aws Flashcards

(385 cards)

1
Q

AWS Support API

A

Business & Enterprise

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Which of the following can you use to resolve the connection between your on-premises VPN and your AWS virtual private cloud?

A

VPG, Route 53

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Backup

A

Manage backup across services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Which of the following is typically used to secure your VPC subnets?

A

Network ACL

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Serverless compute for containers

A

Fargate

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

For audit data, used infrequently, doesn’t need fast access.

A

S3 Glacier

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the best way to keep track of all activities made in your AWS account?

A

Create a multi-region trail in AWS CloudTrail

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Managed Blockchain

A

DB service. Create and manage scalable blockchain networks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Which service lets you create rules to filter web traffic based on conditions that include IP addresses, HTTP headers, or custom URIs?

A

AWS WAF

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

2 CPUs, 4GB Memory, 8TB storage

A

Snowcone

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Business Support Plan

A

Developer + full Trusted Advisor, 4-hour SLA for impaired, 1-hour SLA for down. Use-case guidance, limited support for 3rd-party software

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

CodeArtifact

A

artifact management for development

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

App Mesh

A

monitor and control microservices

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

SageMaker

A

Machine learning

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Which of the following services will be able to reroute traffic to your secondary EC2 instances in another region during disaster recovery?

A

Amazon Route 53

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Basic + 24-hour SLA, 12-hour SLA if systems impaired, diagnostic tools

A

Developer Support Plan

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

NoSQL database, serverless

A

DynamoDB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

ElastiCache

A

cache over DBs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

certain permissions, used for a temporary amount of time

A

Role

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

Deliver business value, constantly improving

A

Operational Excellence

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

details of resources in your account, relationships, configs

A

Config

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

S3 Infrequent Access One Zone

A

Only stored in one availabilty zone

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

Which of the following should you set up in order to connect your AWS VPC network to your local network via an IPsec tunnel?

A

A VPN gateway in your VPC connected to the Customer Gateway in your on-premises network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

Web-based interface for accessing and managing AWS services. Includes wizards and automated workflows. Has a mobile app. Good for initial set-up, but manual, so human error can be a problem.

