Questions Flashcards

1
Q

AWS service encryption enabled by default

A

CloudTrail Logs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

AWS Region as minimum how many AZs

A

3

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

AZs have minimum how many Data Centres

A

1

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Fault Tolerance is achieved by Scale Up or Scale Out

A

Scale Out

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Three best practice areas for Reliability in the cloud

A

Foundations(AWS Config - monitors and records your AWS resource configurations),

Change Management(AWS CloudTrail, account activity),

Failure Management(CloudWatch - built for DevOps engineers, developers, site reliability engineers (SREs), and IT managers for monitoring applications and performance)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

AWS Trusted Advisor

A

Provision your resources following AWS best practices

Cost optimization, security, fault tolerance, service limits, and performance improvement (CSSPF)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Amazon GuardDuty

A

Threat detection service that monitors malicious activity and unauthorized behavior

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Amazon Inspector

A

Security Assessment - Assesses applications for exposure, vulnerabilities, and deviations from best practices

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

AWS CloudWatch

A

For devops engineers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

AWS CloudTrail

A

For organization for governance,compliance and audit of AWS accounts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

AWS Basic Support

A

Access to the core Trusted Advisor checks
AWS Health Dashboard

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

AWS Developer Support

A

Email-based technical support during business hours
Access to the core Trusted Advisor checks from Service Quota and basic Security checks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

AWS Enterprise

A

Customers with concierge-like service
24x7 technical support from high-quality engineers
Designated Technical Account Manager

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

AWS Enterprise On-Ramp Support

A

Expert guidance to grow and optimize in the Cloud
Business Critical downtime < 30 mins

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

AWS Business Support

A

24x7 phone, email and chat access to technical support
Business Critical downtime < 15 mins

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What provides protection at Amazon API Gateway, Amazon CloudFront or an Application Load Balancer

A

AWS WAF

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

What provides protection at Network layer and Transport layers

A

AWS Sheild

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

Receive alerts when the reservation utilization falls

A

AWS Budgets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Allows marketers and developers to deliver customer-centric engagement experiences

A

Amazon Pinpoint

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

Active-active configuration across regions using Managed NoSQL DB

A

Amazon DynamoDB with global tables

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

AWS Partner Network (APN)

A

Global partner program for technology and consulting businesses

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

AWS Systems Manager

A

Gives you visibility and control of your infrastructure on AWS
Unified user interface so you can view operational data from multiple AWS services
Enables to running commands, managing patches, and configuring servers across AWS Cloud as well as on-premises

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

Estimate Cost

A

AWS Pricing Calculator

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

Comprehensive cost report while running AWS services

A

AWS Cost and Usage report

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

High level cost report while running AWS services with historical data

A

AWS Cost Explorer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

Set alert for cost and usage(utilization) limits

A

AWS Budgets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

Dedicated Host vs Instance

A

BYOL(Bring your own license, like server-bound software licenses) is supported in dedicated host only
Allows to consistently deploy your instance to the same physical server is supported in dedicated host only

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
28
Q

AWS encryption SDK

A

Client-side encryption library that is separate from the language–specific SDKs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
29
Q

SSE-S3 vs SSE-KMS

A

SSE-S3 = Server-side encryption with Amazon S3-Managed Keys (free)
SSE-KMS = Server-side encryption with AWS KMS keys (additional charges and has audit trail)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
30
Q

Encryption is enabled by default for all the objects written to Amazon S3. True or False?

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
31
Q

Geolocation vs Geoproximity routing policy

A

Route traffic base on user location vs location of your resources

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
32
Q

Multivalue answer routing

A

Upto 8 healthy records

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
33
Q

In most cases there is no charge for inbound data transfer or data transfer between other AWS services within the same region. True or False?

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
34
Q

AWS Endpoint vs AWS PrivateLink

A

At consumer level vs at service provider level. Both work together to provide private connection to AWS services within AWS.

However AWS PrivateLink also provides private connection of AWS services to on-premises applications

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
35
Q

AWS site to site VPN vs Direct Connect

A

Connect on premise to AWS services over public internet
Vs
Connect on premise to AWS services over private network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
36
Q

CAF - Business perspective what are the roles?

A

CEO, CFO, COO, CIO, and CTO
Cloud investments accelerate your digital transformation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
37
Q

CAF - People perspective what are the roles?

A

CIO, COO, CTO, cloud director, and cross-functional and enterprise-wide leaders
(cross-functional and enterprise-wide leaders)
Bridge between technology and business

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
38
Q

CAF - Governance perspective what are the roles?

