AWS Cloud Practitioner Practice Test Questions

Réussis tes devoirs et examens dès maintenant avec Quizwiz!

True or False: AWS Outposts is a service that enables you to run infrastructure in a hybrid cloud approach.

True

True or False: Amazon CloudWatch is a service that provides data that you can use to monitor your applications, optimize resource utilization, and respond to system-wide performance changes.

True

Amazon Quantum Ledger Database (Amazon QLDB) is a ledger database service. You can use Amazon QLDB to review _______________ the changes that have been made to your application data.

a complete history of all

A multi-national corporation wants to get expert professional advice on migrating to AWS and managing their applications on AWS Cloud. Which of the following entities would you recommend for this engagement? 1. AWS Trusted Advisor 2. Concierge Support Team 3. APN Consulting Partner 4. APN Technology Partner

APN Consulting Partner

AWS Artifact is a service that enables you to access ________________________________ and special online agreements.

AWS security and compliance reports

AWS Pricing Calculator lets you explore AWS services and _____________________________ of your use cases on AWS. In the AWS Pricing Calculator, you can enter details for your cloud computing requirements and then receive a detailed estimate that can be exported and shared.

create an estimate for the cost

Amazon Textract is a machine learning service that __________________________ text and data from scanned documents.

automatically extracts

Amazon Redshift is a _________________ service that you can use for big data analytics.

data warehousing

The Business Perspective helps you to move from a model that ____________ business and IT strategies into a business model that integrates ______________.

separates, IT strategy

AWS Snowball is a device that enables you to ____________________ of data into and out of AWS.

transfer large amounts

True or False: The email used to create your AWS account is known as the 'root' account.

true

The Governance Perspective helps you understand how to ______________________________________________ that are necessary to ensure business governance in the cloud.

update the staff skills and organizational processes

Amazon Lex is a service that enables you to build conversational interfaces using _____________________.

voice and text.

True or False: AWS Snowball is a device that enables you to transfer small amounts of data into and out of AWS.

False: AWS Snowball is a device that enables you to transfer LARGE amounts of data into and out of AWS.

AWS Trusted Advisor is service that checks applications for security vulnerabilities and deviations from security best practices.

False: AWS Trusted Advisor is an online tool that inspects your AWS environment and provides real-time guidance in accordance with AWS best practices.

True or False: Amazon CloudFront is a is to migrate databases to cloud environment.

False: Amazon CloudFront is a content delivery service.

True or False: Amazon Inspector is an online tool that inspects your AWS environment and provides real-time guidance in accordance with AWS best practices.

False: Amazon Inspector is a service that checks applications for security vulnerabilities and deviations from security best practices.

AWS Compute Optimizer delivers recommendations for which of the following AWS resources? (Select two) 1. Amazon EBS volumes, AWS Lambda functions 2. Amazon EC2 instances, Amazon EC2 Auto Scaling groups 3. AWS Lambda functions, Amazon Simple Storage Service (Amazon S3) 4. Amazon EC2 instances, Amazon Elastic File System (Amazon EFS) 5. Amazon Elastic File System (Amazon EFS), AWS Lambda functions

1. Amazon EBS volumes, AWS Lambda functions 2. Amazon EC2 instances, Amazon EC2 Auto Scaling groups

You want to store data in a volume that is attached to an Amazon EC2 instance. Which service should you use? 1. Amazon Elastic Block Store (Amazon EBS) 2. Amazon Simple Storage Service (Amazon S3) 3. Amazon ElastiCache 4. AWS Lambda

1. Amazon Elastic Block Store (Amazon EBS)

Which service is used to run containerized applications on AWS? 1. Amazon Elastic Kubernetes Service (Amazon EKS) 2. Amazon Aurora 3. Amazon Redshift 4. Amazon SageMaker

1. Amazon Elastic Kubernetes Service (Amazon EKS)

Which of the following represents the correct scenario where an Auto Scaling group's (ASG) predictive scaling can be effectively used to maintain the required number of AWS resources? 1.To manage a workload that exhibits recurring load patterns that are specific to the day of the week or the time of day 2.To manage a fixed number of resources in the Auto Scaling group 3.To help configure a CloudWatch Amazon SQS metric like 4.ApproximateNumberOfMessagesVisible for scaling the group based on the value of the metric 5.To help configure a scaling policy to keep the average aggregate CPU utilization of your Auto Scaling group at 40 percent

1.To manage a workload that exhibits recurring load patterns that are specific to the day of the week or the time of day

The AWS snow family of devices are used for: (Select all that apply) 1. Processing of data in transit while offline 2. Transferring of data when security regulations don't allow for the data to be transferred over the internet 3. Transferring of large amounts of data when the network speed would make the transfer take too long 4. Transferring data without the reliance of a network

1. Processing of data in transit while offline 2. Transferring of data when security regulations don't allow for the data to be transferred over the internet 3. Transferring of large amounts of data when the network speed would make the transfer take too long 4. Transferring data without the reliance of a network

Which of the following is true regarding SNS (Simple Notification Service)? 1. Recipients must subscribe to messages in order to receive them. 2. Recipients must create an AWS account in order to receive SNS notifications. 3. Recipients will receive all notifications as long as the their contact information is added to SNS. 4. Recipients must create an AWS account in order to opt out of receiving SNS notifications.

1. Recipients must subscribe to messages in order to receive them.

Which of the following is an AWS database service? 1. Redshift 2. Storage Gateway 3. Database Migration Service 4. Glue

1. Redshift

Which pillar of the AWS Well-Architected Framework focuses on the ability to mitigate and recover from service disruptions? 1. Reliability 2. Cost Optimization 3. Performance Efficiency 4. Sustainability

1. Reliability

Which EC2 Purchasing Option should you use for an application you plan on running on a server continuously for 1 year? 1. Reserved Instances 2. Spot Instances 3. On-demand Instances 4. Convertible Instances

1. Reserved Instances

Which of the following are the storage services offered by the AWS Cloud? (Select two) 1. S3 2. SNS 3. EFS 4. SQS 5. EC2

1. S3 , 3. EFS

Which of the following S3 storage classes takes the most time to retrieve data (also known as first byte latency)? 1. S3 Glacier Deep Archive 2. S3 Intelligent-Tiering 3. S3 IA 4. S3 Glacier

1. S3 Glacier Deep Archive

AWS Support offers four support plans for its customers. Identify the features that are covered as part of the AWS Basic Support Plan? (Select two) 1.Use-case guidance - What AWS products, features, and services to use to best support your specific needs 2.One-on-one responses to account and billing questions 3.Best practice guidance 4.Infrastructure event management 5.Service health checks

1.Use-case guidance - What AWS products, features, and services to use to best support your specific needs 5.Service health checks

A photo sharing web application wants to store thumbnails of user-uploaded images on Amazon S3. The thumbnails are rarely used but need to be immediately accessible from the web application. The thumbnails can be regenerated easily if they are lost. Which is the most cost-effective way to store these thumbnails on S3? 1. Use S3 One-Zone Infrequent Access (One-Zone IA) to store the thumbnails 2. Use S3 Glacier to store the thumbnails 3. Use S3 Standard Infrequent Access (Standard-IA) to store the thumbnails 4. Use S3 Standard to store the thumbnails

1. Use S3 One-Zone Infrequent Access (One-Zone IA) to store the thumbnails

A startup wants to migrate its data and applications from the on-premises data center to AWS Cloud. Which of the following options can be used by the startup to help with this migration? (Select two) 1. Utilize AWS Partner Network (APN) to build a custom solution for this infrastructure migration 2. Consult moderators on AWS Developer Forums 3. Leverage AWS Professional Services to accelerate the infrastructure migration 4. Raise a support ticket with AWS Support for further assistance 5. Use AWS Trusted Advisor to automate the infrastructure migration

1. Utilize AWS Partner Network (APN) to build a custom solution for this infrastructure migration 3. Leverage AWS Professional Services to accelerate the infrastructure migration

A company stores all their media files to Amazon S3 storage service which is accessed by an application hosted on Amazon EC2 instances. The company wants to convert these media files into formats that users can playback on mobile devices. Which AWS service/tool helps you achieve this requirement? 1.Amazon Elastic Transcoder 2.Amazon Transcribe 3.AWS Glue 4.Amazon Comprehend

1.Amazon Elastic Transcoder

An e-learning company wants to build a knowledge graph by leveraging a fully managed database. Which of the following is the best fit for this requirement? 1.Amazon Neptune 2.Amazon DynamoDB 3.Amazon RDS 4.Amazon DocumentDB

1.Amazon Neptune

A supply chain company is looking for a database that provides a centrally verifiable history of all changes made to data residing in it. This functionality is critical for the product and needs to be available off-the-shelf without the need for any customizations. Which of the following databases is the right choice for this use-case? 1.Amazon Quantum Ledger Database 2.Amazon Timestream 3.Amazon Managed Blockchain 4.Amazon Neptune

1.Amazon Quantum Ledger Database

An e-commerce company needs to generate custom reports and graphs every week for analyzing the product sales data. The company is looking at a tool/service that will help them analyze this data using interactive dashboards with minimal effort. The dashboards also need to be accessible from any device. Which AWS tool/service will you recommend for this use-case? 1.Amazon Quicksight 2.Amazon Athena 3.Amazon SageMaker 4.AWS Glue

1.Amazon Quicksight Amazon Quicksight - Amazon QuickSight is a scalable, serverless, embeddable, machine learning-powered business intelligence (BI) service built for the cloud. QuickSight lets you easily create and publish interactive BI dashboards that include Machine Learning-powered insights. QuickSight dashboards can be accessed from any device, and seamlessly embedded into your applications, portals, and websites.

According to the Well-Architected Framework, which of the following statements are recommendations in the Operational Excellence pillar? (Select two) 1.Anticipate failure 2.Make frequent, small, reversible changes 3.Automatically recover from failure 4.Enable traceability 5.Use serverless architectures

1.Anticipate failure 2.Make frequent, small, reversible changes

Which of the following AWS Support plans is the MOST cost-effective when getting enhanced technical support by Cloud Support Engineers? 1.Business 2.Enterprise 3.Developer 4.Basic

1.Business

A healthcare company wants to implement a continuous replication based disaster recovery mechanism and provide fast, reliable recovery of physical, virtual, and cloud-based servers into AWS Cloud. Which of the following represents the best-fit solution for this use case? 1.CloudEndure Disaster Recovery 2.CloudCover Disaster Recovery 3.AWS Snowball Edge 4.AWS Storage Gateway

1.CloudEndure Disaster Recovery CloudEndure Disaster Recovery - CloudEndure Disaster Recovery, available from the AWS Marketplace, continuously replicates server-hosted applications and server-hosted databases from any source into AWS using block-level replication of the underlying server. CloudEndure Disaster Recovery enables you to use AWS Cloud as a disaster recovery Region for an on-premises workload and its environment. It can also be used for disaster recovery of AWS hosted workloads if they consist only of applications and databases hosted on EC2 (i.e. not RDS).

What AWS service has built-in DDoS mitigation? 1.CloudFront 2.EC2 3.CloudWatch 4.CloudTrail

1.CloudFront

When working with the AWS Cloud, which of the following do you not need to worry about? Choose 2 1.Having the pay as you go model, so you don't need to worry if you are burning costs for non-running resources. 2.Having complete control over the physical infrastructure, so you don't need to worry about what AWS is doing. 3.Having no need to worry about security 4.Upfront costs

1.Having the pay as you go model, so you don't need to worry if you are burning costs for non-running resources. 4.Upfront costs

What does DNS failover allow us to do? 1.It allows us to use Route53 to ensure that requests are routed to healthy resources 2.It allows us to use VPC peering to guide network traffic to a healthy VPC 3.It allows us to leverage Route53 weighted routing to route traffic to the correct resources 4.It allows us to create a backup domain name in Route53 just in case one domain name fa

1.It allows us to use Route53 to ensure that requests are routed to healthy resources

Which of the following is the responsibility of the AWS customer according to the Shared Security Model? 1.Managing AWS Identity and Access Management (IAM) 2.Securing edge locations 3.Monitoring physical device security 4.AWS Config

1.Managing AWS Identity and Access Management (IAM)

What do you pay for in regards to RDS? (Select 5) 1.Multi AZ deployment 2.Data transfer out of RDS 3.Data transfer in to RDS 4.The instance type 5.Exporting database snapshots 6.The type of storage the data will be stored on

1.Multi AZ deployment 2.Data transfer out of RDS 4.The instance type 5.Exporting database snapshots 6.The type of storage the data will be stored on

Which of the following would you use for OLTP? 1.MySQL 2.Redshift 3.Neptune 4.DynamoDB

1.MySQL

Which S3 storage type provides low-cost storage for archiving along with the ability to retrieve objects in milliseconds? 1.S3 Glacier Instant retrieval 2.S3 Glacier Flexible Retrieval 3.S3 Glacier Deep Archive 4.S3 Intelligent-Tiering

1.S3 Glacier Instant retrieval

Which of the following services can send notifications via email? (Select 2) 1.SES 2.SQS 3.SOS 4.SNS

1.SES 4.SNS

Your company is planning to move to the AWS Cloud. You need to give a presentation on the cost perspective when moving existing resources to the AWS Cloud. When it comes to Amazon EC2, which of the following is an advantage when it comes to the cost perspective? 1.The ability to only pay for what you use 2.Having the ability of automated backups of the EC2 instance, so that you don't need to worry about the maintenance costs. 3.Ability to tag instances to reduce the overall cost 4.The ability to choose low cost AMI's to prepare the EC2 Instances

1.The ability to only pay for what you use

What do you pay for when using AWS EC2? (Select 3) 1.The instance type 2.The time the instance is running 3.The pricing model chosen 4.The region the instance is located in

1.The instance type 2.The time the instance is running 3.The pricing model chosen

If your instance is being billed by the hour and your instance has been running for 15 minutes, what will you be charged for? 1. It will round up to the nearest 30 minute increment and charge for 30 minutes 2. 1 hour 3. 0 hours 4. 15 minutes

2. 1 hour

Which of the following is correct about AWS "Developer" Support plan? 1. Allows one contact to open a limited number of cases per month 2. Allows one contact to open unlimited cases 3. Allows unlimited contacts to open unlimited cases 4. Allows unlimited contacts to open a limited number of cases per month

2. Allows one contact to open unlimited cases AWS Developer Support plan allows one primary contact to open unlimited cases.

