA team has 5 Reserved Instances, only 3 of which are being used. Assuming all AWS accounts are under a single AWS Organization, how will the Development team's instances be billed?

  • All the Dev team's instances will be billed at the Reserved Instance rate.
  • All the Dev team's instances will be billed at the On-Demand rate.
  • The pricing for the Reserved Instances will shift from QA to Dev.
  • The Dev team will be billed for 2 instances at On-Demand prices and 2 instances at the Reserved Instance price.

Your company has entered into a 3-year contract with a government agency. Your best option for EC2 is Reserved Instances. Which AWS feature would you use to track your Reserved Instance usage?

  • AWS CloudTrail
  • Trusted Advisor
  • AWS Cost and Usage Report
  • AWS Organizations

Which of the following statements are true of the AWS Free Tier? Choose 2

  • Some AWS services come with short-term free trial offers.
  • Amazon S3 storage of up to 5 GB is always free.
  • Some AWS services are free for the first 12 months following the initial sign-up date to AWS.
  • You will never be charged for use of EC2 Micro instances.

amazon-web-services-aws-certified-cloud-practitioner-clf-c02-practice-tests-exams-questions-answers's People

Contributors

danieldanielecki avatar fcjurado avatar jonathansneep avatar mboretto avatar chungjuenwei avatar

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.