A

CIO, CTO, CFO, CDO, and CRO
(CDO and CRO)
Orchestrate your cloud initiatives while maximizing organizational benefits and minimizing transformation-related risks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
39
Q

CAF - Platform perspective what are the roles?

A

CTO, technology leaders, architects, and engineers
(architects, and engineers)
Build an enterprise-grade, scalable, hybrid cloud platform

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
40
Q

CAF - Security perspective what are the roles?

A

CISO, CCO, internal audit leaders, and security architects and engineers
(CISO, CCO)
Achieve the confidentiality, integrity, and availability of your data and cloud workloads

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
41
Q

CAF - Operations perspective what are the roles?

A

infrastructure and operations leaders, site reliability engineers, and information technology service managers
(site reliability engineers and IT service managers )
Ensure that your cloud services are delivered at a level that meets the needs of your business

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
42
Q

Cloud Transformation
Journey

A

Envision(demonstrating) ->Align(gap analysis)->Launch(delivering pilot)->Scale(expanding pilots)
(EALS)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
43
Q

“No upfront payment option with the standard 1-year term”
“All upfront payment option with the standard 1-year term”
“No upfront payment option with the standard 3-years term”
“Partial upfront payment option with the standard 3-years term”

What is % saving in each?

A

36%
40%
56%
59%

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
44
Q

AWS SQS and SNS

A

Used to decouple and scale microservices, distributed systems, and serverless applications

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
45
Q

AWS Step Functions

A

Coordinate multiple AWS services into serverless workflows

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
46
Q

AWS Glue

A

ETL service

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
47
Q

VPC Endpoint - Types

A

Interface(IP based AWS S3 and Others) and Gateway(Route table based supported by AWS S3 and DynamoDB)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
48
Q

SG has both Allow and Deny rules. True or False?

A

False, only Allow

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
49
Q

NAT ACL has both Allow and Deny rules. True or False?

A

True

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
50
Q

NAT ACL works at?

A

Subnet level. Its stateless

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
51
Q

Security Group works at?

A

Instance(VPC) level

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
52
Q

NAT Gateway/Instances

A

Allow private subnet instaces to connect to internet or other AWS Services and restrict inbout internet traffic into subnet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
53
Q

Services that have reservations to optimize cost

A

EC2, DocumentDB, RDS, ElastiCache reserved nodes and RedShift

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
54
Q

PaaS example

A

EBS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
55
Q

IaaS example

A

EC2

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
56
Q

SaaS

A

AWS Rekognition

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
57
Q

AWS EMR

A

Bigdata

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
58
Q

AWS Elastic Bean Stock

A

Deploying and scaling web applications and services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
59
Q

High-performance hardware disks that provide fast I/O performance

A

Instance Store

60
Q

Object storage service

A

AWS S3

61
Q

High-performance block storage service

A

Elastic Block Storage

62
Q

Elastic NFS file system

A

EFS

63
Q

Amazon Standard S3 IA vs Intelligent Tiering

A

Similar except IT is more expensive

64
Q

OS vulnerabilities

A

AWS Inspector

65
Q

PII

A

AWS Macie

66
Q

Threat Detection

A

AWS GuardDuty

67
Q

DDoS

A

AWS Shield

68
Q

Architectural guidance contextual to your specific use-cases. Which support?

A

Business

69
Q

Architectural guidance contextual to your application. Which support?

A

Enterprise

70
Q

Architectural guidance contextual to your application (one per year). Which support?

A

Enterprise on-Ramp up

71
Q

General architectural guidance as you build and test. Which support?

A

Developer

72
Q

Amazon API Gateway

A

For developers to create, publish, maintain, monitor, and secure APIs at any scale

73
Q

AWS Shield Advanced on which services?

A

EC2, ELB, CloudFront, Route53, Global Accelerator

74
Q

Amazon OpenSearch Service

A

interactive log analytics, real-time application monitoring, website search.
Derived from Elasticsearch

75
Q

Amazon S3 vs EFS

A

S3 does not support file append like EFS

76
Q

AWS Compute Optimzer for which AWS services

A

EC2, ASGs, EBS and Lambda Functions

77
Q

AWS Neptune

A

Build and run graph applications

78
Q

6 Pillars

A

Operational Excellence - Focuses on running and monitoring systems, and continually improving processes and procedures
- Ops as Code, Anticipate and Learn from failure, Use managed services

Performance Efficiency - Focuses on structured and streamlined allocation of IT and computing resources
-Go global in mins, use adv technologies, serverless

Reliability - Focuses on workloads performing their intended functions and how to recover quickly from failure to meet demands
-Stop guessing capacity, Recovery from failure, scale out, manage change through automation

Cost Optimization - Focuses on avoiding unnecessary costs

Security - Focuses on protecting information and systems

Sustainability - Focuses on minimizing the environmental impacts of running cloud workloads

79
Q

AWS Region is differnt from location - True or False?