You want to store data in a key-value database. Which service should you use? 1. Amazon RDS 2. Amazon DynamoDB 3. Amazon DocumentDB 4. Amazon Aurora

2. Amazon DynamoDB

Which AWS service should be used when you want to run container applications, but want to avoid the operational overhead of scaling, patching, securing, and managing servers? 1. Amazon Elastic Container Service - EC2 launch type 2. Amazon Elastic Container Service - Fargate launch type 3. Amazon Elastic Compute Cloud (Amazon EC2) 4. AWS Lambda

2. Amazon Elastic Container Service - Fargate launch type

Which of the following statements are correct regarding the AWS Support Plans? (Select two) 1.AWS Concierge service is available for Business and Enterprise support plans 2.Contextual guidance based on customer use-case, is available only for Enterprise support plans 3.A designated Technical Account Manager is available only for Enterprise support plans 4.Infrastructure Event Management is included for free for Business and Enterprise support plans and can be extended to a Developer support plan for an additional fee 5.Both Basic and Developer Support plans have access to 7 core Trusted Advisor checks

3.A designated Technical Account Manager is available only for Enterprise support plans 5.Both Basic and Developer Support plans have access to 7 core Trusted Advisor checks

What is the purpose of granting least privileges? 1. Granting least priviledges only grants users the minimum privileges allowed in AWS 2. Granting least privileges ensures users may only have access to what is required to perform their assigned tasks 3. Granting least privileges blocks users from performing specific tasks in AWS 4. Granting least privileges is the method by which we list all the priviledges a user has in AWS

2. Granting least privileges ensures users may only have access to what is required to perform their assigned tasks

What are two ways that moving to an AWS cloud can benefit an organization? (Select TWO.) 1. Depreciate assets over a longer timeframe 2. Increase speed and agility 3. Switch to a CAPEX model 4. Gain greater control of data center security 5. Stop guessing about capacity

2. Increase speed and agility , 5. Stop guessing about capacity

What is the primary benefit of deploying an RDS database in a Multi-AZ configuration? 1. Multi-AZ protects the database from a regional failure 2. Multi-AZ enhances database availability 3. Multi-AZ reduces database usage costs 4. Multi-AZ improves database performance for read-heavy workloads

2. Multi-AZ enhances database availability

What is an AWS graph database solution? 1. RDS 2. Neptune 3. Dynamodb 4. Aurora

2. Neptune

Which of the following is used to secure your VPC subnets? 1. AWS IAM 2. Network ACL 3.EC2 Key Pair 4. Security Group

2. Network ACL

Which of the following statement is correct regarding the AWS pricing policy for data transfer charges into or out of an AWS Region? 1. Neither inbound nor outbound data transfer are charged 2. Only outbound data transfer is charged 3. Only inbound data transfer is charged 4. Both inbound data transfer and outbound data transfer are charged

2. Only outbound data transfer is charged

Which of the following is a document that defines one or more permissions? 1. Permission 2. Policy 3. Group 4. Role

2. Policy

Which migration strategy involves changing how an application is architected and developed, typically by using cloud-native features? 1. Repurchasing 2. Refactoring 3. Replatforming 4. Rehosting

2. Refactoring

Which migration strategy involves moving applications and making a few cloud optimizations without changing the core architecture of the application? 1. Repurchasing 2. Replatforming 3. Rehosting 4. Retaining

2. Replatforming

What are the different gateway types supported by AWS Storage Gateway service? 1. Object Gateway, File Gateway and Block Gateway 2. Tape Gateway, File Gateway and Volume Gateway 3. Tape Gateway, Object Gateway and Volume Gateway 4. Tape Gateway, File Gateway and Block Gateway

2. Tape Gateway, File Gateway and Volume Gateway

Which of the following entities applies patches to the underlying OS for AWS Aurora? 1. The AWS Support after receiving a request from the customer 2. The AWS Product Team automatically 3. The AWS customer by SSHing on the instances 4. The AWS customer by using AWS Systems Manager

2. The AWS Product Team automatically

A blogging company is looking at an easy to use solution to host WordPress blogs. The company needs a cost-effective, readily available solution without the need to manage the configurations for servers or the databases. Which AWS service will help you achieve this functionality? 1.AWS Fargate 2.Host the application directly on Amazon S3 3.Amazon Lightsail 4.Amazon Elastic Compute Cloud (EC2) with Amazon S3 for storage

3.Amazon Lightsail

Your company currently uses VM Templates to spin up virtual machines on their on-premise infrastructure. Which of the following can be used in a similar way to spin up EC2 instances on the AWS Cloud? 1.EBS Volumes 2.EBS Snapshots 3.Amazon Machine Images 4.Amazon VMware

3.Amazon Machine Images

An organization would like to copy data across different Availability Zones (AZs) using EBS snapshots. Where are EBS snapshots stored in the AWS Cloud? 1.Amazon EFS 2.Amazon EC2 3.Amazon S3 4.Amazon RDS

3.Amazon S3

Which of the following storage options provides the option of Lifecycle policies that can be used to move objects to archive storage? 1.Amazon Storage Gateway 2.Amazon EBS 3.Amazon S3 4.Amazon Glacier

3.Amazon S3

To meet the compliance norms, a consulting company is expected to store its data for three years. The company needs a tamper-proof technology/feature to keep the data protected and prevent any overwriting or data manipulation during the three-year duration. As a Cloud Practitioner, which service/functionality will you suggest to keep the data safe? 1.Amazon S3 Storage Lens 2.Amazon Macie 3.Amazon S3 Glacier Vault Lock 4.Amazon S3 Object Lock

3.Amazon S3 Glacier Vault Lock

Which of the following would require the creating of a custom metric in CloudWatch? 1.Disk read operations 2.CPU utilization 3.Amount of memory currently being used 4.The number of bytes received on all network interfaces by the instance

3.Amount of memory currently being used

A company currently has an application which consist of a .Net layer which connects to a MySQL database. They now want to move this application onto AWS. They want to make use of all AWS features such as high availability and automated backups. Which of the following would be an ideal database in AWS to migrate to for this requirement? 1.DynamoDB 2.An EC2 instance with Aurora installed. 3.Aurora 4.An EC2 instance with MySQL installed.

3.Aurora

Which of the following are the best practices when using AWS Organizations? (Select TWO) 1.Disable CloudTrail on several accounts 2.Never use tags for billing 3.Create accounts per department 4.Restrict account privileges using Service Control Policies (SCP) 5..Do not use AWS Organizations to automate AWS account creation

3.Create accounts per department 4.Restrict account privileges using Service Control Policies (SCP)

Your company handles a crucial ecommerce application. This applications needs to have an uptime of at least 99.5%. There is a decision to move the application to the AWS Cloud. Which of the following deployment strategies can help build a robust architecture for such an application? 1.Deploying the application across multiple subnets 2.Deploying the application across multiple VPCs 3.Deploying the application across multiple Regions 4.Deploying the application across Edge locations

3.Deploying the application across multiple Regions

Which of the following services is a fully managed database provided by AWS? 1.Oracle RDS 2.AWS RDS 3.DynamoDB

3.DynamoDB

Historically, IT departments had to over-provision for peak demand. IT professionals may bring this legacy mindset to the table when they build their cloud infrastructure leading to over-provisioned resources and unnecessary costs. Right-sizing of resources is necessary to reduce infrastructure costs while still using cloud functionality optimally. Which feature of the AWS Cloud refers to right sizing the resources? 1.Reliability 2.Horizontal scaling 3.Elasticity 4.Resiliency

3.Elasticity

A company wants to host a self-managed database in AWS. How would you ideally implement this solution? 1.Using the Amazon Aurora service 2.Using the AWS DynamoDB service 3.Hosting on the database on an EC2 Instance 4.Using the AWS RDS service

3.Hosting on the database on an EC2 Instance

Which of the following IAM Security Tools allows you to review permissions granted to a user? 1.Multi-Factor Authentication (MFA) 2.IAM policies 3.IAM access advisor 4.IAM credentials report

3.IAM access advisor IAM access advisor Access advisor shows the service permissions granted to a user and when those services were last accessed. You can use this information to revise your policies. To summarize, you can identify unnecessary permissions so that you can revise your IAM policies accordingly.

There is a requirement for a development and test environment for 3 months. Which of the following would you use? 1.Performance, cost optimization, access control, and connectivity 2.No Upfront costs Reserved 3.On-Demand 4.Spot Instances

3.On-Demand

There is a requirement hosting a set of servers in the Cloud for a short period of 3 months. Which of the following types of instances should be chosen to be cost effective? 1.No Upfront costs Reserved 2.Spot Instances 3.On-Demand 4.Partial Upfront costs Reserved

3.On-Demand

Which of the following use-cases can be solved using the Amazon Forecast service? 1.To recommend personalized products for users based on their previous purchases 2.To develop and test fully functional machine learning models 3.Predict the web traffic of a website for the next few weeks 4.Document search service that can extract answers from text within documents

3.Predict the web traffic of a website for the next few weeks

A company would like to move its infrastructure to AWS Cloud. Which of the following should be included in the Total Cost of Ownership (TCO) estimate? (Select TWO) 1.Number of end-users 2.Electronic equipment at office 3.Server administration 4.Application advertising 5.Power/Cooling

3.Server administration 5.Power/Cooling Server administration is included in the IT labor costs. Power/Cooling are included in the server, storage and network cost.

You have a distributed application that periodically processes large volumes of data across multiple Amazon EC2 Instances. The application is designed to recover gracefully from Amazon EC2 instance failures. You are required to accomplish this task in the most cost-effective way. Which of the following will meet your requirements? 1.On-Demand instances 2.Dedicated instances 3.Spot Instances 4.Reserved instances

3.Spot Instances

Which of the following is CORRECT regarding removing an AWS account from AWS Organizations? 1. Raise a support ticket with AWS Support to remove the account 2. The AWS account must be able to operate as a standalone account. Only then it can be removed from AWS organizations 3. The AWS account must not have any Service Control Policies (SCPs) attached to it. Only then it can be removed from AWS organizations 4. The AWS account can be removed from AWS Systems Manager

2. The AWS account must be able to operate as a standalone account. Only then it can be removed from AWS organizations

The DevOps team at an IT company is moving 500 GB of data from an EC2 instance to an S3 bucket in the same region. Which of the following scenario captures the correct charges for this data transfer? 1. The company would be charged for both the outbound data transfer from EC2 instance as well as the inbound data transfer into the S3 bucket 2. The company would not be charged for this data transfer 3. The company would only be charged for the inbound data transfer into the S3 bucket 4. The company would only be charged for the outbound data transfer from EC2 instance

2. The company would not be charged for this data transfer

Spending some time tagging your resources leads to many benefits. What are some of those benefits? (Choose two) 1. Quickly search for software solutions on AWS 2. Track your AWS spending across multiple resources 3. Track API calls in your AWS account 4. Find deleted resources and their metadata more quickly 5. Quickly search for the resources that belong to a specific project

2. Track your AWS spending across multiple resources, 5. Quickly search for the resources that belong to a specific project

How does AWS notify customers about the latest security and privacy events within AWS services? 1. Using the AWS Management Console 2. Using Security Bulletins 3. Using Compliance Resources 4. Using the AWS ACM service

2. Using Security Bulletins AWS Security Bulletins provide customers with up-to-date information on security and privacy events that impact AWS services, including details on the issue, affected services, and recommended actions to mitigate the issue. Customers can subscribe to the AWS Security Bulletins to receive automatic notifications of new bulletins via email or RSS feed.

Which AWS Route 53 routing policy would you use to route traffic to multiple resources and also choose how much traffic is routed to each resource? 1. Latency routing policy 2. Weighted routing policy 3. Simple routing policy 4. Failover routing policy

2. Weighted routing policy

Which statement is TRUE for AWS Lambda? 1. Before using AWS Lambda, you must prepay for your estimated compute time. 2. You pay only for compute time while your code is running. 3. To use AWS Lambda, you must configure the servers that run your code. 4. The first step in using AWS Lambda is provisioning a server.

2. You pay only for compute time while your code is running.

Which of the following services helps provide a connection from on-premise infrastructure to resources hosted in the AWS Cloud? Choose 2 answers from the options given below. 1.AWS Subnets 2.AWS Direct Connect 3.AWS VPC 4.AWS VPN

2.AWS Direct Connect 4.AWS VPN

With which service can a developer upload code and have the service handle the end-to-end deployment of the resources? 1.Amazon ECS 2.AWS Elastic Beanstalk 3.AWS CodeCommit 4.AWS CodeDeploy

2.AWS Elastic Beanstalk

According to the shared responsibility model, which of the following is not a responsibility of the customer in the cloud? 1.Security Groups 2.Virtualization Infrastructure 3.Applications 4.EC2 Instance Operating System

2.Virtualization Infrastructure

Which of the following is the least effort way to encrypt data for AWS services only in your AWS account using AWS Key Management Service (KMS)? 1.Create your own customer master keys (CMKs) in AWS KMS 2.Use AWS owned CMK in the service you wish to use 3.Use AWS managed master keys that are automatically created in your account for each service 4.Use AWS KMS APIs to encrypt data within your own application by using the AWS Encryption SDK

3.Use AWS managed master keys that are automatically created in your account for each service

Which of the following criteria are used to charge for Elastic Block Store (EBS) volumes? (Select TWO) 1.Data type 2.The EC2 instance type the EBS volume is attached to 3.Volume type 4.Provisioned IOPS 5.Data transfer IN

3.Volume type 4.Provisioned IOPS

When should you choose Redis over Memcached? 1.When you need a data store that emphasizes simplicity over a large feature set 2.When you need to minimize your in memory data store costs 3.When you want a comprehensive in memory data store with a large set of features 4.When you need a simple in memory data store option that supports multi threaded architecture

3.When you want a comprehensive in memory data store with a large set of features

A Cloud Practitioner would like to get operational insights of its resources to quickly identify any issues that might impact applications using those resources. Which AWS service can help with this task? 1. AWS Health - Your Account Health Dashboard 2. AWS Trusted Advisor 3. AWS Systems Manager 4. Amazon Inspector

3. AWS Systems Manager

What AWS caching solution delivers website data and interactive content to edge locations all over the world to decrease latency and increase application performance? 1. Amazon DAX 2. AWS Greengrass 3. Amazon CloudFront 4. Cross-Region Replication

3. Amazon CloudFront

Which statement best describes the principle of least privilege? 1. Adding an IAM user into at least one IAM group 2. Checking a packet's permissions against an access control list 3. Granting only the permissions that are needed to perform specific tasks 4. Performing a denial of service attack that originates from at least one device

3. Granting only the permissions that are needed to perform specific tasks

An organization deploys its IT infrastructure in a combination of its on-premises data center along with AWS Cloud. How would you categorize this deployment model? 1. Private deployment 2. Cloud deployment 3. Hybrid deployment 4. Mixed deployment

3. Hybrid deployment

An employee requires temporary access to create several Amazon S3 buckets. Which option would be the best choice for this task? 1. AWS account root user 2. IAM group 3. IAM role 4. Service control policy (SCP)

3. IAM role

A research group wants to use EC2 instances to run a scientific computation application that has a fault tolerant architecture. The application needs high-performance hardware disks that provide fast I/O performance. As a Cloud Practitioner, which of the following storage options would you recommend as the MOST cost-effective solution? 1. EFS 2. EBS 3. Instance Store 4. S3

3. Instance Store

A research group wants to use EC2 instances to run a scientific computation application with built-in fault tolerance. The application needs high-performance hardware disks that provide fast I/O performance. As a Cloud Practitioner, which of the following storage options would you recommend as the MOST cost-effective solution? 1. EFS 2. EBS 3. Instance Store 4. S3

3. Instance Store

Which of the following is a serverless AWS service? 1. EC2 2. EMR 3. Lambda 4. Beanstalk

3. Lambda

An IT company wants to run a log backup process every Monday at 2 AM. The usual runtime of the process is 5 minutes. As a Cloud Practitioner, which AWS services would you recommend to build a serverless solution for this use-case? (Select two) 1. EC2 Instance 2. Step Function 3. Lambda 4. Systems Manager 5. CloudWatch

3. Lambda 5. CloudWatch

AWS Web Application Firewall (WAF) offers protection from common web exploits at which layer? 1. Layer 4 and 7 2. Layer 3 3. Layer 7 4. Layer 4

3. Layer 7 - Application

How can a company migrate a database from Amazon EC2 to RDS without downtime? 1. Create an RDS read replica and then promote replica to master 2. Create a new database from an EBS snapshot 3. Migrate using the AWS Database Migration Service (DMS)

3. Migrate using the AWS Database Migration Service (DMS)

Which AWS Trusted Advisor category includes checks for high-utilization EC2 instances? 1. Cost Optimization 2. Security 3. Performance 4. Fault Tolerance

3. Performance

Which of the following use-cases is NOT supported by Amazon Rekognition? 1. Label objects in a photo 2. Identify person in a photo 3. Quickly resize photos to create thumbnails 4. Detect text in a photo

3. Quickly resize photos to create thumbnails You cannot use Rekognition to resize photos to create thumbnails. With Amazon Rekognition, you can identify objects, people, text, scenes, and activities in images and videos, as well as detect any inappropriate content. Amazon Rekognition also provides highly accurate facial analysis and facial search capabilities that you can use to detect, analyze, and compare faces for a wide variety of user verification, people counting, and public safety use cases.