A

Management Console

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Storage-optimized (80TB) or compute-optimized (42TB)
Snowball
26
Lift & shift - don't change anything, just move to AWS
Rehost
27
Managed Relational Database Service for MySQL, PostgreSQL, Oracle, SQL Server, and MariaDB
RDS
28
Cloud9
Write, Run, and Debug Code on a Cloud IDE
29
Network Firewall
stateful, managed, network firewall
30
Redshift
Data Warehousing
31
Which of the following services are part of the AWS serverless platform that does not require provisioning, maintaining, and administering servers for backend components?
Lambda@Edge, Amazon API Gateway
32
Contact Center
Connect
33
Change management, right people right roles, training
People Perspective
34
Analyze and debug your applications
X-Ray
35
Aurora
serverless MySQL DB, Relational database, six copies, three availability zones. Continuous backup to S3.
36
every API request is tracked, records all the details, for RCA
CloudTrail
37
CodeBuild
Build and Test Code
38
X-Ray
Analyze and debug your applications
39
Marketplace
Curated catalog of 3rd-party software
40
Commit to consistent usage for 1- or 3- year term. Up to your commitment at discounted prices, beyond that at on-demand pricing. Can be used for serverless as well. Measured in dollars per hour.
savings plan
41
Data Warehousing
Redshift
42
Which among the options below can you use to launch a new Amazon RDS database cluster to your VPC?
AWS Management Console, AWS CloudFormation
43
Data Pipeline
automate movement and transformation of data
44
Platform Perspective
Patterns, principles for architecture, migration
45
Simple Storage Service - scalable, access to multiple instances, but can be accessed by other cloud services, large volumes of static content, and complex queries, flat storage, analytics, archiving
S3
46
DynamoDB
NoSQL database, serverless
47
connects an on-premises software appliance with cloud-based storage
Storage Gateway
48
Enterprise Support Plan
Business + 15-minute SLA, dedicated Technical Account Manager
49
Migration Hub
Find best migration tool and monitor migrations
50
1. AWS Management Console 2. AWS Command Line Interface 3. Software Development Kits 4. AWS Elastic Beanstalk 5. AWS CloudFormation
tools/services to provision resources
51
Build, Deploy, and Manage APIs
API Gateway
52
A customer is building a cloud architecture in AWS which should scale horizontally or vertically in order to automatically adjust capacity and maintain steady, predictable performance at the lowest possible cost. Which of the following statements are true regarding horizontal and vertical scaling?
Adding more EC2 instances to your resource pool is an example of Horizontal Scaling, Upgrading to a higher EC2 instance type is an example of Vertical Scaling
53
Basic set-up with basic tools to get started on AWS
Lightsail
54
Which of the following is a threat detection service that continuously monitors for malicious activity and unauthorized behavior to protect your AWS accounts and workloads?
Amazon GuardDuty
55
Define business operations to meet business goals
Operations Perspective
56
Snow Family
Migration services when you have slow/no connection - physical devices to transform and/or compute, can transfer your data then send to Amazon for uploading
57
CloudHSM
Hardware-based Key Storage for Regulatory Compliance
58
Which of the following are the things that Amazon CloudWatch Logs can accomplish
Monitor application logs from Amazon EC2 Instances, Adjust the retention policy for each log group
59
In which of the following occasions should you use the Amazon SQS in your application system? (Select TWO.)
If you need to decouple certain parts of your system for better fault tolerance If you require a durable storage for your application events or messages
60
Use IT & computing resources efficiently
Performance Efficiency
61
Among the following services, which is the most suitable one to use to store the results of I/O-intensive SQL database queries to improve application performance?
Amazon ElastiCache
62
Which service in AWS protects your resources from common DDoS attacks in a proactive manner?
AWS Shield
63
Database Migration Service - can migrate relational or non-relational, can convert type, consolidate
DMS
64
Firewall Manager
Central Management of Firewall Rules
65
Build and Test Code
CodeBuild
66
securely share your resources across AWS accounts and within your organization or organizational units (OUs) in AWS Organizations
Resource Access Manager (RAM)
67
Which of the following are regarded as regional services in AWS
EFS, Batch
68
Inspector
security vulnerability assessment - vulnerabilities or deviations from best practices - security findings prioritized by level of severity
69
Model cloud infrastructure using code
Cloud Development Kit (CDK)
70
In front of your VPC to allow public traffic in
Internet Gateway (IGW)
71
Business Analytics
QuickSight
72
Free-tier
some stuff always free (usually with usage limits), 12-months free, and free-trials
73