A

False

80
Q

AWS AZs vs Local Zones

A

AZs are isolated locations within a region will all AWS services
Local Zones are an extension of a region, providing low-latency services to specific geographic areas, enhancing availability beyond traditional regions. They provide more services than edge locations but less than a region or AZ

81
Q

For connecting On premise DC to VPC on AWS, what are the options?

A
  1. AWS Direct connect
  2. Transit Gateway
  3. Site-to-Site VPN
82
Q

AWS Private Link vs VPC Peering

A

AWS private link allows connecting to AWS services or services in other VPCs privately like a local netowork bypassing the public Internet. If a VPC Endpoint is added to the your VPC then using private link the other VPCs can also use the services of your VPC. Common use cases are Accessing AWS Services, Third-Party Integrations, Multi-account Connectivity

VPC Peering enables connectivity between two VPCs within the same AWS region or across different regions. It allows instances in one VPC to communicate directly with instances in another VPC using private IP addresses. Common use cases Multi-tier Applications, shared services such as logging, monitoring, or security, Disaster Recovery

83
Q

Support Plans

A

Developer Business Enterprise-on-ramp Enterprise
<12 hrs < 1hr <30 mins <15 mins

    • TAMs 1 TAM

Business 24/7 24/7 24/7
hours email
access
- AWS Sup API AWS Sup API AWS Sup API
Incident detection for
additional fee

	                                   AWS Managed Srvs   AWS Managed Srvs 
                                               for additional fee	for additional fee

	                                   re:Post:Private            re:Post:Private 
                                               for additional fee        for additional fee
                                               
                                              Access to                       Access to architectural
                                              architectural                  reviews
                                               reviews
84
Q

MFA devices

A
  1. U2F security key - Plug into a USB port on your computer. Authenticated by tapping the device instead of manually entering a code
  2. Virtual Multi-Factor Authentication (AWS MFA) device - Software app that runs on a phone or other device and emulates a physical device. Authenticated by typing a valid code from the device
  3. Hardware Multi-Factor Authentication (AWS MFA) device - Hardware device that generates a six-digit numeric code. Authenticated by typing a valid code from the device
  4. SMS text message-based Multi-Factor Authentication (AWS MFA) - IAM user settings include the phone number of the user’s SMS-compatible mobile device. Authenticated by OTP
85
Q

Disaster Recovery Plans

A

Automated backups - Same region (Recovery Time Objective is lowest)
Manual snapshots - Cross region (Recovery Point Objective is lowest)
Read replicas - Cross region

86
Q

Amazon EC2 instance user data and metadata

A

Bootstrap script or configuration parameters while launching your instance
Metadata is data about your instance that you can use to manage the instance

87
Q

AWS Global Accelarators connect to what?

A

Network Load Balances(non HTTP traffic), Application Load Balances and EC2

88
Q

S3 pricing

A

There are four cost components to consider for S3 pricing –
storage pricing;
request and data retrieval pricing;
data transfer and transfer acceleration pricing;
and data management features pricing.

Under “Data Transfer”, You pay for all bandwidth into and out of Amazon S3, except for the following:
(1) Data transferred in from the internet,
(2) Data transferred out to an Amazon Elastic Compute Cloud (Amazon EC2) instance, when the instance is in the same AWS Region as the S3 bucket,
(3) Data transferred out to Amazon CloudFront (CloudFront).

89
Q

AWS Web Application Firewall (AWS WAF) lets you monitor the HTTP and HTTPS requests that are forwarded to….

A
  1. Application Load Balancer
  2. Amazon CloudFront
  3. Amazon API Gateway
90
Q

Billing alarms

A

CloudWatch

91
Q

AWS Shield Advanced provides protection for the following AWS Services

A
  1. EC2,
  2. Elastic Load Balances,
  3. Amazon CloudFront,
  4. Amazon Route 53,
  5. AWS Global Accelerator
92
Q

Which of the following is available across all AWS Support plans

A

AWS Health Dashboard – Your account health

93
Q

Which of the following AWS services offers Lifecycle configuration for cost-optimal storage

A

S3

94
Q

GeoLocation Vs Geoproximity routing policy Vs Latency?