Which of the following would you use for OLAP? 1. DynamoDB 2. MySQL 3. Redshift 4. Aurora

3. Redshift

Which AWS services can be used to decouple components of a microservices based application on AWS Cloud? (Select two) 1. Step Function 2. EC2 3. SQS 4. Lambda 5. SNS

3. SQS, 5. SNS

Which virtual private cloud (VPC) component controls inbound and outbound traffic for Amazon EC2 instances? 1. Internet gateway 2. Network access control list 3. Security group 4. Subnet

3. Security group

Which of the following is AWS' responsibility according to the Shared Responsibility Model? (select 3) 1. Security in the cloud 2. Firewall configuration 3. Security of the cloud 4. PaaS routine patches and updates 5. User data security 6. Infrastructure maintenance

3. Security of the cloud 4. PaaS routine patches and updates 6. Infrastructure maintenance

Which Amazon EC2 instance pricing option is ideal for workloads with flexible start and end times? 1. Compute Savings Plans 2. Reserved 3. Spot 4. On-Demand

3. Spot

Which of the following represents a serverless stack on AWS Cloud? 1. Step Function, DynamoDB, EC2 2. EMR, DynamoDB, Lambda 3. Step Function, DynamoDB, Lambda 4. EC2, DynamoDB, Lambda

3. Step Function, DynamoDB, Lambda

__________________ is a hybrid cloud storage service that gives you on-premises access to virtually unlimited cloud storage. 1. Elasticache 2. Amazon VPG 3. Storage Gateway 4. Direct Connect

3. Storage Gateway

What is the purpose of using Systems Manager? 1. The management of the hardware that EC2 runs on 2. The management and organization of the architecture of your EC2's 3. The management of EC2 security systems 4. The management of multiple EC2 instances

3. The management of multiple EC2 instances

Which routing policy description describes the following policy type: Geoproximity routing 1. Use when you have resources in multiple AWS Regions and you want to route traffic to the region that provides the best latency 2. Use when you want to route traffic based on the location of your users. 3. Use when you want to route traffic based on the location of your resources and, optionally, shift traffic from resources in one location to resources in another. 4. Use to route traffic to multiple resources in proportions that you specify.

3. Use when you want to route traffic based on the location of your resources and, optionally, shift traffic from resources in one location to resources in another.

What type of information is CloudTrail monitoring? 1. The direction and flow of network traffic 2. The S3 bucket policies moving objects to other types of storage 3. User activity within the AWS console and platform 4. System metrics and resource utilization

3. User activity within the AWS console and platform

You have a devops team in your current organization structure. They are keen to know if there is any service available in AWS which can be used to manage infrastructure as code. Which of the following can meet such a requirement? 1. Using AWS Config 2. Using AWS Inspector 3. Using AWS Cloudformation 4. Using AWS Trusted Advisor

3. Using AWS Cloudformation

____________ approach minimizes the ongoing cost of disaster recovery by minimizing the active resources, and simplifies recovery at the time of a disaster because the core infrastructure requirements are all in place. 1. Low Capacity 2. Backup & Restore 3. Warm Standby 4. Pilot Light

3. Warm Standby

When should you choose Memcached over Redis? 1. When you need an in memory data store that supports advanced data structures 2. When you need an in memory data store that supports snapshots 3. When you need a simple in memory data store option that supports multi threaded architecture 4. When you want a comprehensive in memory data store with a large set of features

3. When you need a simple in memory data store option that supports multi threaded architecture

When would you set up VPC Peering? 1. To plan ahead for failover if one VPC is temporarily down, the other VPC can be used 2. When two or more departments of an organization have thier own VPC, you must peer them as part of the IAM organizations process 3. When you need to combine the resources of two or more VPC's to leverage the processing benefits 4. When you subnet fails and your availability zone is not set up for redundancy.

3. When you need to combine the resources of two or more VPC's to leverage the processing benefits

Which of the statements below is correct in relation to Consolidated Billing? (choose 3) 1. You pay a fee per linked account 2. You receive one bill per AWS account 3. You can combine usage and share volume pricing discounts 4. It's a free service 5. You receive a single bill for multiple accounts

3. You can combine usage and share volume pricing discounts 4. It's a free service 5. You receive a single bill for multiple accounts

How long does the AWS free usage tier for EC2 last for? 1. Forever 2. 1 Month upon signup 3. 6 Months upon signup 4. 12 Months upon signup

4. 12 Months upon signup

Compared to the On-demand prices, what is the highest possible discount offered for spot instances? 1. 10% 2. 75% 3. 50% 4. 90%

4. 90%

Which of the following statements are CORRECT regarding the AWS VPC service? (Select two) 1. A Security Group can have both allow and deny rules 2. A NACL can have allow rules only 3. A NAT Instance is managed by AWS 4. A NAT Gateway is managed by AWS 5. A Security Group can have allow rules only

4. A NAT Gateway is managed by AWS 5. A Security Group can have allow rules only

Which statement best describes Elastic Load Balancing? 1. A service that provides data that you can use to monitor your applications, optimize resource utilization, and respond to system-wide performance changes 2. A service that monitors your applications and automatically adds or removes capacity from your resource groups in response to changing demand 3. A service that enables you to set up, manage, and scale a distributed in-memory or cache environment in the cloud 4. A service that distributes incoming traffic across multiple targets, such as Amazon EC2 instances

4. A service that distributes incoming traffic across multiple targets, such as Amazon EC2 instances

A Cloud Practitioner would like to deploy identical resources across all regions and accounts using templates while estimating costs. Which AWS service can assist with this task? 1. AWS Directory Service 2. AWS CodeDeploy 3. Amazon LightSail 4. AWS CloudFormation

4. AWS CloudFormation

Which service enables you to review details for user activities and API calls that have occurred within your AWS environment? 1. AWS Trusted Advisor 2. Amazon CloudWatch 3. Amazon Inspector 4. AWS CloudTrail

4. AWS CloudTrail

Which AWS service publishes up-to-the-minute information on the general status and availability of all AWS services in all the Regions of AWS Cloud? 1. AWS CloudFormation 2. AWS Health - Your Account Health Dashboard 3. Amazon CloudWatch 4. AWS Health - Service Health Dashboard

4. AWS Health - Service Health Dashboard AWS Health - Service Health Dashboard is the single place to learn about the availability and operations of AWS services. You can view the overall status of AWS services, and you can sign in to view personalized communications about your particular AWS account or organization.

Which of the following options of AWS RDS allows for AWS to failover to a secondary database in case the primary one fails? 1. AWS Failover 2. AWS Secondary 3. AWS Standby 4. AWS Multi-AZ

4. AWS Multi-AZ

Which service helps protect your applications against distributed denial-of-service (DDoS) attacks? 1. Amazon GuardDuty 2. Amazon Inspector 3. AWS Artifact 4. AWS Shield

4. AWS Shield

Which service is best suited for moving large amounts of data and transferring up to 100 petabytes of data? 1. AWS Snowcone 2. AWS Snowball 3. AWS Snowball 4. AWS Snowmobile

4. AWS Snowmobile

A company's flagship application runs on a fleet of Amazon EC2 instances. As per the new policies, the system administrators are looking for the best way to provide secure shell access to AWS EC2 instances without opening new ports or using public IP addresses. Which tool/service will help you achieve this requirement? 1. Amazon EC2 Instance Connect 2. Amazon Inspector 3. Amazon Route 53 4. AWS Systems Manager Session Manager

4. AWS Systems Manager Session Manager AWS SSM Session Manager is a fully-managed service that provides you with an interactive browser-based shell and CLI experience. It helps provide secure and auditable instance management without the need to open inbound ports, maintain bastion hosts, and manage SSH keys. Session Manager helps to enable compliance with corporate policies that require controlled access to instances, increase security and auditability of access to the instances while providing simplicity and cross-platform instance access to end-users.

An online gaming company wants to block users from certain geographies from accessing its content. Which AWS service can be used to accomplish this task? 1. AWS Shield 2. AWS Protect 3. CloudWatch 4. AWS WAF

4. AWS WAF AWS WAF is a web application firewall that helps protect web applications from attacks by allowing you to configure rules that allow, block, or monitor (count) web requests based on conditions that you define. These conditions include IP addresses, HTTP headers, HTTP body, URI strings, SQL injection, and cross-site scripting. You can use the IP address based match rule to block specific geographies. The accuracy of the IP Address to country lookup database varies by Region. Based on recent tests, AWS mentions that the overall accuracy for the IP address to country mapping is 99.8%.

The DevOps team at an e-commerce company is trying to debug performance issues for its serverless application built using a microservices architecture. As a Cloud Practitioner, which AWS service would you recommend addressing this use-case? 1. AWS CloudFormation 2. Amazon Pinpoint 3. AWS Trusted Advisor 4. AWS X-Ray

4. AWS X-Ray

A data analytics company has some data stored on Amazon S3 and wants to do SQL based analysis on this data with minimum effort. As a Cloud Practitioner, which of the following AWS services will you suggest for this use case? 1. Amazon Aurora 2. Redshift 3. DynamoDB 4. Amazon Athena

4. Amazon Athena Amazon Athena is an interactive query service that makes it easy to analyze data in Amazon S3 using standard SQL. Athena is serverless, so there is no infrastructure to manage, and you pay only for the queries that you run.

Which AWS service can be used to store, manage, and deploy Docker container images? 1. Amazon Lambda 2. Amazon EC2 3. Amazon Elastic Container Service (ECS) 4. Amazon Elastic Container Registry (ECR)

4. Amazon Elastic Container Registry (ECR)

An e-commerce company wants to assess its applications deployed on EC2 instances for vulnerabilities and deviations from AWS best practices. Which AWS service can be used to facilitate this? 1. AWS Secrets Manager 2. AWS Trusted Advisor 3. AWS CloudHSM 4. Amazon Inspector

4. Amazon Inspector Amazon Inspector is an automated security assessment service that helps improve the security and compliance of applications deployed on AWS. Amazon Inspector automatically assesses applications for exposure, vulnerabilities, and deviations from best practices.

What does it mean to be serverless? 1. Serverless is the native architecture of the cloud that enables you to take more operational responsibilities from AWS 2. Serverless is the foundation of every single service AWS offers 3. Serverless is a common architecture pattern that removes servers from existing architecture to limit cost accumulation 4. Serverless is the native architecture of the cloud that enables you to shift more of your operational responsibilities to AWS

4. Serverless is the native architecture of the cloud that enables you to shift more of your operational responsibilities to AWS

Which EC2 Purchasing Option can provide the biggest discount, but is not suitable for critical jobs or databases? 1. Scheduled Instances 2. Convertible Instances 3. Dedicated Hosts 4. Spot Instances

4. Spot Instances

A unicorn startup is building an analytics application with support for a speech-based interface. The application will accept speech-based input from users and then convey results via speech. As a Cloud Practitioner, which solution would you recommend for the given use-case? 1. Use Amazon Translate to convert speech to text for downstream analysis. Then use Amazon Polly to convey the text results via speech 2. Use Amazon Polly to convert speech to text for downstream analysis. Then use Amazon Transcribe to convey the text results via speech 3. Use Amazon Polly to convert speech to text for downstream analysis. Then use Amazon Translate to convey the text results via speech 4. Use Amazon Transcribe to convert speech to text for downstream analysis. Then use Amazon Polly to convey the text results via speech

4. Use Amazon Transcribe to convert speech to text for downstream analysis. Then use Amazon Polly to convey the text results via speech

When should you turn on multi part uploads? 1. When you need to upload a large number of files 2. When uploading files approximately 1 GB or larger 3. When you need to upload encrypted files 4. When uploading files approximately 100 MB or larger

4. When uploading files approximately 100 MB or larger

Why would you select convertible reserve instances over standard reserve instances? 1. more AMI options 2. more CPU options 3. cheaper 4. more flexibility

4. more flexibility

A production company would like to establish an AWS managed VPN service between its on-premises network and AWS. Which item needs to be set up on the company's side? 1.A virtual private gateway 2.A VPC endpoint interface 3.A security group 4.A customer gateway

4.A customer gateway A customer gateway A customer gateway device is a physical or software appliance on your side of a Site-to-Site VPN connection. You or your network administrator must configure the device to work with the Site-to-Site VPN connection. You can enable access to your remote network from your VPC by creating an AWS Site-to-Site VPN (Site-to-Site VPN) connection, and configuring routing to pass traffic through the connection. A security group - A security group acts as a virtual firewall for your instance to control inbound and outbound traffic. It is not a component of a connection between on-premises network and AWS. A VPC endpoint interface - An interface VPC endpoint (interface endpoint) enables you to connect to services powered by AWS PrivateLink. It is not a component of a connection between on-premises network and AWS. A virtual private gateway - A virtual private gateway device is a physical or software appliance on AWS side of a Site-to-Site VPN connection.

A Security Group has been changed in an AWS account and the manager of the account has asked you to find out the details of the user who changed it. As a Cloud Practitioner, which AWS service will you use to fetch the necessary information? 1.AWS Trusted Advisor 2.Amazon Inspector 3.AWS X-Ray 4.AWS CloudTrail

4.AWS CloudTrail

Which of the following data sources are used by Amazon Detective to analyze events and identify potential security issues? 1.Amazon CloudWatch Logs, AWS CloudTrail logs and Amazon Inspector logs 2.Amazon CloudWatch Logs, AWS CloudTrail logs and S3 Access Logs 3.Amazon CloudWatch Logs, Amazon VPC Flow Logs and Amazon GuardDuty findings 4.AWS CloudTrail logs, Amazon VPC Flow Logs and Amazon GuardDuty findings

4.AWS CloudTrail logs, Amazon VPC Flow Logs and Amazon GuardDuty findings

Which of the following AWS services should you use to migrate an existing database to AWS? 1.AWS Snowball 2.AWS Lambda 3.AWS Storage gateway 4.AWS DMS

4.AWS DMS

Which of the following services/tools offers a user-friendly graphical user interface to manage AWS Snowball devices without a need for command-line interface or REST APIs? 1.AppStream 2.0 2.AWS Transfer Family 3.AWS OpsWorks 4.AWS OpsHub

4.AWS OpsHub

Which of the following can be used to call AWS services from programming languages? 1.AWS Console 2.AWS CLI 3.AWS IAM 4.AWS SDK

4.AWS SDK

Which member of the AWS Snow Family is used by the Edge computing applications for IoT use cases for facilitating the collection and processing of data to gain immediate insights and then transfer the data to AWS? 1.AWS Snowposts 2.AWS Snowmobile 3.AWS Snowball Edge Storage Optimized 4.AWS Snowcone

4.AWS Snowcone

Which of the following is used to derive the costs for moving artefacts from on-premise to AWS? 1.AWS Cost Explorer 2.AWS Config 3.AWS Consolidated billing 4.AWS TCO calculator

4.AWS TCO calculator

Which free tool helps to review the state of your workloads and compares them to the latest AWS architectural best practices after you have answered a series of questions about your workload? 1.AWS Technical Account Manager (TAM) 2.AWS Trusted Advisor 3.AWS Well-Architected Framework 4.AWS Well-Architected Tool

4.AWS Well-Architected Tool

Which AWS service allows you to quickly and easily add user sign-up, sign-in, and access control to web and mobile applications? 1.AWS Organizations 2.AWS IAM Identity Center 3.AWS Identity and Access Management (IAM) 4.Amazon Cognito

4.Amazon Cognito Amazon Cognito Amazon Cognito lets you add user sign-up, sign-in, and access control to your web and mobile apps quickly and easily. With Amazon Cognito, you also have the option to authenticate users through social identity providers such as Facebook, Twitter, or Amazon, with SAML identity solutions, or by using your own identity system.

What is the difference between WAF and a network ACL? 1.WAF is configured at the instance level while an ACL is configured at the subnet level 2.ACL's can detect and block cross site scripting attacks while WAF can not 3.An ACL is a firewall capable of detecting and stopping common web exploits while WAF can not 4.WAF is a firewall capable of detecting and stopping common web exploits while an ACL can not

4.WAF is a firewall capable of detecting and stopping common web exploits while an ACL can not

A manufacturing company is looking at a service that can offer AWS infrastructure, AWS services, APIs, and tools to its on-premises data center for running low latency applications. Which of the following service/tool is the best fit for the given requirement? AWS Local Zones AWS Outposts AWS Wavelength AWS Snow Family

AWS Outposts

Run infrastructure in a hybrid cloud approach - This action can be performed with _____________________.

AWS Outposts

Which service is best suited for a company that uses block storage to and works with data that needs retention? 1. Amazon EBS 2. Amazon S3 3. Amazon EFS 4. Instance Store

1. Amazon EBS

Which of the following is a benefit of using AWS in regards to pricing? 1. There is no charge for using AWS services, you only pay a standard monthly fee to use all services. 2. There is no default monthly charge, you pay for what you use. 3. There is a fee for creating an account, but it comes with 24/7 support from the AWS support team. 4. You can pay up front for any service used and qualify for large cost savings.