Lift, tinker, & shift - make a few optimizations when you rehost
Replatform
74
Dedicated fiber connection from your data center to AWS - for lower latency on VPC.
Direct Connect
75
You are permitted to conduct security assessments and penetration testing without prior approval against which AWS resources?
Amazon RDS, Amazon Aurora
76
Storage that comes with an EC2 instance - attached to the instance, when the instance is stopped, the storage goes away. Fine for temporary files.
Instance Store Volume
77
Elastic File Service - can be mounted to multiple instances, scalable, like a hard drive in a file structure
EFS
78
Inspects services, recommendations for best practices: cost, performance, security, fault tolerance, service limits
Trusted Advisor
79
Data Exchange
third-party data
80
Find best migration tool and monitor migrations
Migration Hub
81
Shield
DDoS Protection
82
Cheaper and slower than Glacier
S3 Glacier Deep Archive
83
Automate Code Deployment
CodeDeploy
84
Migrate On-Premises Servers to AWS
Server Migration Service
85
Accelerated Computing instance
hardware accelerators, graphics processing, data pattern matching
86
Repurchase
Go with a new vendor
87
SDK provides customers with the ability to migrate timing-critical uncompressed video workflows to the cloud
The Cloud Digital Interface (CDI)
88
RDS
Managed Relational Database Service for MySQL, PostgreSQL, Oracle, SQL Server, and MariaDB
89
Glue
Serverless - data engineers, data scientists
90
Cost insights
Application Cost Profiler
91
Release Software using Continuous Delivery
CodePipeline
92
What is the minimum support plan that will provide you access to all Trusted Advisor Checks?
Business
93
Steady-state workloads or predictable usage. 1- or 3- year term.
Reserved instance pricing
94
6 Benefits of Cloud computing
1. Trade upfront expense for variable expense 2. Stop spending $ to run data centers 3. Stop guessing capacity 4. Economies of scale 5. Increase speed and agility 6. Go global in minutes
95
Transit Gateway
Easily scale VPC and account connections
96
Operations Perspective
Define business operations to meet business goals
97
Create and Manage Resources with Templates. Provision instances and build environments with code, no manual actions.
CloudFormation
98
QuickSight
Business Analytics
99
DDoS Protection
Shield
100
Automated lift-and-shift migration, simplifies and expedites migration to AWS.
Application Migration Service
101
Audit Manager
audit your services & security against industry standards, regulations
102
Snowcone
2 CPUs, 4GB Memory, 8TB storage
103
Which of the following best describes what CloudWatch can be used for
A repository for metrics and logs
104
Security Perspective
Meet security objectives
105
Management Console
Web-based interface for accessing and managing AWS services. Includes wizards and automated workflows. Has a mobile app. Good for initial set-up, but manual, so human error can be a problem.
106
1. Rehost 2. Replatform 3. Retire 4. Retain 5. Repurchase 6. Refactor
Migration Strategies 6 Rs
107
Neptune
Fully Managed Graph DB service
108
Global Accelerator
Improve application availability and performance
109
Direct Connect
Dedicated fiber connection from your data center to AWS - for lower latency on VPC.
110
Server Migration Service
Migrate On-Premises Servers to AWS
111
CloudFront
CDN to edge locations
112
Subnet
One chunk of IP addresses. Like things are grouped. Subnets can be public or private.
113
Fast performance for processing large datasets in memory
Memory Optimized instance
114
Application Cost Profiler
Cost insights
115
What is the best type of instance purchasing option to choose if you will run an EC2 instance for 3 months to perform a job that is uninterruptible?
On-Demand
116
Instance Store Volume
Storage that comes with an EC2 instance - attached to the instance, when the instance is stopped, the storage goes away. Fine for temporary files.
117
web application firewall - block or allow requests based on conditions that you specify
WAF
118
Serverless Application Repository
Discover, Deploy, and Publish Serverless Applications
119
Elastic Container Service - Manage Docker containers
ECS
120
Fargate
Serverless compute for containers
121
Resource Access Manager (RAM)
securely share your resources across AWS accounts and within your organization or organizational units (OUs) in AWS Organizations
122
Lambda
serverless computing
123
45-ft shipping container delivered by semi, 100 petabytes
Snowmobile
124
monitor and control microservices
App Mesh
125
Security group
Security on an instance - every instance has one. By default, nothing allowed in until you add rules. Stateful. Whitelist.
126
ensure IT aligns with business
Business Perspective
127
Fault Injection Simulator
Fully managed fault injection service
128
OpsWorks
Automate Operations with Chef and Puppet
129
DB service. Create and manage scalable blockchain networks
Managed Blockchain
130
Which of the following statements is true for AWS CloudTrail?
When you create a trail in the AWS Management Console, the trail applies to all AWS Regions by default