A

GeoLocation - Proximity to user’s location
GeoProximity - Proximity to resource’s location
Latency - Proximity to region

95
Q

TCO Vs Pricing Calculator

A

TCO Calculator: Estimates the total cost of moving resources from on-premises to Cloud, considering various factors like infrastructure, maintenance, and migration costs

Pricing Calculator: A tool for calculating the costs of running specific workloads on Azure or AWS, providing detailed estimates based on resource configurations

TCO Calculator: Focuses on the broader picture, encompassing overall expenses related to migration and ongoing operations.

Pricing Calculator: Provides granular insights into the costs associated with specific resources, facilitating budgeting and cost optimization

96
Q

Which one allows to bid for unused instanced by other users?

A

SPOT

97
Q

Key components of S3 Glacier

A
  1. Access Policy
  2. Archive
  3. Vault
98
Q

Predictable monthly cost - EC2 or LightSail?

A

LisghtSail

99
Q

Minimum AZs per region

A

3

100
Q

Routing algorithm for ALB

A

ALB selects target based on the routing rule then selects node using round robin strategy
The classic ALB using round robin for TCP listners only

101
Q

Bucket Policies and ACLs wrt to S3

A

Bucket Policies control access to entire bucket and ACLs to individual object within the bucket

102
Q

URL structure of S3

A

https.<bucket>.<S3>/<object></object></S3></bucket>

103
Q

iAM user access options

A

Programmatic access using command line
SDK access
Management concole access

104
Q

Amazon Glacier components

A

Archive, Vault(Groups of archives) and Access Policies(to control access to objects within archive and vaults)

105
Q

Identity Federation

A

Users can access AWS services using their Facebook, Google, Instagram or Active Directory credentials

  1. Federation with IAM Identity Center
  2. Federation with IAM
  3. Federation with Amazon Cognito identity pools
106
Q

Database migration services

A

Can migrate to and from AWS and on-premise
Can migrate fro EC2 to RDS
Can migrate to Redshift and DynamoDB

107
Q

VPC Peering some facts

A

It can happen across regions and between different AWS accounts
It also used to store data for fault tolerance, DR and redundnacy
Traffic between different regions is encrypted by default but not encrypted by defualt within same region

108
Q

Encryption at Rest

A

By Customer, By S3, By KMS
Monitoring capability is with KMS only after intergrating with CloudTrail

109
Q

TCO

A

Recommendations on resource types based on operational best practices best practices and user inputs

110
Q

Macie facts

A

Discover, classify and protect
1. It reads through user data and identify sensitive info using AI, ML and NLU
2. It can’t prevent the unauthroized access to the information but can alert the admin using CloudTraril
3. Its not a fully managed service but needs to be configured

111
Q

DataSync

A

Transfer from on-premise to AWS storage services
Between AWS storage services
Between public clouds to AWS storage services
Its for continuous synching vs DMS which is for Database migration only

112
Q

OS Patch management, whoes responsibility?

A

EC2 - Customer
DynamoDB - AWS

113
Q

Athena some facts

A

Serverless query service

Interactive query service that makes it easy to analyze unstructured, semi-structured, and structured data stored in Amazon S3 directly in Amazon Simple Storage Service (Amazon S3) using standard SQL

Compatible with CSV, JSON, AVRO or columnar data formats such as Apache Parquet and Apache ORC,

114
Q

DynamoDB Backups, who configures and who takes backup?

A

Customer configures and AWS takes backups

115
Q

AppSync

A

Simplify application development with GraphQL APIs by providing a single endpoint to securely query or update data from multiple databases, microservices, and APIs

Consolidate data from multiple databases, APIs, and microservices in a single network call, from a single endpoint, abstracting backend complexity

116
Q

Amplify

A

Facilitate the development and deployment of web and mobile applications. Quickly build full-stack applications

117
Q

Security Hub

A

AWS Security Hub provides you with a comprehensive view of your security state in AWS and helps you assess your AWS environment against security industry standards and best practices

118
Q

AWS Firewall Manager

A

Simplifies your administration and maintenance tasks across multiple accounts and resources for a variety of protections, including AWS WAF, AWS Shield Advanced, Amazon VPC security groups, AWS Network Firewall, and Amazon Route 53 Resolver DNS Firewall. It does not work with Network ACLs

Security Hub collects security data across AWS accounts, AWS services, and supported third-party products and helps you analyze your security trends and identify the highest priority security issues

119
Q

SCPs

A

Service control policies (SCPs) are a type of organization policy that you can use to manage permissions in your organization.