-There is no default monthly charge, you pay for what you use.

Which Perspective of the AWS Cloud Adoption Framework focuses on recovering IT workloads to meet the requirements of your business stakeholders? 1. Operations Perspective 2. People Perspective 3. Business Perspective 4. Governance Perspective

1. Operations Perspective

Which tasks can you complete in AWS Artifact? (Select TWO.) 1. Access AWS compliance reports on-demand. 2. Consolidate and manage multiple AWS accounts within a central location. 3. Create users to enable people and applications to interact with AWS services and resources. 4. Set permissions for accounts by configuring service control policies (SCPs). 5. Review, accept, and manage agreements with AWS.

1. Access AWS compliance reports on-demand., 5. Review, accept, and manage agreements with AWS.

What is the minimum file size that you can upload into S3? 1. 0 Bytes 2. 1 Megabyte 3. 1 Kilobyte 4. 1 Byte

1. 0 Bytes

How long can you reserve an EC2 Reserved Instance? 1. 1 or 3 years 2. 2 or 4 years 3. 6 months or 1 year 4. Anytime between 1 and 3 years.

1. 1 or 3 years

You can retrieve objects stored in the S3 Glacier Deep Archive storage class within ____ hours. 1. 12 2. 3 3. 6 4. 2

1. 12

How many migration strategies are there? 1. 7 2. 4 3. 3 4. 5

1. 7

Which statement best describes Amazon GuardDuty? 1. A service that provides intelligent threat detection for your AWS infrastructure and resources 2. A service that helps protect your applications against distributed denial-of-service (DDoS) attacks 3. A service that lets you monitor network requests that come into your web applications 4. A service that checks applications for security vulnerabilities and deviations from security best practices

1. A service that provides intelligent threat detection for your AWS infrastructure and resources

Which AWS service will help you receive alerts when the reservation utilization falls below the defined threshold? 1. AWS Budgets 2. AWS CloudTrail 3. AWS Simple Monthly Calculator 4. AWS Trusted Advisor

1. AWS Budgets

Which of the following AWS services can be used to generate, use, and manage encryption keys on the AWS Cloud? 1.AWS CloudHSM 2.AWS GuardDuty 3.Amazon Inspector 4.AWS Secrets Manager

1. AWS CloudHSM The AWS CloudHSM service helps you meet corporate, contractual, and regulatory compliance requirements for data security by using a dedicated Hardware Security Module (HSM) instances within the AWS cloud. CloudHSM allows you to securely generate, store, and manage cryptographic keys used for data encryption in a way that keys are accessible only by you.

Which service enables you to build the workflows that are required for human review of machine learning predictions? 1. Amazon Augmented AI 2. Amazon Aurora 3. Amazon Lex 4. Amazon Textract

1. Amazon Augmented AI

Due to regulatory and compliance reasons, an organization is supposed to use a hardware device for any data encryption operations in the cloud. Which AWS service can be used to meet this compliance requirement? 1. AWS CloudHSM 2. AWS Secrets Manager 3. AWS Key Management Service (KMS) 4. AWS Trusted Advisor

1. AWS CloudHSM AWS CloudHSM is a cloud-based Hardware Security Module (HSM) that enables you to easily generate and use your encryption keys on the AWS Cloud. With CloudHSM, you can manage your encryption keys using FIPS 140-2 Level 3 validated HSMs. It is a fully-managed service that automates time-consuming administrative tasks for you, such as hardware provisioning, software patching, high-availability, and backups. AWS Key Management Service (KMS) - AWS Key Management Service (KMS) makes it easy for you to create and manage cryptographic keys and control their use across a wide range of AWS services and in your applications. AWS KMS is a secure and resilient service that uses hardware security modules that have been validated under FIPS 140-2, or are in the process of being validated, to protect your keys. KMS cannot be used as a Hardware Security Module for data encryption operations in AWS Cloud. AWS Secrets Manager - AWS Secrets Manager helps you protect secrets needed to access your applications, services, and IT resources. The service enables you to easily rotate, manage, and retrieve database credentials, API keys, and other secrets throughout their lifecycle. Users and applications retrieve secrets with a call to Secrets Manager APIs, eliminating the need to hardcode sensitive information in plain text. Secrets Manager cannot be used as a Hardware Security Module for data encryption operations in AWS Cloud. AWS Trusted Advisor - AWS Trusted Advisor is an online tool that provides you real-time guidance to help you provision your resources following AWS best practices on cost optimization, security, fault tolerance, service limits, and performance improvement. Whether establishing new workflows, developing applications, or as part of ongoing improvement, recommendations provided by Trusted Advisor regularly help keep your solutions provisioned optimally.

Which AWS services can be used to facilitate organizational change management, part of the Reliability pillar of AWS Well-Architected Framework (Select 2)? 1. AWS CloudTrail 2. AWS Trusted Advisor 3. Amazon Inspector 4. Amazon CloudWatch 5. AWS Config

1. AWS CloudTrail 5. AWS Config

Which AWS services can be used to facilitate organizational change management, part of the Reliability pillar of AWS Well-Architected Framework? (Select three) 1. AWS Config 2. AWS CloudTrail 3. Amazon Inspector 4. Amazon GuardDuty 5. AWS Trusted Advisor 6. Amazon CloudWatch

1. AWS Config 2. AWS CloudTrail 6. Amazon CloudWatch

Which of the following AWS services can be used to connect a company's on-premises environment to a VPC without using the public internet? 1. AWS Direct Connect 2. Site-to-Site VPN 3. Amazon VPC Endpoint 4. Internet Gateway

1. AWS Direct Connect

Which service is used to quickly deploy and scale applications on AWS? 1. AWS Elastic Beanstalk 2. AWS Outposts 3. Amazon CloudFront 4. AWS Snowball

1. AWS Elastic Beanstalk

Which of the following AWS services should be used to automatically distribute incoming traffic across multiple targets? 1. AWS Elastic Load Balancing 2. Amazon Elasticsearch 3. AWS Auto Scaling 4. AWS Elastic Beanstalk

1. AWS Elastic Load Balancing

Which service gives a personalized view of the status of the AWS services that are part of your Cloud architecture so that you can quickly assess the impact on your business when AWS service(s) are experiencing issues? 1. AWS Health - Your Account Health Dashboard 2. Amazon CloudWatch 3. AWS Inspector 4. AWS Health - Service Health Dashboard

1. AWS Health - Your Account Health Dashboard

Which of the following AWS services are global in scope? (Select two) 1. AWS Identity and Access Management (IAM) 2. Amazon Relational Database Service (Amazon RDS) 3. Amazon Elastic Compute Cloud (Amazon EC2) 4. Amazon S3 5. Amazon CloudFront

1. AWS Identity and Access Management (IAM) 5. Amazon CloudFront Most of the services that AWS offers are Region specific. But few services, by definition, need to be in a global scope because of the underlying service they offer. AWS IAM, Amazon CloudFront, Route 53 and WAF are some of the global services.

Which of the following is a global service in AWS? 1. AWS Lambda 2. AWS Identity and Access Management 3. Amazon EC2

1. AWS Lambda

A gaming company is looking at a technology/service that can deliver a consistent low-latency gameplay to ensure a great user experience for end-users in various locations. Which AWS technology/service will provide the necessary low-latency access to the end-users? 1. AWS Local Zones 2. AWS Edge Locations 3. AWS Wavelength 4. AWS Direct Connect

1. AWS Local Zones AWS Local Zones allow you to use select AWS services, like compute and storage services, closer to more end-users, providing them very low latency access to the applications running locally. AWS Local Zones are also connected to the parent region via Amazon's redundant and very high bandwidth private network, giving applications running in AWS Local Zones fast, secure, and seamless access to the rest of AWS services.

Which service or resource is used to find third-party software that runs on AWS? 1. AWS Marketplace 2. AWS Free Tier 3. AWS Support 4. Billing dashboard in the AWS Management Console

1. AWS Marketplace

Which service enables you to consolidate and manage multiple AWS accounts from a central location? 1. AWS Organizations 2. AWS Key Management Service (AWS KMS) 3. AWS Artifact 4. AWS Identity and Access Management (IAM)

1. AWS Organizations

__________ lets you explore AWS services and create an estimate for the cost of your use cases. 1. AWS Pricing Calculator 2. AWS Cost Explorer 3. AWS Budgets 4. Billing Dashboard

1. AWS Pricing Calculator

Which service can be used to migrate exabytes of data into the AWS Cloud? 1. AWS Snowmobile 2. AWS Snowball

1. AWS Snowmobile

Which of the following AWS services are part of the AWS Foundation services for the Reliability pillar of the Well-Architected Framework in AWS Cloud? (Select two) 1. AWS Trusted Advisor 2. AWS CloudTrail 3. AWS CloudFormation 4. AWS Service Quotas Amazon CloudWatch

1. AWS Trusted Advisor 4. AWS Service Quotas Foundations are part of the Reliability pillar of the AWS Well-Architected Framework. AWS states that before architecting any system, foundational requirements that influence reliability should be in place. The services that are part of foundations are: Amazon VPC, AWS Trusted Advisor, AWS Service Quotas (formerly called AWS Service Limits).

Which of the following AWS services can be used to prevent Distributed Denial-of-Service (DDoS) attack? (Select three) 1. AWS WAF 2. Amazon CloudFront with Route 53 3. AWS Shield 4. AWS CloudHSM 5. Amazon Inspector 6. AWS Trusted Advisor

1. AWS WAF 2. Amazon CloudFront with Route 53 3. AWS Shield

A company is using a message broker service on its on-premises application and wants to move this messaging functionality to AWS Cloud. Which of the following AWS services is the right choice to move the existing functionality easily? 1. Amazon MQ 2. Amazon Kinesis Data Stream 3. Amazon Simple Notification Service (SNS) 4. Amazon Simple Queue Service (SQS)

1. Amazon MQ Amazon MQ - Amazon MQ is a managed message broker service for Apache ActiveMQ and RabbitMQ that makes it easy to set up and operate message brokers on AWS. Amazon MQ reduces your operational responsibilities by managing the provisioning, setup, and maintenance of message brokers for you. Because Amazon MQ connects to your current applications with industry-standard APIs and protocols, you can easily migrate to AWS without having to rewrite code. Amazon Kinesis data stream - Amazon Kinesis Data Streams enables you to build custom applications that process or analyze streaming data for specialized needs. You can continuously add various types of data such as clickstreams, application logs, and social media to an Amazon Kinesis data stream from hundreds of thousands of sources. Within seconds, the data will be available for your Amazon Kinesis Applications to read and process from the stream.

A silicon valley based healthcare startup stores anonymized patient health data on Amazon S3. The CTO further wants to ensure that any sensitive data on S3 is discovered and identified to prevent any sensitive data leaks. As a Cloud Practitioner, which AWS service would you recommend addressing this use-case? 1. Amazon Macie 2. Amazon Polly 3. AWS Glue 4. AWS Secrets Manager

1. Amazon Macie

Which service is used to query and analyze data across a data warehouse? 1. Amazon Redshift 2. Amazon Neptune 3. Amazon DocumentDB 4. Amazon ElastiCache

1. Amazon Redshift

You want to send and receive messages between distributed application components. Which service should you use? 1. Amazon Simple Queue Service (Amazon SQS) 2. Amazon Route 53 3. AWS Snowball 4. Amazon ElastiCache

1. Amazon Simple Queue Service (Amazon SQS)

A startup is looking for 24x7 phone based technical support for his AWS account. Which of the following is the MOST cost-effective AWS support plan for this use-case? 1. Business 2. Enterprise 3. Developer 4. Basic

1. Business AWS recommends Business Support if you have production workloads on AWS and want 24x7 phone, email and chat access to technical support and architectural guidance in the context of your specific use-cases. Enterprise Support plan also provides 24x7 phone, email and chat access to technical support however it's much costlier than Business Support plan. Developer plan does not provide 24x7 phone based technical support. Therefore Business Support plan is the correct option for the given use-case.

Which of the following AWS Support plans provide access to guidance, configuration, and troubleshooting of AWS interoperability with third-party software? (Select two) 1. Business 2. Developer 3. Enterprise 4. Corporate 5. Basic

1. Business 3. Enterprise

How does AWS Route53 check the health of resources? 1. By sending requests over regular intervals to verify that it's reachable, available, and functional 2. By checking the status of the resource within the AWS console 3. By using CloudWatch to determine if the resources are still active 4. By comparing the current instance image of the resource to an original instance image

1. By sending requests over regular intervals to verify that it's reachable, available, and functional

Which of the following AWS services has encryption enabled by default? Select 2. 1. CloudTrail Logs 2. Elastic File Storage (EFS) 3. Amazon S3 4. Elastic Block Storage (EBS)

1. CloudTrail Logs, 3. Amazon S3

A company would like to deploy a high-performance computing (HPC) application on EC2. Which EC2 instance type should it choose? 1. Compute Optimized 2. Storage Optimized 3. Memory Optimized 4. General Purpose

1. Compute Optimized

What are the fundamental drivers of cost with AWS Cloud? 1. Compute, Storage and Outbound Data Transfer 2. Compute, Databases and Outbound Data Transfer 3. Compute, Storage and Inbound Data Transfer 4. Compute, Databases and Inbound Data Transfer

1. Compute, Storage and Outbound Data Transfer

Which support plan does not provide programmatic case management using AWS support API? 1. Developer 2. Business 3. Enterprise On-Ramp 4. Enterprise

1. Developer

What are the 4 levels of AWS Premium Support? 1.Developer, Business, Enterprise on-ramp, Enterprise 2.All support is free 3.Basic, Developer, Business, Enterprise 4.Free, Bronze, Silver, Gold

1. Developer, Business, Enterprise on-ramp, Enterprise

A company would like to create a private, high bandwidth network connection between its on-premises data centers and AWS Cloud. As a Cloud Practitioner, which of the following options would you recommend? 1. Direct Connect 2. VPC Endpoints 3. Site-to-Site VPN 4. VPC Peering

1. Direct Connect

Which of the following AWS services support reservations to optimize costs? (Select three) 1. DynamoDB 2. S3 3. DocumentDB 4. RDS 5. EC2 Instances 6. Lambda

1. DynamoDB 4. RDS 5. EC2 Instances

A data analytics company is running a proprietary batch analytics application on AWS and wants to use a storage service which would be accessed by hundreds of EC2 instances simultaneously to append data to existing files. As a Cloud Practitioner, which AWS service would you suggest for this use-case? 1. EFS 2. Instance Store 3. S3 4. EBS

1. EFS

As per the AWS shared responsibility model, which of the following is a responsibility of AWS from a security and compliance point of view? 1. Edge Location Management 2. Identity and Access Management 3. Customer Data 4. Server-side Encryption

1. Edge Location Management Security and Compliance is a shared responsibility between AWS and the customer. This shared model can help relieve the customer's operational burden as AWS operates, manages, and controls the components from the host operating system and virtualization layer down to the physical security of the facilities in which the service operates. AWS is responsible for security "of" the cloud. This covers their global infrastructure elements including Regions, Availability Zones, and Edge Locations.