131
Build conversational interfaces with voice and text
Lex
132
Business + 15-minute SLA, dedicated Technical Account Manager
Enterprise Support Plan
133
Which of the following is the most cost-effective service to use if you want to coordinate multiple AWS services into serverless workflows?
A VPN gateway in your VPC connected to the Customer Gateway in your on-premises network
134
hardware accelerators, graphics processing, data pattern matching
Accelerated Computing instance
135
audit your services & security against industry standards, regulations
Audit Manager
136
Securely Access Services Hosted on AWS
PrivateLink
137
savings plan
Commit to consistent usage for 1- or 3- year term. Up to your commitment at discounted prices, beyond that at on-demand pricing. Can be used for serverless as well. Measured in dollars per hour.
138
DataSync
Simple, fast, online data transfer
139
VPC
Isolated Cloud Resources
140
Control Tower
manage governance rules across accounts
141
recommend optimal Compute resources
Compute Optimizer
142
Discover, Deploy, and Publish Serverless Applications
Serverless Application Repository
143
Identity and Access Management (IAM)
control user access to AWS services, JSON, don't use root user
144
A new AWS customer needs to deploy up to 100 t3a.large EC2 instances on their recently launched VPC, which is way beyond the default service limit. What should they do before launching their instances?
Create a case in the AWS Support Center page and request a service limit increase.
145
S3 Infrequent Access (S3 IA)
Accessed less frequently, but needs rapid access when it is used. Stored in at least 3 availability zones. Lower storage price, higher retrieval price
146
Security on an instance - every instance has one. By default, nothing allowed in until you add rules. Stateful. Whitelist.
Security group
147
for data with unknown access patterns - analyzes and moves to the class matching use
S3 Intelligent-tiering
148
What service acts as a firewall for your EC2 instances?
Security Group
149
four factors to consider in selecting a Region
1. Compliance with data governance (company or government) 2. Proximity to customers 3. Availability of features 4. Pricing
150
cache over DBs
ElastiCache
151
Which of the following allows you to create and deploy infrastructure-as-code templates in AWS?
CloudFormation
152
What is the lowest support plan that allows an unlimited number of technical support cases to be opened?
Developer
153
Launch Wizard
third party applications
154
A company needs to troubleshoot an issue on their serverless application which is composed of an API Gateway, Lambda function, and a DynamoDB database. Which service should they use to trace user requests as they travel through their entire application?
AWS X-Ray
155
Well-Architected Framework 5 pillars
1. Operational Excellence 2. Security 3. Reliability 4. Performance Efficiency 5. Cost Optimization
156
Cloud Development Kit (CDK)
Model cloud infrastructure using code
157
Unified security and compliance center
Security Hub
158
Meet security objectives
Security Perspective
159
Business Perspective
ensure IT aligns with business
160
stateful, managed, network firewall
Network Firewall
161
Organizations
consolidate multiple AWS accounts into an organization
162
Host and Manage Active Directory
Directory Service
163
Find your most expensive lines of code
CodeGuru
164
automate movement and transformation of data
Data Pipeline
165
Rehost
Lift & shift - don't change anything, just move to AWS
166
Agility is one of the benefits of using cloud computing that provides customer with what advantage?
Focus your valuable IT resources on developing applications that differentiate your business rather than managing infrastructure and data centers.
167
Know this structure of AWS Security
168
Which of the following are defined as global services in AWS?
AWS Identity and Access Management, Amazon CloudFront
169
If you have multiple instances in one subnet with different security rules
Instance-level Security
170
What is the primary reason why you should be using an elastic load balancer?
ELBs provide elasticity by directing traffic to a minimum number of instances required to handle the traffic load
171
ACL
Access control list - controls traffic in and out of a subnet. Stateless, By default, Blacklist.
172
1. Compliance with data governance (company or government) 2. Proximity to customers 3. Availability of features 4. Pricing
four factors to consider in selecting a Region
173
Config
details of resources in your account, relationships, configs
174
The Cloud Development Kit (CDK)
software development framework for defining your cloud infrastructure in code and provisioning it through AWS CloudFormation.
175
Security Hub
Unified security and compliance center
176
Trusted Advisor
Inspects services, recommendations for best practices: cost, performance, security, fault tolerance, service limits
177
Write, Run, and Debug Code on a Cloud IDE
Cloud9
178
Virtual Private Gateway (VPG)
In front of your VPC to allow private traffic in - like a VPN