Not enabled by default

SCPs offer central control over the maximum available permissions for all accounts in your organization. SCPs help you to ensure your accounts stay within your organization’s access control guidelines

SCPs alone are not sufficient in granting permissions to the accounts in your organization. No permissions are granted by an SCP. An SCP defines a guardrail, or sets limits, on the actions that the account’s administrator can delegate to the IAM users and roles in the affected accounts.
The administrator must still attach identity-based or resource-based policies to IAM users or roles, or to the resources in your accounts to actually grant permissions.
The effective permissions are the logical intersection between what is allowed by the SCP and what is allowed by the IAM and resource-based policies

120
Q

If an instance store reboots, does the data in the instance persist?

A

Yes

121
Q

Which tool lets you visualise and manage your AWS costs?

A

AWS Cost Explorer

122
Q

Containers are an essential concept in microservice architectures.

A

True

123
Q

Which AWS service reduces network latency?

A

CloudFront

124
Q

Which Amazon S3 storage class has the lowest cost?

A

S3 Glacier Deep Archive

125
Q

What are Edge Locations?

A

Data centers that deliver data fast to the users

126
Q

Which perspective of the AWS Cloud Adoption Framework focuses on minimizing the business risks?

A

Governance Perspective

127
Q

Which AWS service helps you build text chatbots?

A

Amazon Lex

128
Q

AWS Elastic Block Store Snapshot is:

A

Incremental data backup

129
Q

What is Service Quotas in AWS?

A

Quotas, also referred to as limits in AWS services, are the maximum values for the resources, actions, and items in your AWS account

130
Q

Scope of VPC

A

A VPC can span all Availability Zones within an AWS Region

131
Q

AWS Resource Explorer

A

Facilitates resource search and discovery within AWS accounts

132
Q

AWS Knowledge Center

A

Available through AWS re:Post, offers official articles and videos addressing common questions and requests from AWS customers

133
Q

AWS CloudShell

A

Browser-based shell provided by Amazon Web Services (AWS) that allows users to run scripts with the AWS Command Line Interface (CLI) and experiment with service APIs

133
Q

Individual Amazon S3 objects range?

A

0 to 5TB

134
Q

Route table components

A

Destination (IP address CIDR range) = The destination IPs to which the instances in the VPC is sending traffic to. It value is 0.0.0.0/0 for IPv4 and ::/0 for IPv6

Target (local or gateway ID or network instance) = The gateway/NAT through which the traffic should pass for the list of IPs

135
Q

AWS Tape Gateway

A

You can use it to directly connect to your tape drive on premise and using AWS Storage Gateway backup the data on Amazon S3 Tape Library w/o any code changes

136
Q

Securing EC2

A
  1. SSH (IP is public and key stored on accessing machine)
  2. EC2 in private subnet, which talks to bastion host on public subnet which inturn talks to user over internet (key stored on accessing machine)
  3. Add MFA on access
  4. SSM (No need of bastion host. EC2 in private subnet with access to internet using NAT or VPC endpoint)
137
Q

Encryption of Data at Rest by default

A

S3
ECR

138
Q

Migration strategies

A

Rehosting — Otherwise known as “lift-and-shift”
Replatforming — I sometimes call this “lift-tinker-and-shift”
Repurchasing — Moving to a different product
Refactoring / Re-architecting 
Retire — Get rid of
Retain — Usually this means “revisit” or do nothing (for now)

139
Q

Amazon WorkLink

A

Fully managed service introduced by AWS that facilitates secure, one-click access to internal corporate websites for employees

Secure access from iOS and Android phones to internal websites and web apps, simplifying the user experience with a single-step process

Generates webpage content in the AWS cloud and transfers it to the user’s phone

140
Q

AWS Service Catalog

A

Create and manage catalogs of IT services and Self-service discovery and launch

Users browse listings of products (services or applications) that they have access to, locate the product that they want to use, and launch it all on their own as a provisioned product

Deployment of multi-tier application architectures

141
Q

AWS CloudShell

A

AWS CloudShell is a browser-based shell that allows users to run scripts with the AWS Command Line Interface (CLI) and experiment with service APIs

142
Q

AWS Application Composer

A

Visual designer that you can use to build your serverless applications from multiple AWS services

143
Q

Amazon Timestream

A

Time Stream DB for IoT

144
Q

Amazon S3 Object Lock

A

Prevent the deletion or overwriting of objects in Amazon S3 for a specified duration or indefinitely