Which actions can you perform using Amazon CloudWatch? (Select TWO.) 1. Monitor your resources' utilization and performance 2. Receive real-time guidance for improving your AWS environment 3. Compare your infrastructure to AWS best practices in five categories 4. Access metrics from a single dashboard 5. Automatically detect unusual account activity

1. Monitor your resources' utilization and performance, 4. Access metrics from a single dashboard

Where was the first Region located? 1. North Virginia 2. Texas 3. California 4. New York

1. North Virginia

Which pillar of the AWS Well Architected Framework focuses on running and monitoring systems to deliver business value, and with that, continually improving processes and procedures? 1. Operational Excellence 2. Performance Efficiency 3. Conservation 4. Cost Optimization

1. Operational Excellence

Which of the following are characteristics of consolidated billing? (Select all that apply) 1. It is offered at no additional cost 2. It is a premium service you must pay for 3. You get one bill for multiple accounts 4. Combine resource usage to maximize bulk pricing discounts

1. It is offered at no additional cost, 3. You get one bill for multiple accounts, 4. Combine resource usage to maximize bulk pricing discounts

Under the Shared Responsibility Model, who is responsible for operating-system patches and updates on EC2 Instances? 1. The customer 2. AWS 3. Both AWS and the customer

1. The customer

All AWS customers automatically have 24x7 access to these features: One-on-one responses to account and billing questions Support forums Service health checks Documentation, technical papers, and best practice guides 1. True 2. False

1. True

S3 Standard is the most expensive S3 storage class. 1. True 2. False

1. True

A research lab needs to be notified in case of a configuration change for security and compliance reasons. Which AWS service can assist with this task? 1.AWS Config 2.Amazon Inspector 3.AWS Secrets Manager 4.AWS Trusted Advisor

1.AWS Config AWS Config is a service that enables you to assess, audit, and evaluate the configurations of your AWS resources. Config continuously monitors and records your AWS resource configurations and allows you to automate the evaluation of recorded configurations against desired configurations. With Config, you can review changes in configurations and relationships between AWS resources, dive into detailed resource configuration histories, and determine your overall compliance against the configurations specified in your internal guidelines. This enables you to simplify compliance auditing, security analysis, change management, and operational troubleshooting.

Which of the following can NOT be used to get data onto Amazon Glacier? 1.AWS Console 2.AWS Glacier SDK 3.AWS Glacier API 4.AWS S3 Lifecycle policies

1.AWS Console

Which AWS serverless service allows you to prepare data for analytics? 1.AWS Glue 2.Amazon Redshift 3.Amazon EMR 4.Amazon Athena

1.AWS Glue AWS Glue - AWS Glue is a fully managed extract, transform, and load (ETL) service that makes it easy for customers to prepare and load their data for analytics. AWS Glue job is meant to be used for batch ETL data processing.

Which AWS service can be used to subscribe to an RSS feed to be notified of the status of all AWS service interruptions? 1.AWS Health - Service Health Dashboard 2.AWS Lambda 3.AWS Health - Your Account Health Dashboard 4.Amazon SNS

1.AWS Health - Service Health Dashboard

A start-up would like to quickly deploy a popular technology on AWS. As a Cloud Practitioner, which AWS tool would you use for this task? 1.AWS Quick Starts references 2.AWS CodeDeploy 3.AWS Whitepapers 4.AWS Forums

1.AWS Quick Starts references AWS Quick Starts references Quick Starts are built by AWS solutions architects and partners to help you deploy popular technologies on AWS, based on AWS best practices for security and high availability. These accelerators reduce hundreds of manual procedures into just a few steps, so you can build your production environment quickly and start using it immediately. Each Quick Start includes AWS CloudFormation templates that automate the deployment and a guide that discusses the architecture and provides step-by-step deployment instructions.

Which of the following statements are true about AWS Shared Responsibility Model? (Select two) 1.AWS is responsible for patching and fixing flaws within the infrastructure, but customers are responsible for patching their guest OS and applications 2.For abstracted services, such as Amazon S3, AWS operates the infrastructure layer, the operating system, platforms, encryption options, and appropriate permissions for accessing the S3 resources 3.AWS trains AWS employees, but a customer must train their own employees 4.Amazon Elastic Compute Cloud (Amazon EC2) is categorized as Infrastructure as a Service (IaaS) and hence AWS will perform all of the necessary security configuration and management tasks 5.AWS maintains the configuration of its infrastructure devices and is responsible for configuring the guest operating systems, databases, and applications

1.AWS is responsible for patching and fixing flaws within the infrastructure, but customers are responsible for patching their guest OS and applications 3.AWS trains AWS employees, but a customer must train their own employees

A company is looking for ways to make its desktop applications available to the employees from browsers on their devices/laptops. Which AWS service will help achieve this requirement without having to procure servers or maintain infrastructure? 1.Amazon AppStream 2.0 2.Amazon WorkSpaces 3.Amazon Snowball 4.Amazon Outposts

1.Amazon AppStream 2.0

The development team at a company manages 300 microservices and it is now trying to automate the code reviews to improve the code quality. Which tool/service is the right fit for this requirement? 1.Amazon CodeGuru 2.AWS CodeBuild 3.AWS Trusted Advisor 4.AWS X-Ray

1.Amazon CodeGuru

A company is deploying a new two-tier web application in AWS. The company wants to store their most frequently used data so that the response time for the application is improved. Which AWS service provides the solution for the company's requirements? 1.Amazon ElastiCache 2.MySQL Installed on two Amazon EC2 Instances in a single Availability Zone 3.Amazon RDS for MySQL with Multi-AZ 4.Amazon DynamoDB

1.Amazon ElastiCache

Which of the following is a hybrid storage service that allows on-premises applications to access data on AWS Cloud? 1. Amazon EBS 2. AWS Direct Connect 3. AWS Storage Gateway 4. AWS Snowball

3. AWS Storage Gateway

Which of the following statements is CORRECT regarding the scope of an Amazon Virtual Private Cloud (VPC)? 1. A VPC spans all regions within an Availability Zone (AZ) 2. A VPC spans all Availability Zones (AZs) within a region 3. A VPC spans all subnets in all regions 4. A VPC spans all Availability Zones (AZs) in all regions

2. A VPC spans all Availability Zones (AZs) within a region Amazon Virtual Private Cloud (Amazon VPC) lets you provision a logically isolated section of the AWS Cloud where you can launch AWS resources in a virtual network that you define. You have complete control over your virtual networking environment, including selection of your own IP address range, creation of subnets, and configuration of route tables and network gateways. A VPC spans all Availability Zones (AZs) within a region

Which statement best describes AWS Marketplace? 1. An online tool that inspects your AWS environment and provides real-time guidance in accordance with AWS best practices 2. A digital catalog that includes thousands of software listings from independent software vendors 3. A resource that provides guidance, architectural reviews, and ongoing communication with your company as you plan, deploy, and optimize your applications 4. A resource that can answer questions about best practices and assist with troubleshooting issues

2. A digital catalog that includes thousands of software listings from independent software vendors

Which statement best describes an IAM policy? 1. An authentication process that provides an extra layer of protection for your AWS account 2. A document that grants or denies permissions to AWS services and resources 3. An identity that you can assume to gain temporary access to permissions 4. The identity that is established when you first create an AWS account

2. A document that grants or denies permissions to AWS services and resources

Which statement best describes Amazon DynamoDB? 1. A service that enables you to run relational databases in the AWS Cloud 2. A serverless key-value database service 3. A service that you can use to migrate relational databases, nonrelational databases, and other types of data stores 4. An enterprise-class relational database

2. A serverless key-value database service

Which pricing tool enables you to receive alerts when your service usage exceeds a threshold that you have defined? 1. Billing dashboard in the AWS Management Console 2. AWS Budgets 3. AWS Free Tier 4. AWS Cost Explorer

2. AWS Budgets

Which AWS tool/service will help you define your cloud infrastructure using popular programming languages such as Python and JavaScript? 1. AWS CloudFormation 2. AWS Cloud Development Kit (CDK) 3. AWS CodeBuild 4. AWS Elastic Beanstalk

2. AWS Cloud Development Kit (CDK)

Which tool is used to automate actions for AWS services and applications through scripts? 1. Amazon QLDB 2. AWS Command Line Interface 3. Amazon Redshift 4. AWS Snowball

2. AWS Command Line Interface

Which of the following is a service that allows you to assess, audit, and evaluate the configuration of individual resources 1. AWS Artifact 2. AWS Config 3. AWS Security and Compliance 4. AWS CloudTrail

2. AWS Config

Which tool enables you to visualize, understand, and manage your AWS costs and usage over time? 1. AWS Artifact 2. AWS Cost Explorer 3. AWS Budgets 4. AWS Pricing Calculator

2. AWS Cost Explorer

Which of the following solutions can you use to connect your on-premises network with AWS Cloud (Select two). 1. Amazon VPC 2. AWS Direct Connect 3. AWS VPN 4. Amazon Route 53 5 Internet Gateway

2. AWS Direct Connect 3. AWS VPN

A developer has written a simple web application in PHP and he wants to just upload his code to AWS Cloud and have AWS handle the deployment automatically but still wants access to the underlying operating system for further enhancements. As a Cloud Practioner, which of the following AWS services would you recommend for this use-case? 1. Amazon EC2 2. AWS Elastic Beanstalk 3. AWS CloudFormation 4. AWS Elastic Container Service (ECS)

2. AWS Elastic Beanstalk AWS Elastic Beanstalk is an easy-to-use service for deploying and scaling web applications and services developed with Java, .NET, PHP, Node.js, Python, Ruby, Go, and Docker on familiar servers such as Apache, Nginx, Passenger, and IIS. Simply upload your code and Elastic Beanstalk automatically handles the deployment, from capacity provisioning, load balancing, auto-scaling to application health monitoring. At the same time, you retain full control over the AWS resources powering your application and can access the underlying resources at any time. There is no additional charge for Elastic Beanstalk - you pay only for the AWS resources needed to store and run your applications.

Which of the following options can be used to access and manage all AWS services (Select three)? 1. AWS Systems Manager 2. AWS Management Console 3. AWS Software Developer Kit (SDK) 4. Amazon API Gateway 5. AWS Command Line Interface (CLI) 6. AWS Secrets Manager

2. AWS Management Console 3. AWS Software Developer Kit (SDK) 5. AWS Command Line Interface (CLI)

Who can help your organization achieve their desired business outcomes with AWS? 1. None of the above. 2. AWS Professional Services 3. AWS Trusted Advisor. 4. AWS Concierge.

2. AWS Professional Services

An organization is planning to move its infrastructure from the on-premises datacenter to AWS Cloud. As a Cloud Practioner, which options would you recommend so that the organization can identify the right AWS services to build solutions on AWS Cloud (Select two)? 1. AWS CloudTrail 2. AWS Service Catalog 3. AWS Partner Network 4. AWS Organizations 5. Amazon CloudWatch

2. AWS Service Catalog 3. AWS Partner Network AWS Service Catalog - AWS Service Catalog allows organizations to create and manage catalogs of IT services that are approved for use on AWS. These IT services can include everything from virtual machine images, servers, software, and databases to complete multi-tier application architectures. AWS Partner Network - Organizations can take help from the AWS Partner Network (APN) to identify the right AWS services to build solutions on AWS Cloud. APN is the global partner program for technology and consulting businesses that leverage Amazon Web Services to build solutions and services for customers.

A social media company wants to protect its web application from common web exploits such as SQL injection and cross-site scripting. Which of the following AWS services can be used to address this use-case? 1. Amazon Inspector 2. AWS Web Application Firewall (WAF) 3. Amazon GuardDuty 4. AWS CloudWatch

2. AWS Web Application Firewall (WAF)

A company wants a fully managed, flexible, and scalable file storage system, with low latency access, for its Windows-based applications. Which AWS service is the right choice for the company? 1. Amazon FSx for Lustre 2. Amazon FSx for Windows File Server 3. Amazon Elastic Block Storage (Amazon EBS) 4. Amazon Elastic File System (Amazon EFS)

2. Amazon FSx for Windows File Server Amazon FSx for Windows File Server provides fully managed, highly reliable, and scalable file storage that is accessible over the industry-standard Service Message Block (SMB) protocol. It is built on Windows Server, delivering a wide range of administrative features such as user quotas, end-user file restore, and Microsoft Active Directory (AD) integration. Incorrect: Amazon FSx for Lustre - For compute-intensive and fast processing workloads, like high-performance computing (HPC), machine learning, EDA, and media processing, Amazon FSx for Lustre, provides a file system that's optimized for performance, with input and output stored on Amazon S3. FSx for Lustre is only compatible with Linux.

A company runs an application on a fleet of EC2 instances. The company wants to automate the traditional maintenance job of running timely assessments and checking for OS vulnerabilities. As a Cloud Practitioner, which service will you suggest for this use case? 1. Amazon GuardDuty 2. Amazon Inspector 3. AWS Shield 4. Amazon Macie

2. Amazon Inspector

Which Amazon S3 storage classes are optimized for archival data? (Select TWO.) 1. Amazon S3 Standard 2. Amazon S3 Glacier Flexible Retrieval 3. Amazon S3 Intelligent-Tiering 4. Amazon S3 Standard-IA 5. Amazon S3 Glacier Deep Archive

2. Amazon S3 Glacier Flexible Retrieval, 5. Amazon S3 Glacier Deep Archive

You want Amazon S3 to monitor your objects' access patterns. Which storage class should you use? 1. Amazon S3 Standard-IA 2. Amazon S3 Intelligent-Tiering 3. Amazon S3 Glacier Flexible Retrieval 4. Amazon S3 One Zone-IA

2. Amazon S3 Intelligent-Tiering

In the S3 Intelligent-Tiering storage class, Amazon S3 moves objects between a frequent access tier and an infrequent access tier. Which storage classes are used for these tiers? (Select TWO.) 1. Amazon S3 Glacier Deep Archive 2. Amazon S3 Standard 3. Amazon S3 One Zone-IA 4. Amazon S3 Standard-IA 5. Amazon S3 Glacier Flexible Retrieval

2. Amazon S3 Standard 4. Amazon S3 Standard-IA

Which AWS Support plan provides architectural guidance contextual to your specific use-cases? 1. Basic 2. Business 3. Developer 4. Enterprise

2. Business

The engineering team at an IT company wants to monitor the CPU utilization for its fleet of EC2 instances and send an email to the administrator if the utilization exceeds 80%. As a Cloud Practitioner, which AWS services would you recommend to build this solution? (Select two) 1. SQS 2. CloudWatch 3. Lambda 4. SNS 5. CloudTrail

2. CloudWatch 4. SNS

Under the AWS Shared Responsibility Model, which of the following is a shared responsibility of both AWS and the customer? 1. Guarantee data separation among various AWS customers 2. Configuration Management 3. Infrastructure maintenance of Amazon S3 storage servers 4. Availability Zone infrastructure maintenance

2. Configuration Management

Which tasks are the responsibilities of AWS? (Select TWO.) 1. Training company employees on how to use AWS services 2. Configuring AWS infrastructure devices 3. Configuring security groups on Amazon EC2 instances 4. Maintaining virtualization infrastructure 5. Creating IAM users and groups

2. Configuring AWS infrastructure devices 4. Maintaining virtualization infrastructure

Which actions can you perform in Amazon Route 53? (Select TWO.) 1. Monitor your applications and respond to system-wide performance changes. 2. Connect user requests to infrastructure in AWS and outside of AWS. 3. Manage DNS records for domain names. 4. Automate the deployment of workloads into your AWS environment. 5. Access AWS security and compliance reports and select online agreements.

2. Connect user requests to infrastructure in AWS and outside of AWS. 3. Manage DNS records for domain names

A company wants to have control over creating and using its own keys for encryption on AWS services. Which of the following can be used for this use-case? 1. Secrets Manager 2. Customer Managed CMK 3. AWS Managed CMK 4. AWS Owned CMK

2. Customer Managed CMK

Which action can you perform in Amazon CloudFront? 1. Run infrastructure in a hybrid cloud approach. 2. Deliver content to customers through a global network of edge locations. 3. Provision resources by using programming languages or a text file. 4. Provision an isolated section of the AWS Cloud to launch resources in a virtual network that you define.

2. Deliver content to customers through a global network of edge locations.

Which of the following AWS services support VPC Endpoint Gateway for a private connection from a VPC? (Select two) 1. Amazon EC2 2. DynamoDB 3. Amazon SQS 4. Amazon SNS 5. S3

2. DynamoDB 5. S3 Exam Alert: You may see a question around this concept in the exam. Just remember that only S3 and DynamoDB support VPC Endpoint Gateway. All other services that support VPC Endpoints use a VPC Endpoint Interface.