179
Which of the following policies grant the necessary permissions required to access your Amazon S3 resources?
Bucket policies, User policies
180
deploy application configurations
AppConfig
181
create directories for a variety of use cases, such as organizational charts, course catalogs, and device registries
Cloud Directory
182
get compliance and security docs for audits
Artifact
183
Retain
Stuff that will be deprecated isn’t worth the cost to move
184
Cost Explorer
analyze your costs, slice-n-dice historical costs
185
Machine learning
SageMaker
186
Outpost
Your own mini-Region in your own building. Owned and operated by Amazon.
187
ECS
Elastic Container Service - Manage Docker containers
188
Serverless
you don't have to manage servers
189
Elastic Block Store -block storage - attached to an instance, when you need high-performance storage attached on a single instance
EBS
190
serverless MySQL DB, Relational database, six copies, three availability zones. Continuous backup to S3.
Aurora
191
point of contact for everything, helps you use services in best way
Technical Account Manager
192
to organize, monitor, and automate management tasks on your AWS resources.
Systems Manager
193
PrivateLink
Securely Access Services Hosted on AWS
194
Which service does AWS use to notify you when AWS is experiencing events that may impact you?
AWS Personal Health Dashboard
195
Improve application availability and performance
Global Accelerator
196
open-source framework to build serverless applications - template and a command line interface
The Serverless Application Model (SAM)
197
Some stuff just isn’t needed
Retire
198
Elastic Beanstalk
You upload code and configs, AWS provisions, load balances, scales, monitors
199
Which of the following AWS well-architected pillars discusses the use of the right computing resources to meet demand levels even as the demand changes and technologies evolve?
Performance Efficiency
200
CodeStar
Develop and Deploy Applications
201
control user access to AWS services, JSON, don't use root user
Identity and Access Management (IAM)
202
Serverless - data engineers, data scientists
Glue
203
Sharing a host with other instances
virtual machines
204
DMS
Database Migration Service - can migrate relational or non-relational, can convert type, consolidate
205
Pricing concepts
pay for what you use, pay less when you reserve, pay less with volume discounts
206
In Amazon EC2, which pricing construct adjusts its price based on supply and demand of EC2 instances?
Spot Instance
207
CloudWatch
Monitor resources and applications, track metrics, set alarms, dashboard of all metrics
208
Refactor
Recode on new platform, new architecture, new features (AKA re-architecting)
209
How can you easily and securely copy your infrastructure to another AWS Region?
Create a CloudFormation template and deploy it in the new region
210
Application Discovery Service
plan application migration projects by automatically identifying applications running in on-premises data centers, their associated dependencies
211
Cognito
user accounts for web and mobile apps
212
Which of the following cloud best practices reinforces the use of the Service-Oriented Architecture (SOA) design principle?
Decouple your components.
213
tools/services to provision resources
1. AWS Management Console 2. AWS Command Line Interface 3. Software Development Kits 4. AWS Elastic Beanstalk 5. AWS CloudFormation
214
There is a requirement to launch a new database in AWS where the customer assumes the responsibility and management of the guest operating system, including updates and security patches. Which of the following services should the customer use?
Amazon EC2
215
Transfer Family
Fully managed SFTP, FTPS, and FTP service
216
In front of your VPC to allow private traffic in - like a VPN
Virtual Private Gateway (VPG)
217
Basic Support Plan
everyone gets, no cost, long SLAs, limited Trusted Advisor, free documentation
218
pay for what you use, pay less when you reserve, pay less with volume discounts
Pricing concepts
219
Instance-level Security
If you have multiple instances in one subnet with different security rules
220
plan application migration projects by automatically identifying applications running in on-premises data centers, their associated dependencies
Application Discovery Service
221
Athena
Query Data in S3 using SQL
222
Easily scale VPC and account connections
Transit Gateway
223
API Gateway
Build, Deploy, and Manage APIs
224
Users from different parts of the globe are complaining about the slow performance of the newly launched photo-sharing website in loading their high-resolution images. Which combination of AWS services should you use to serve the files with lowest possible latency?
Amazon S3, Amazon CloudFront
225
One chunk of IP addresses. Like things are grouped. Subnets can be public or private.
Subnet
226
to review your workloads against current Amazon Web Services architectural best practices. The AWS Well-Architected Tool measures the workload and provides recommendations on how to improve your architecture.