Which support plan best supports a business that requires a designated Technical Account Manager? 1. Developer 2. Enterprise 3. Business 4. Enterprise On-Ramp

2. Enterprise

Your company wants to receive support from an AWS Technical Account Manager (TAM). Which support plan should you choose? 1. Developer 2. Enterprise 3. Basic 4. Business

2. Enterprise

Which of the following is an example of SaaS? 1. EC2 - AWS service for on demand servers 2. Facebook and Google Maps 3. RDS - AWS service for a database of your choice

2. Facebook and Google Maps

Detailed monitoring is available at no extra charge 1. True 2. False

2. False

EBS is ephemeral storage 1. True 2. False

2. False

Subnets span multiple Availability Zones 1. True 2. False

2. False

You can have two buckets with the same name. 1. True 2. False

2. False

You can only use AWS Database Migration Service for relational databases. 1. True 2. False

2. False

Which of the following is a petabyte-scaled infrastructure that is considered a data warehouse solution? 1. Aurora 2. S3 3. RDS 4. Redshift

4. Redshift

A company is planning to implement Chaos Engineering to expose any blind spots that can disrupt the resiliency of the application. Which AWS service will help implement this requirement with the least effort? 1.AWS Trusted Advisor 2.AWS Fault Injection Simulator 3.AWS GuardDuty 4.Amazon Inspector

2.AWS Fault Injection Simulator AWS Fault Injection Simulator AWS Fault Injection Simulator is a fully managed service for running fault injection experiments on AWS that makes it easier to improve an application's performance, observability, and resiliency. Fault injection experiments are used in chaos engineering, which is the practice of stressing an application in testing or production environments by creating disruptive events, such as a sudden increase in CPU or memory consumption, observing how the system responds, and implementing improvements. Fault injection experiment helps teams create the real-world conditions needed to uncover the hidden bugs, monitoring blind spots, and performance bottlenecks that are difficult to find in distributed systems. Fault Injection Simulator simplifies the process of setting up and running controlled fault injection experiments across a range of AWS services so teams can build confidence in their application behavior. With Fault Injection Simulator, teams can quickly set up experiments using pre-built templates that generate the desired disruptions. Fault Injection Simulator provides the controls and guardrails that teams need to run experiments in production, such as automatically rolling back or stopping the experiment if specific conditions are met. With a few clicks in the console, teams can run complex scenarios with common distributed system failures happening in parallel or building sequentially over time, enabling them to create the real-world conditions necessary to find hidden weaknesses.

Which of the following are 2 ways that AWS allows to link accounts? 1.Cost Explorer 2.AWS Organizations 3.Consolidating billing 4.IAM

2.AWS Organizations 3.Consolidating billing

A financial consulting company is looking for automated reference deployments, that will speed up the process of deploying its financial solutions on AWS Cloud. The reference deployment should be able to deploy most of the well-known functions of financial services and leave space for customizations, if necessary. Which AWS service will help achieve this requirement? 1.Amazon Quicksight 2.AWS Quick Starts 3.AWS CloudFormation 4.AWS Elastic Beanstalk

2.AWS Quick Starts AWS Quick Starts - AWS Quick Starts are automated reference deployments for key workloads on the AWS Cloud. Each Quick Start launches, configures and runs the AWS compute, network, storage, and other services required to deploy a specific workload on AWS, using AWS best practices for security and availability. Quick Starts are accelerators that condense hundreds of manual procedures into just a few steps. They are fast, low-cost, and customizable. They are fully functional and designed for production. Quick Starts include: 1. A reference architecture for the deployment 2. AWS CloudFormation templates (JSON or YAML scripts) that automate and configure the deployment 3. A deployment guide, which explains the architecture and implementation in detail, and provides instructions for customizing the deployment. Quick Starts also include integrations that extend the cloud-based contact center functionality provided by Amazon Connect with key services and solutions from APN Partners—for customer relationship management (CRM), workforce optimization (WFO), analytics, unified communications (UC), and other use cases.

Which feature/functionality will help you organize your AWS resources, manage and automate tasks on large numbers of resources at a time? 1.Tags 2.AWS Resource Groups 3.Amazon WorkSpaces 4.AWS Organizations

2.AWS Resource Groups

Your company is planning to host a large ecommerce application on the AWS Cloud. One of their major concerns is Internet attacks such as DDos attacks. Which of the following services can help mitigate this concern? Choose 2 answers from the options given below. 1.AWS EC2 2.AWS Shield 3.Cloudfront 4.Do an audit after the deployment of the application for PCI Compliance

2.AWS Shield 3.Cloudfront

A gaming company needs compute and storage services close to edge locations in order to ensure ultra-low latency for end-users and devices that connect through mobile networks. Which AWS service is the best fit for this requirement? 1.AWS Snowmobile 2.AWS Wavelength 3.AWS Outposts 4.AWS Snowball Edge

2.AWS Wavelength

AWS Web Application Firewall (AWS WAF) can be deployed on which of the following services? 1.AWS AppSync, Amazon CloudFront, Application Load Balancer, Amazon Elastic Compute Cloud (Amazon EC2) 2.Amazon CloudFront, Application Load Balancer, Amazon API Gateway, AWS AppSync 3.Amazon CloudFront, Amazon Elastic Compute Cloud (Amazon EC2), Amazon API Gateway, Application Load Balancer 4.Application Load Balancer, Amazon Elastic Compute Cloud (Amazon EC2), Amazon API Gateway

2.Amazon CloudFront, Application Load Balancer, Amazon API Gateway, AWS AppSync

An e-commerce company has its on-premises data storage on an NFS file system that is accessed in parallel by multiple applications. The company is looking at moving the applications and data stores to AWS Cloud. Which storage service should the company use to move their files to AWS Cloud seamlessly if the application is hosted on Amazon EC2 instances? 1.Amazon Elastic Block Store (EBS) 2.Amazon Elastic File System (Amazon EFS) 3.AWS Storage Gateway 4.Amazon Simple Storage Service (Amazon S3)

2.Amazon Elastic File System (Amazon EFS)

There is a requirement to move 10 TB data warehouse to the AWS cloud. Which of the following is an ideal service which can be used to move this amount of data to the AWS Cloud? 1.Amazon S3 MultiPart Upload 2.Amazon Snowball 3.Amazon S3 Connector 4.Amazon Direct Connect

2.Amazon Snowball

Which of the following statements are correct regarding the health monitoring and reporting capabilities supported by AWS Elastic Beanstalk? (Select two) 1.AWS Elastic Beanstalk provides only basic health reporting system; Combined with Elastic Load Balancer, they provide advanced health check features 2.The Elastic Beanstalk health monitoring can determine that the environment's Auto Scaling group is available and has a minimum of at least one instance 3.With basic health reporting, the Elastic Beanstalk service does not publish any metrics to Amazon CloudWatch 4.The basic health reporting system that provides information about the health of instances in an Elastic Beanstalk environment does not use health checks performed by Elastic Load Balancing 5.In a single instance environment, Elastic Beanstalk determines the instance's health by monitoring the Elastic Load Balancing health settings

2.The Elastic Beanstalk health monitoring can determine that the environment's Auto Scaling group is available and has a minimum of at least one instance 3.With basic health reporting, the Elastic Beanstalk service does not publish any metrics to Amazon CloudWatch

An online retail clothing store is looking for a service/tool to easily create and embed 3D scenes into their existing web pages to enhance user experience and improve sales. Which AWS service will help create these 3D visuals? 1.Amazon Comprehend 2.Amazon Sumerian 3.Amazon Polly 4.Amazon SageMaker

2.Amazon Sumerian Amazon Sumerian - Amazon Sumerian is a managed service that lets you create and run 3D, Augmented Reality (AR) and Virtual Reality (VR) applications. You can build immersive and interactive scenes that run on AR and VR, mobile devices, and your web browser. Whether you are non-technical, a web or mobile developer, or have years of 3D development experience, getting started with Sumerian is easy. You can design scenes directly from your browser and, because Sumerian is a web-based application, you can quickly add connections in your scenes to existing AWS services. Amazon Sumerian leverages the power of AWS to create smarter and more engaging front-end experiences. Easily embed conversational interfaces into scenes using Amazon Lex and embed scenes in a web application using AWS Amplify. Amazon Sumerian embraces the latest WebGL and WebXR standards to create immersive experiences directly in a web browser, accessible via a simple URL in seconds, and able to run on major hardware platforms for AR/VR. Build your scene once and deploy it anywhere. Incorrect options: Amazon SageMaker - Amazon SageMaker is a fully managed service that provides every developer and data scientist with the ability to build, train, and deploy machine learning (ML) models quickly. SageMaker removes the heavy lifting from each step of the machine learning process to make it easier to develop high-quality models. Amazon SageMaker ensures that ML model artifacts and other system artifacts are encrypted in transit and at rest. Amazon Comprehend - Amazon Comprehend is a natural language processing (NLP) service that uses machine learning to find meaning and insights in text. You can use Amazon Comprehend to identify the language of the text, extract key phrases, places, people, brands, or events, understand sentiment about products or services, and identify the main topics from a library of documents. The source of this text could be web pages, social media feeds, emails, or articles. Amazon Polly - Amazon Polly is a service that turns text into lifelike speech, allowing you to create applications that talk, and build entirely new categories of speech-enabled products. Polly's Text-to-Speech (TTS) service uses advanced deep learning technologies to synthesize natural sounding human speech. With dozens of lifelike voices across a broad set of languages, you can build speech-enabled applications that work in many different countries.

AWS Support plans are designed to give the right mix of tools and access to expertise for successfully running a business using AWS. Which support plan(s) offer the full set of checks for AWS Trusted Advisor best practices and also provide support for programmatic case management? 1.Only Enterprise support plans 2.Business and Enterprise support plans 3.Business support plans after paying an additional fee and Enterprise support plans 4.Developer, Business and Enterprise support plans

2.Business and Enterprise support plans

What is the value of having AWS Cloud services accessible through an Application Programming Interface (API)? 1.AWS infrastructure use will always be cost-optimized 2.Cloud resources can be managed programmatically 3.Customer -owned, on -premises infrastructure becomes programmable. 4.All application testing is managed by AWS.

2.Cloud resources can be managed programmatically

Due to regulatory guidelines, a company needs to encrypt data as it passes through the different layers of its AWS architecture. The company is reviewing the capabilities of the various AWS services and their encryption options. Which of the below services are encrypted by default and need no user intervention to enable encryption? 1.AWS Storage Gateway, Application Load Balancer (ALB), Amazon CloudFront 2.CloudTrail Logs, S3 Glacier, AWS Storage Gateway 3.AWS Organizations, Amazon EC2, CloudTrail Logs 4.CloudWatch logs, Application Load Balancer (ALB), S3 Glacier

2.CloudTrail Logs, S3 Glacier, AWS Storage Gateway

Which of the following statements are true about AWS Regions and Availability Zones (AZs)? (Select two) 1.An Availability Zone is a physical location where AWS clusters the data centers 2.Each AWS Region consists of multiple, isolated, and physically separate AZ's within a geographic area 3.AWS calls each group of logical data centers as AWS Regions 4.All traffic between AZ's is encrypted 5.Traffic between AZ's is not encrypted by default, but can be configured from AWS console

2.Each AWS Region consists of multiple, isolated, and physically separate AZ's within a geographic area

Once enabled, versioning can be disabled. 1.True 2.False

2.False

Which of the following billing timeframes is applied when running a Windows EC2 on-demand instance? 1.Pay per hour 2.Pay per second 3.Pay per day 4.Pay per minute

2.Pay per second Pay per second With On-Demand instances you only pay for EC2 instances you use. The use of On-Demand instances frees you from the costs and complexities of planning, purchasing, and maintaining hardware and transforms what are commonly large fixed costs into much smaller variable costs. When running a Windows EC2 on-demand instance, pay per second pricing is applied. Incorrect options: Pay per hour - When running a Windows EC2 on-demand instance, pay per second pricing is applied. Windows based EC2 instances used to follow pay-per-hour pricing earlier. Pay per minute - Pay per minute pricing is not available for Windows EC2 on-demand instances, or any other type of on-demand EC2 instance. Pay per day - Pay per day pricing is not available for Windows EC2 on-demand instances, or any other type of on-demand EC2 instance.

Which pillar of AWS Well-Architected Framework focuses on using IT and computing resources efficiently, while considering the right resource types and sizes based on workload requirements? 1.Cost Optimization Pillar 2.Performance Efficiency Pillar 3.Reliability Pillar 4.Operational Excellence Pillar

2.Performance Efficiency Pillar

A company using a hybrid cloud would like to store secondary backup copies of the on-premises data. Which S3 Storage Class would you use for a cost-optimal yet rapid access solution? 1.S3 Standard - Infrequent Access 2.S3 One Zone - Infrequent Access 3.S3 Standard - General Purposes 4.S3 Glacier

2.S3 One Zone - Infrequent Access

If AWS WAF is a powerful firewall service, what is the purpose of also paying for AWS Shield Advanced? 1.Shield Advanced must be used in conjunction with AWS WAF 2.Shield advanced is capable of mitigating more advanced DDoS attacks and also mitigates any increased costs that may have been incurred due to an attack 3.Shield advanced is capable of mitigating more advanced DDoS attacks by using the functionality of WAF. You can not use Shield Advanced without WAF enabled 4.There is no reason to

2.Shield advanced is capable of mitigating more advanced DDoS attacks and also mitigates any increased costs that may have been incurred due to an attack

Which of the following is not a disaster recovery deployment technique? 1.Pilot light 2.Single Site 3.Multi-Site 4.Warm standby

2.Single Site

Which of the following options is NOT a feature of Amazon Inspector? 1.Automate security assessments 2.Track configuration changes 3.Analyze against unintended network accessibility 4.Inspect running operating systems (OS) against known vulnerabilities

2.Track configuration changes

Which compute option reduces costs when you commit to a consistent amount of compute usage for a 1-year or 3-year term? 1. Reserved Instances 2. Dedicated Hosts 3. Spot Instances 4. Savings Plans

4. Savings Plans

A team lead is reviewing the AWS services that can be used in the development workflow for his company. Which of the following statements are correct regarding the capabilities of these AWS services? (Select three) 1.AWS CodeStar is a cloud-based integrated development environment that lets you write, run, and debug your code with just a browser 2.You can use AWS CodeStar and AWS Cloud9 to develop, build, and deploy a serverless web application 3.CodeBuild is directly integrated with both CodePipeline and CodeCommit 4.CodePipeline uses Amazon CloudWatch Events to detect changes in CodeCommit repositories used as a source for a pipeline 5.Each CodeStar project includes development tools, including AWS CodePipeline, AWS CodeCommit, AWS CodeBuild, and AWS CodeDeploy, that can be used on their own and with existing AWS applications 6.CodeCommit allows you to run builds and tests as part of your CodePipeline

2.You can use AWS CodeStar and AWS Cloud9 to develop, build, and deploy a serverless web application 4.CodePipeline uses Amazon CloudWatch Events to detect changes in CodeCommit repositories used as a source for a pipeline 5.Each CodeStar project includes development tools, including AWS CodePipeline, AWS CodeCommit, AWS CodeBuild, and AWS CodeDeploy, that can be used on their own and with existing AWS applications Each CodeStar project includes development tools, including AWS CodePipeline, AWS CodeCommit, AWS CodeBuild, and AWS CodeDeploy, that can be used on their own and with existing AWS applications - AWS CodeStar accelerates software release with the help of AWS CodePipeline, a continuous integration and continuous delivery (CI/CD) service. Each project comes pre-configured with an automated pipeline that continuously builds, tests, and deploys your code with each commit. AWS CodeStar integrates with AWS CodeDeploy and AWS CloudFormation so that you can easily update your application code and deploy to Amazon EC2 and AWS Lambda.

Which service can be used to migrate 50TB of data quickly and affordably to Amazon S3 for a company with a slow Internet connection? 1. Amazon S3 Transfer Acceleration 2. Amazon S3 multi-part upload 3. AWS Snowball 4. AWS Snowmobile

3. AWS Snowball

Which statement best describes an Availability Zone? 1. A site that Amazon CloudFront uses to cache copies of content for faster delivery to users at any location 2. A separate geographical location with multiple locations that are isolated from each other 3. A fully isolated portion of the AWS global infrastructure 4. The server from which Amazon CloudFront gets your files

3. A fully isolated portion of the AWS global infrastructure

Which policy describes prohibited uses of the web services offered by Amazon Web Services? 1. AWS Trusted Advisor 2. AWS Applicable Use Policy 3. AWS Acceptable Use Policy 4. AWS Fair Use Policy

3. AWS Acceptable Use Policy The Acceptable Use Policy describes prohibited uses of the web services offered by Amazon Web Services, Inc. and its affiliates (the "Services") and the website located at http://aws.amazon.com (the "AWS Site"). This policy is present at https://aws.amazon.com/aup/ and is updated on a need basis by AWS. AWS Fair Use Policy - This is a made-up option and has been added as a distractor. AWS Applicable Use Policy - This is a made-up option and has been added as a distractor.

An organization has a complex IT architecture involving a lot of system dependencies and it wants to track the history of changes to each resource. Which AWS service will help the organization track the history of configuration changes for all the resources? 1. AWS CloudFormation 2. AWS Service Catalog 3. AWS Config 4. AWS CloudTrail

3. AWS Config AWS Config is a service that enables you to assess, audit, and evaluate the configurations of your AWS resources. Config continuously monitors and records your AWS resource configurations and allows you to automate the evaluation of recorded configurations against desired configurations. Think resource-specific history, audit, and compliance; think Config. With AWS Config, you can do the following: 1. Evaluate your AWS resource configurations for desired settings. 2. Get a snapshot of the current configurations of the supported resources that are associated with your AWS account. 3. Retrieve configurations of one or more resources that exist in your account. 4. Retrieve historical configurations of one or more resources. 5. Receive a notification whenever a resource is created, modified, or deleted. 6.View relationships between resources. For example, you might want to find all resources that use a particular security group.

Which pricing tool is used to visualize, understand, and manage your AWS costs and usage over time? 1. AWS Pricing Calculator 2. AWS Budgets 3. AWS Cost Explorer 4. AWS Free Tier

3. AWS Cost Explorer

A company moves data between Amazon S3, RDS and EMR. Which service can help to process and move data between services? 1. Amazon Athena 2. Amazon QuickSight 3. AWS Data Pipeline

3. AWS Data Pipeline

A company needs to migrate several TB of data from an on-premises NAS device to Amazon FSx. Which service can the company use to migrate the data over a VPN connection? 1. AWS Database Migration Service (DMS) 2. AWS Snowball Edge 3. AWS DataSync 4. Amazon S3 Transfer Acceleration

3. AWS DataSync

Which component or service enables you to establish a dedicated private connection between your data center and virtual private cloud (VPC)? 1. Internet gateway 2. Virtual private gateway 3. AWS Direct Connect 4. Amazon CloudFront

3. AWS Direct Connect

Which service is used to transfer up to 100 PB of data to AWS? 1. AWS DeepRacer 2. Amazon CloudFront 3. AWS Snowmobile 4. Amazon Neptune

3. AWS Snowmobile

Which AWS service can be used to provision resources to run big data workloads on Hadoop clusters? 1. AWS Step Function 2. Amazon EC2 3. Amazon EMR 4. AWS Batch

3. Amazon EMR Amazon EMR - Amazon EMR is the industry-leading cloud big data platform for processing vast amounts of data using open source tools such as Hadoop, Apache Spark, Apache Hive, Apache HBase, Apache Flink, Apache Hudi, and Presto. Amazon EMR can be used to provision resources to run big data workloads on Hadoop clusters. AWS Step Function - AWS Step Function lets you coordinate multiple AWS services into serverless workflows. You can design and run workflows that stitch together services such as AWS Lambda, AWS Glue and Amazon SageMaker. AWS Batch You can use AWS Batch to plan, schedule and execute your batch computing workloads across the full range of AWS compute services. AWS Batch dynamically provisions the optimal quantity and type of compute resources (e.g., CPU or memory optimized instances) based on the volume and specific resource requirements of the batch jobs submitted. AWS Batch provisions compute resources and optimizes the job distribution based on the volume and resource requirements of the submitted batch jobs.

A company based in Sydney hosts its application on EC2 instances in ap-southeast-2. They would like to deploy the same EC2 instances in eu-south-1. Which of the following AWS entities can address this use-case? 1. AWS Lambda 2. EBS snapshots 3. Amazon Machine Image (AMI) 4. Elastic Load Balancing (ELB)

3. Amazon Machine Image (AMI) An Amazon Machine Image (AMI) provides the information required to launch an instance. You must specify an AMI when you launch an instance. You can launch multiple instances from a single AMI when you need multiple instances with the same configuration.

Which service allows you to run relational databases in the AWS cloud? 1. AWS Lambda 2. Amazon DynamoDB 3. Amazon RDS 4. API Gateway

3. Amazon RDS

Which of the following AWS services comes under the Software as a Service (SaaS) Cloud Computing Type? 1. AWS Elastic Beanstalk 2. Amazon EC2 3. Amazon Rekognition 4. Elastic Load Balancing

3. Amazon Rekognition SaaS provides you with a complete product that is run and managed by the service provider. With a SaaS offering, you don't have to think about how the service is maintained or how the underlying infrastructure is managed. You only need to think about how you will use that particular software. Examples - Amazon Rekognition, Google Apps (Gmail), Dropbox, Zoom.

What is Amazon Athena used for? 1. A privacy service used to authenticate users logging into the AWS console 2. A security service used to discover and protect sensitive data within AWS 3. An interactive query service used to analyze data within S3 4. An interactive monitoring service used to publish metrics and reports of AWS resources

3. An interactive query service used to analyze data within S3

_______ is an isolated location that consists of one or more discrete data centers, each with redundant power, networking, and connectivity, housed in separate facilities. 1. Regions 2. S3 3. Availability Zones

3. Availability Zones

Which of the following AWS Support plans provides access to Infrastructure Event Management for an additional fee? 1. Enterprise 2. Developer 3. Business 4. Basic

3. Business

Which action can you perform with consolidated billing? 1. Review how much cost your predicted AWS usage will incur by the end of the month. 2. Create an estimate for the cost of your use cases on AWS. 3. Combine usage across accounts to receive volume pricing discounts. 4. Visualize and manage your AWS costs and usage over time.

3. Combine usage across accounts to receive volume pricing discounts.

Which task can AWS Key Management Service (AWS KMS) perform? 1. Configure multi-factor authentication (MFA). 2. Update the AWS account root user password. 3. Create cryptographic keys. 4. Assign permissions to users and groups.

3. Create cryptographic keys.

A big data analytics company is moving its IT infrastructure from an on-premises data center to AWS Cloud. The company has some server-bound software licenses that it wants to use on AWS. As a Cloud Practitioner, which of the following EC2 instance types would you recommend to the company? 1. Reserved Instance 2. On-Demand Instance 3. Dedicated Host 4. Dedicated Instance

3. Dedicated Host

A big data analytics company is moving its IT infrastructure from an on-premises data center to AWS Cloud. The company has some server-bound software licenses that it wants to use on AWS. As a Cloud Practitioner, which of the following EC2 instance types would you recommend to the company? 1. Dedicated Instance 2. Reserved Instance 3. Dedicated Host 4. On-Demand Instance

3. Dedicated Host

Which of the following are correct statements regarding the AWS Global Infrastructure? (Select two) 1. Each Availability Zone (AZ) consists of two or more discrete data centers 2. Each AWS Region consists of two or more Edge Locations 3. Each AWS Region consists of three or more Availability Zones 4. Each Availability Zone (AZ) consists of one or more discrete data centers 5. Each AWS Region consists of one or more Availability Zones

3. Each AWS Region consists of three or more Availability Zones 4. Each Availability Zone (AZ) consists of one or more discrete data centers

Which AWS support plan comes with a Technical Account Manager (TAM)? 1. Basic 2. Developer 3. Enterprise 4. Business

3. Enterprise

Which of the following is an INCORRECT statement about Scaling, a design principle of Reliability pillar of the AWS Well-Architected Framework. 1. Vertical Scaling implies you scale by adding more power (CPU, RAM) to your existing machine/node 2. Fault tolerance is achieved by Horizontal scaling 3. Fault tolerance is achieved by Vertical Scaling 4. Horizontal Scaling implies you scale by adding more instances to your existing pool of resources

3. Fault tolerance is achieved by Vertical Scaling

Which AWS service helps with global application availability and performance using the AWS global network? 1. Amazon Route 53 2. Elastic Load Balancer 3. Global Accelerator 4. Amazon CloudFront

3. Global Accelerator AWS Global Accelerator is a service that improves the availability and performance of your applications with local or global users. It provides static IP addresses that act as a fixed entry point to your application endpoints in a single or multiple AWS Regions, such as your Application Load Balancers, Network Load Balancers, or Amazon EC2 instances. AWS Global Accelerator uses the AWS global network to optimize the path from your users to your applications, improving the performance of your traffic by as much as 60%.

Which of the following statements are correct regarding Amazon API Gateway? (Select two) 1.API Gateway creates RESTful APIs, Storage Gateway creates WebSocket APIs 2.If an API response is served by the cached data, it is not considered an API call for billing purposes 3.API Gateway can be configured to send data directly to Amazon Kinesis Data Stream 4.API Gateway can call an AWS Lambda function to create the front door of a serverless application 5.API Gateway does not yet support API result caching

3.API Gateway can be configured to send data directly to Amazon Kinesis Data Stream 4.API Gateway can call an AWS Lambda function to create the front door of a serverless application API Gateway can call an AWS Lambda function to create the front door of a serverless application - Amazon API Gateway is an AWS service for creating, publishing, maintaining, monitoring, and securing REST, HTTP, and WebSocket APIs at any scale. API developers can create APIs that access AWS or other web services, as well as data stored in the AWS Cloud. API Gateway acts as a "front door" for applications to access data, business logic, or functionality from your backend services, such as workloads running on Amazon Elastic Compute Cloud (Amazon EC2), code running on AWS Lambda, any web application, or real-time communication applications. API Gateway can be configured to send data directly to Amazon Kinesis Data Stream - Amazon API Gateway can execute AWS Lambda functions in your account, start AWS Step Functions state machines, or call HTTP endpoints hosted on AWS Elastic Beanstalk, Amazon EC2, and also non-AWS hosted HTTP based operations that are accessible via the public Internet.API Gateway also allows you to specify a mapping template to generate static content to be returned, helping you mock your APIs before the backend is ready. You can also integrate API Gateway with other AWS services directly - for example, you could expose an API method in API Gateway that sends data directly to Amazon Kinesis.

A company has defined a baseline that mentions the number of AWS resources to be used for different stages of application testing. However, the company realized that employees are not adhering to the guidelines and provisioning additional resources via API calls, resulting in higher testing costs. Which AWS service will help the company raise alarms whenever the baseline resource numbers are crossed? 1.AWS Config 2.AWS X-Ray 3.AWS CloudTrail Insights 4.Amazon Detective

3.AWS CloudTrail Insights

Which of the following is a repository service that helps in maintaining application dependencies via integration with commonly used package managers and build tools like Maven, Gradle, npm, etc? 1.AWS CodeStar 2.AWS CodeCommit 3.AWS CodeArtifact 4.AWS CodeBuild

3.AWS CodeArtifact AWS CodeArtifact - AWS CodeArtifact is a fully managed artifact repository service that makes it easy for organizations of any size to securely store, publish, and share software packages used in their software development process. CodeArtifact can be configured to automatically fetch software packages and dependencies from public artifact repositories so developers have access to the latest versions. CodeArtifact works with commonly used package managers and build tools like Maven, Gradle, npm, yarn, twine, pip, and NuGet making it easy to integrate into existing development workflows. AWS CodeCommit - AWS CodeCommit is a fully-managed source control service that hosts secure Git-based repositories. It makes it easy for teams to collaborate on code in a secure and highly scalable ecosystem. CodeCommit eliminates the need to operate your own source control system or worry about scaling its infrastructure. You can use CodeCommit to securely store anything from source code to binaries, and it works seamlessly with your existing Git tools. AWS CodeBuild - AWS CodeBuild is a fully managed continuous integration service that compiles source code, runs tests, and produces software packages that are ready to deploy. With CodeBuild, you don't need to provision, manage, and scale your own build servers. CodeBuild scales continuously and processes multiple builds concurrently, so your builds are not left waiting in a queue. You can get started quickly by using prepackaged build environments, or you can create custom build environments that use your own build tools. AWS CodeStar - AWS CodeStar is a cloud‑based development service that provides the tools you need to quickly develop, build, and deploy applications on AWS. With AWS CodeStar, you can set up your entire continuous delivery toolchain in minutes, allowing you to start releasing code faster. AWS CodeStar makes it easy for your whole team to work together securely, with built-in role-based policies that allow you to easily manage access and add owners, contributors, and viewers to your projects. Each CodeStar project includes development tools, including AWS CodePipeline, AWS CodeCommit, AWS CodeBuild, and AWS CodeDeploy, that can be used on their own and with existing AWS applications.

A company needs to use a secure online data transfer tool/service that can automate the ongoing transfers from on-premises systems into AWS while providing support for incremental data backups. Which AWS tool/service is an optimal fit for this requirement? 1.AWS Storage Gateway 2.AWS Snowcone 3.AWS DataSync 4.AWS Snowmobile

3.AWS DataSync AWS DataSync AWS DataSync is a secure online data transfer service that simplifies, automates, and accelerates copying terabytes of data to and from AWS storage services. Easily migrate or replicate large data sets without having to build custom solutions or oversee repetitive tasks. DataSync can copy data between Network File System (NFS) shares, or Server Message Block (SMB) shares, self-managed object storage, AWS Snowcone, Amazon Simple Storage Service (Amazon S3) buckets, Amazon Elastic File System (Amazon EFS) file systems, and Amazon FSx for Windows File Server file systems.

Which AWS service allows you to connect any number of IoT devices to the cloud without requiring you to provision or manage servers? 1.Amazon Connect 2.AWS IoT Gateway 3.AWS IoT Core 4.AWS Control Tower

3.AWS IoT Core

A developer would like to automate operations on his on-premises environment using Chef and Puppet. Which AWS service can help with this task? 1.AWS Batch 2.AWS CodeDeploy 3.AWS OpsWorks 4.AWS CloudFormation

3.AWS OpsWorks

A company is looking at a service/tool to automate and minimize the time spent on keeping the server images up-to-date. These server images are used by EC2 instances as well as the on-premises systems. Which AWS service will help achieve the company's need? 1.AWS Systems Manager (Amazon Simple Systems Manager (SSM)) 2.Amazon EC2 AMI 3.Amazon EC2 Image Builder 4.AWS CloudFormation templates

3.Amazon EC2 Image Builder Amazon EC2 Image Builder - EC2 Image Builder simplifies the building, testing, and deployment of Virtual Machine and container images for use on AWS or on-premises. Keeping Virtual Machine and container images up-to-date can be time-consuming, resource-intensive, and error-prone. Currently, customers either manually update and snapshot VMs or have teams that build automation scripts to maintain images. Image Builder significantly reduces the effort of keeping images up-to-date and secure by providing a simple graphical interface, built-in automation, and AWS-provided security settings. With Image Builder, there are no manual steps for updating an image nor do you have to build your own automation pipeline

The IT infrastructure at a university is deployed on AWS Cloud and it's experiencing a read-intensive workload. As a Cloud Practitioner, which AWS service would you use to take the load off databases? 1.Amazon Relational Database Service (RDS) 2.Amazon EMR 3.Amazon ElastiCache 4.AWS Glue

3.Amazon ElastiCache

Per the AWS Shared Responsibility Model, management of which of the following AWS services is the responsibility of the customer? 1.AWS Elastic Beanstalk 2.Amazon DynamoDB 3.Amazon Elastic Compute Cloud (Amazon EC2) 4.Amazon Simple Storage Service (Amazon S3)

3.Amazon Elastic Compute Cloud (Amazon EC2)

A company is looking at real-time processing of streaming big data for their ad-tech platform. Which of the following AWS services is the right choice for this requirement? 1.Amazon EMR 2.Amazon Simple Queue Service (Amazon SQS) 3.Amazon Kinesis data stream 4.Amazon Redshift

3.Amazon Kinesis data stream

Which network security tool can you use to control traffic in and out of EC2 Instances? 1. Network Access Control List (NACL) 2. Identity and Management Access (IAM) 3. GuardDuty 4. Security Groups

4. Security Groups

An engineering team is new to the AWS Cloud and it would like to launch a dev/test environment with low monthly pricing. Which AWS service can address this use-case? 1. AWS CloudFormation 2. Amazon ECS 3. Amazon EC2 4. Amazon LightSail

4. Amazon LightSail Amazon Lightsail is designed to be the easiest way to launch and manage a virtual private server with AWS. Lightsail plans include everything you need to jumpstart your project - a virtual machine, SSD- based storage, data transfer, DNS management, and a static IP address - for a low, predictable price. It is not used to run batch jobs. It is great for people with little cloud experience to launch quickly a popular IT solution ready to use immediately.

Which of the following is the most cost-effective AWS service that can be used for long-term data backup and archiving? 1. AWS Storage Gateway 2. AWS Data Pipeline 3. Amazon Aurora 4. Amazon S3 Glacier

4. Amazon S3 Glacier

You want to store data in an object storage service. Which AWS service is best for this type of storage? 1. Amazon Managed Blockchain 2. Amazon Elastic File System (Amazon EFS) 3. Amazon Elastic Block Store (Amazon EBS) 4. Amazon Simple Storage Service (Amazon S3)

4. Amazon Simple Storage Service (Amazon S3)

When you stop an instance, you still have to pay for: 1. The instance will still accrue running time at a lower rate 2. Any instance store volumes being used 3. The internal IP address of the instance 4. Any EBS volumes being used

4. Any EBS volumes being used

Which Support plans include access to all AWS Trusted Advisor checks? (Select TWO.) 1. AWS Free Tier 2. Developer 3. Basic 4. Business 5. Enterprise

4. Business 5. Enterprise

A financial services company wants to ensure that its AWS account activity meets the governance, compliance and auditing norms. As a Cloud Practitioner, which AWS service would you recommend for this use-case? 1. CloudWatch 2. Trusted Advisor 3. Config 4. CloudTrail

4. CloudTrail

What AWS service do you use to create Billing Alarms? 1. IAM 2. Organizations 3. EC2 4. CloudWatch

4. CloudWatch

Which of the following is NOT an EC2 Instance Purchasing Option? 1. Spot Instances 2. Reserved Instances 3. On-demand Instances 4. Connect Instances

4. Connect Instances

Which service can be used to migrate an on-premises database to Amazon RDS? 1. AWS Server Migration Service 2. AWS Transfer for SMTP 3. Application Discovery Service 4. Database Migration Service

4. Database Migration Service

Which of the following statements are CORRECT regarding the Availability Zone (AZ) specific characteristics of EBS and EFS storage types? 1. EBS volume can be attached to instances in multiple Availability Zones and EFS file system can be mounted on instances in the same Availability Zone 2. EBS volume can be attached to a single instance in the same Availability Zone and EFS file system can be mounted on instances in the same Availability Zone 3. EBS volume can be attached to instances in multiple Availability Zones and EFS file system can be mounted on instances across multiple Availability Zones 4. EBS volume can be attached to a single instance in the same Availability Zone whereas EFS file system can be mounted on instances across multiple Availability Zones

4. EBS volume can be attached to a single instance in the same Availability Zone whereas EFS file system can be mounted on instances across multiple Availability Zones

Why is it important to create individual IAM users for each person interacting with the AWS account? 1. Sharing one account per department makes it easier to manage a smaller number of accounts 2. Admin accounts are more costly than general user accounts so it's more cost effective 3. Creating an IAM user for each person makes it easier to keep track of each person in the company 4. Each user is going to be performing their own tasks and will need their own specific permissions

4. Each user is going to be performing their own tasks and will need their own specific permissions

Which EC2 instance type balances compute, memory, and networking resources? 1. Memory Optimized 2. Storage Optimized 3. Compute Optimized 4. General Purpose

4. General Purpose

Which type of Cloud Computing does Amazon Elastic Compute Cloud (EC2) represent? 1. Software as a Service (SaaS) 2. Platform as a Service (PaaS) 3. Network as a Service (NaaS) 4. Infrastructure as a Service (IaaS)

4. Infrastructure as a Service (IaaS)

Which AWS Route 53 routing policy would you use to improve the performance for your customers by routing the requests to the AWS endpoint that provides the fastest experience? 1. Weighted routing policy 2. Failover routing policy 3. Simple routing policy 4. Latency routing policy

4. Latency routing policy

As per AWS shared responsibility model, which of the following is a responsibility of the customer from a security and compliance point of view? 1. Patching/fixing flaws within the AWS infrastructure 2. Edge Location management and maintenance 3. Availability Zone infrastructure management 4. Manage Elastic Block Store (EBS) backups using EBS snapshots

4. Manage Elastic Block Store (EBS) backups using EBS snapshots

Which storage tier should you choose for files that are easily replaceable that you also need to retrieve quickly when you have a tight budget? 1. Intelligent Tiering 2. Glacier 3. IA 4. One Zone IA

4. One Zone IA

Which of the following is not one of the support plans? 1. Business 2. Developer 3. Enterprise 4. Organization

4. Organization

Which of the following is the MOST cost-effective option to purchase an EC2 Reserved Instance? 1. No upfront payment option with standard 1-year term 2. All upfront payment option with standard 1-year term 3. No upfront payment option with standard 3-years term 4. Partial upfront payment option with standard 3-years term

4. Partial upfront payment option with standard 3-years term

Which pillar of the AWS Well-Architected Framework focuses on using computing resources in ways that meet system requirements? 1. Operational Excellence 2. Reliability 3. Security 4. Performance Efficiency

4. Performance Efficiency

Which of the following are examples of Horizontal Scalability (aka Elasticity)? (Select two) 1. Modify a Database instance to higher CPU and RAM 2. Add a bigger CPU to a computer 3. Modify an EC2 instance type from t2.nano to u-12tb1.metal 4. Read Replicas in Amazon RDS 5. Elastic Load Balancing

4. Read Replicas in Amazon RDS 5. Elastic Load Balancing

A media company wants to enable customized content suggestions for the users of its movies streaming platform. Which AWS service can provide these personalized recommendations based on the historic data? 1.Amazon Comprehend 2.Amazon SageMaker 3.Amazon Customize 4.Amazon Personalize

4.Amazon Personalize Amazon Personalize - Amazon Personalize enables developers to build applications with the same machine learning (ML) technology used by Amazon.com for real-time personalized recommendations. Amazon Personalize can be used to personalize the end-user experience over any digital channel. Examples include product recommendations for e-commerce, news articles and content recommendation for publishing, media and social networks, hotel recommendations for travel websites, credit card recommendations for banks, and match recommendations for dating sites. These recommendations and personalized experiences can be delivered over websites, mobile apps, or email/messaging. Amazon Personalize can also be used to customize the user experience when user interaction is over a physical channel, e.g., a meal delivery company could personalize weekly meals to users in a subscription plan. Amazon Personalize supports the following key use cases: Personalized recommendations Similar items Personalized reranking i.e. rerank a list of items for a user Personalized promotions/notifications Amazon SageMaker - Amazon SageMaker is a fully managed service that provides every developer and data scientist with the ability to build, train, and deploy machine learning (ML) models quickly. SageMaker removes the heavy lifting from each step of the machine learning process to make it easier to develop high-quality models. Amazon Customize - There is no such service as Amazon Customize. This option has been added as a distractor. Amazon Comprehend - Amazon Comprehend is a natural-language processing (NLP) service that uses machine learning to uncover information in unstructured data. Instead of combing through documents, the process is simplified and unseen information is easier to understand. The service can identify critical elements in data, including references to language, people, and places, and the text files can be categorized by relevant topics. In real-time, you can automatically and accurately detect customer sentiment in your content.

Which of the following service is useful when a Disaster Recovery method is triggered in AWS? 1.Amazon Inspector 2.Amazon SNS 3.Amazon SQS 4.Amazon Route 53

4.Amazon Route 53

Which of the following AWS services will help provision a logically isolated network for your AWS resources? 1.AWS Firewall Manager 2.Amazon Route 53 3.AWS PrivateLink 4.Amazon Virtual Private Cloud (Amazon VPC)

4.Amazon Virtual Private Cloud (Amazon VPC)

A university provides access to AWS services for its students to submit their research data for analysis. The university is looking at the most cost-effective approach for recovering from disasters and it can tolerate data loss of a few hours. Which disaster recovery strategy is well-suited for this use case? 1.Pilot light strategy 2.Warm standby strategy 3.Multi-site active/active strategy 4.Backup and restore strategy

4.Backup and restore strategy

What service helps you to aggregate logs from your EC2 instance? 1.SQS 2.Cloudtrail 3.S3 4.Cloudwatch Logs

4.Cloudwatch Logs

Which of the following statements are correct regarding the AWS Control Tower and Service Control Policies? (Select two) 1.AWS Control Tower helps you deploy a multi-account AWS environment and operate it with day-to-day reminders and recommendations 2.Service Control Policies (SCPs) can help grant permissions to the accounts in your organization 3.Service Control Policies (SCPs), by default, effect all the users in the AWS Organization. They have to be configured to effect only the member accounts, if needed 4.Control Tower is an AWS native service providing a pre-defined set of blueprints and guardrails to help customers implement a landing zone for new AWS accounts 5.Service Control Policies (SCPs) are a type of organization policy that you can use to manage permissions in your organization

4.Control Tower is an AWS native service providing a pre-defined set of blueprints and guardrails to help customers implement a landing zone for new AWS accounts 5.Service Control Policies (SCPs) are a type of organization policy that you can use to manage permissions in your organization

Your company has a set of EC2 Instances hosted in AWS. There is a requirement to create snapshots from the EBS volumes attached to these EC2 Instances in another geographical location. As per this requirement, where would you create the snapshots? 1.Partial Upfront costs Reserved 2.In another data center 3.In another Availability Zone 4.In another Region

4.In another Region

You have 2 accounts in your AWS account. One for the Dev and the other for QA. All are part of consolidated billing. The master account has purchase 3 reserved instances. The Dev department is currently using 2 reserved instances. The QA team is planning on using 3 instances which are of the same instance type. What is the pricing tier of the instances that can be used by the QA Team? 1.Two Reserved and 1 on-demand 2.No Reserved and 3 on-demand 3.Three Reserved and no on-demand 4.One Reserved and 2 on-demand

4.One Reserved and 2 on-demand

A brand new startup would like to remove its need to manage the underlying infrastructure and focus on the deployment and management of its applications. Which type of Cloud Computing does this refer to? 1.Software as a Service (SaaS) 2.Infrastructure as a Service (IaaS) 3.On-premises 4.Platform as a Service (PaaS)

4.Platform as a Service (PaaS) PaaS removes the need to manage underlying infrastructure (usually hardware and operating systems) and allows you to focus on the deployment and management of your applications. You don't need to worry about resource procurement, capacity planning, software maintenance, patching, or any of the other undifferentiated heavy lifting involved in running your application. IaaS contains the basic building blocks for cloud IT. It typically provides access to networking features, computers (virtual or on dedicated hardware), and data storage space. IaaS gives the highest level of flexibility and management control over IT resources. Software as a Service (SaaS) - SaaS provides you with a complete product that is run and managed by the service provider. With a SaaS offering, you don't have to think about how the service is maintained or how the underlying infrastructure is managed. You only need to think about how you will use that particular software. AWS Rekognition is an example of a SaaS service. On-premises - When an enterprise opts for on-premises, it needs to create, upgrade, and scale the on-premise IT infrastructure by investing in sophisticated hardware, compatible software, and robust services. Also, the business needs to deploy dedicated IT staff to upkeep, scale, and manage the on-premise infrastructure continuously.

According to the Well-Architected Framework, which of the following action is recommended in the Security pillar? 1.Use AWS CloudFormation to automate security best practices 2.Use AWS Cost Explorer to view and track your usage in detail 3.Use Amazon CloudWatch to measure overall efficiency 4.Use AWS KMS to encrypt data

4.Use AWS KMS to encrypt data AWS Key Management Service (AWS KMS) makes it easy for you to create and control keys used for encryption. It is a key service of the Security pillar.

Which of the following is not a database option offered by AWS? 1. Oracle 2. MySQL 3. Amazon Aurora 4. DynamoDB 5. MariaDB 6. MongoDB

6. MongoDB

Provision resources by using programming languages or a text file - This action can be performed in ________________________.

AWS CloudFormation

Which AWS service is used to store and commit code privately and also offer features for version control? AWS CodeCommit AWS CodeBuild AWS CodePipeline AWS CodeStar

AWS CodeCommit AWS CodeCommit - AWS CodeCommit is a fully-managed source control service that hosts secure Git-based repositories. It makes it easy for teams to collaborate on code in a secure and highly scalable ecosystem. CodeCommit eliminates the need to operate your own source control system or worry about scaling its infrastructure. You can use CodeCommit to securely store anything from source code to binaries, and it works seamlessly with your existing Git tools. AWS CodeCommit eliminates the need to host, maintain, back up, and scale your own source control servers. The service automatically scales to meet the growing needs of your project. AWS CodeCommit automatically encrypts your files in transit and at rest. CodeCommit is integrated with AWS Identity and Access Management (IAM) allowing you to customize user-specific access to your repositories. AWS CodeCommit supports all Git commands and works with your existing Git tools. You can keep using your preferred development environment plugins, continuous integration/continuous delivery systems, and graphical clients with CodeCommit. Incorrect options: AWS CodePipeline - AWS CodePipeline is a fully managed continuous delivery service that helps you automate your release pipelines for fast and reliable application and infrastructure updates. CodePipeline automates the build, test, and deploy phases of your release process every time there is a code change, based on the release model you define. This enables you to rapidly and reliably deliver features and updates. AWS CodeBuild - AWS CodeBuild is a fully managed continuous integration service that compiles source code, runs tests, and produces software packages that are ready to deploy. With CodeBuild, you don't need to provision, manage, and scale your own build servers. CodeBuild scales continuously and processes multiple builds concurrently, so your builds are not left waiting in a queue. You can get started quickly by using prepackaged build environments, or you can create custom build environments that use your own build tools. With CodeBuild, you are charged by the minute for the compute resources you use. AWS CodeStar - AWS CodeStar is a cloud‑based development service that provides the tools you need to quickly develop, build, and deploy applications on AWS. With AWS CodeStar, you can set up your entire continuous delivery toolchain in minutes, allowing you to start releasing code faster. AWS CodeStar makes it easy for your whole team to work together securely, with built-in role-based policies that allow you to easily manage access and add owners, contributors, and viewers to your projects. Each CodeStar project includes development tools, including AWS CodePipeline, AWS CodeCommit, AWS CodeBuild and AWS CodeDeploy, that can be used on their own and with existing AWS applications.

A company is planning to move their traditional CRM application running on MySQL to an AWS database service. Which database service is the right fit for this requirement? Amazon ElastiCache Amazon Aurora Amazon Neptune Amazon DynamoDB

Amazon Aurora

Which AWS database is considered serverless and provides a NoSQL database with millisecond latency? Aurora 1. RDS 2. DynamoDB 3. Redshift

DynamoDB

What are the SIX pillars of AWS Well - Architected Framework?

Operational excellence Security Reliability Performance efficiency Cost Optimization Sustainability

Provision an isolated section of the AWS Cloud to launch resources in a virtual network that you define - This action can be performed in Amazon ____________________________________.

Virtual Private Cloud (Amazon VPC)

The People Perspective helps Human Resources (HR) employees prepare their teams for ______________ by updating organizational processes and staff skills to include cloud-based competencies.

cloud adoption

Amazon Aurora is an ___________________ relational database.

enterprise-class

Amazon Neptune is a __________________ service.

graph database

What is the AWS Well Architected framework? Why is it important?

helps you understand how to design and operate reliable, secure, efficient, and cost-effective systems in the AWS Cloud. It provides a way for you to consistently measure your architecture against best practices and design principles and identify areas for improvement.

Amazon Augmented AI (Amazon A2I) provides built-in human review workflows for common ____________________ use cases, such as content moderation and text extraction from documents.

machine learning

AWS Budgets lets you ________________________________ when your service usage exceeds (or is forecasted to exceed) the amount that you have budgeted.

set custom alerts that will notify you


Ensembles d'études connexes

Identify the grammatically correct sentence

View Set

Gastrointestinal system medication wk 11

View Set

The Market System and Circular flow

View Set

Melanie Chiluisa & Emily Carrion

View Set

Fundamentals exam 1 online questions chapter 9

View Set

Римське приватне право

View Set