Well-Architected Tool
227
Snowmobile
45-ft shipping container delivered by semi, 100 petabytes
228
Curated catalog of 3rd-party software
Marketplace
229
WAF
Filter Malicious Web Traffic
230
The Serverless Application Model (SAM)
open-source framework to build serverless applications - template and a command line interface
231
EBS
Elastic Block Store -block storage - attached to an instance, when you need high-performance storage attached on a single instance
232
Which of the following should you use if you need to provide temporary AWS credentials for users who have been authenticated via their social media logins as well as for guest users who do not require any authentication?
Amazon Cognito Identity Pool
233
Device Farm
Test Android, iOS, and web apps on real devices in the cloud
234
Governance Perspective
Minimize risk, manage & measure for business outcomes
235
CodePipeline
Release Software using Continuous Delivery
236
S3
Simple Storage Service - scalable, access to multiple instances, but can be accessed by other cloud services, large volumes of static content, and complex queries, flat storage, analytics, archiving
237
Create cost estimates different use cases
Pricing Calculator
238
People Perspective
Change management, right people right roles, training
239
Well-Architected Tool
to review your workloads against current Amazon Web Services architectural best practices. The AWS Well-Architected Tool measures the workload and provides recommendations on how to improve your architecture.
240
DocumentDB
MongoDB-compatible databases
241
Automate Operations with Chef and Puppet
OpsWorks
242
WAF
web application firewall - block or allow requests based on conditions that you specify
243
Disaster Recovery
CloudEndure
244
you don't have to manage servers
Serverless
245
Which of the following is an advantage of using managed services like RDS, ElastiCache, and CloudSearch in AWS?
Simplifies all of your OS patching and backup activities to help keep your resources current and secure
246
Minimize risk, manage & measure for business outcomes
Governance Perspective
247
Developer + full Trusted Advisor, 4-hour SLA for impaired, 1-hour SLA for down. Use-case guidance, limited support for 3rd-party software
Business Support Plan
248
Accessed less frequently, but needs rapid access when it is used. Stored in at least 3 availability zones. Lower storage price, higher retrieval price
S3 Infrequent Access (S3 IA)
249
hich of the following services allows you to store Docker images and orchestrate Docker containers in a simple and cost-effective manner? (Select TWO.)
Amazon ECR, Amazon ECS
250
Which of the following is a data transport solution that accelerates moving terabytes to petabytes of data into and out of AWS using appliances with on-board storage and compute capabilities?
AWS Snowball Edge
251
S3 Glacier Deep Archive
Cheaper and slower than Glacier
252
Cloud Adoption Framework 6 Perspectives
1. Business 2. People 3. Governance 4. Platform 5. Security 6. Operations
253
What is the best way to keep track of all activities made in your AWS account?
Create a multi-region trail in AWS CloudTrail
254
CloudFormation
Create and Manage Resources with Templates. Provision instances and build environments with code, no manual actions.
255
You upload code and configs, AWS provisions, load balances, scales, monitors
Elastic Beanstalk
256
Why have Regions?
Geographically isolated, greatest possible fault tolerance
257
serverless computing
Lambda
258
Role
certain permissions, used for a temporary amount of time
259
Compute Optimized instance
compute-bound applications that need high-performance processors
260
Virtual Private Network (VPN)
establishes a secure and private tunnel from your network or device to the AWS Cloud
261
manage governance rules across accounts
Control Tower
262
Your own mini-Region in your own building. Owned and operated by Amazon.
Outpost
263
In the AWS Shared Responsibility Model, whose responsibility is it to patch the host operating system of an Amazon EC2 instance?
AWS
264
GuardDuty
Managed Threat Detection Service
265
Managed Threat Detection Service
GuardDuty
266
Developer Support Plan
Basic + 24-hour SLA, 12-hour SLA if systems impaired, diagnostic tools
267
1. General Purpose 2. Compute Optimized 3. Memory Optimized 4. Accelerated Computing 5. Storage Optimized
instance types
268
CloudSearch
Managed Search Service
269
Balance of compute, memory, and networking
General Purpose instance
270
Recovery planning, handle change to meet business & customer demand
Reliability
271
Central Management of Firewall Rules
Firewall Manager
272
Lex
Build conversational interfaces with voice and text
273
Artifact
get compliance and security docs for audits
274
Which type of Elastic Load Balancer supports path-based routing, host-based routing, and bi-directional communication channels using WebSockets?
Application Load Balancer
275
S3 Glacier
For audit data, used infrequently, doesn't need fast access.
276
virtual machines
Sharing a host with other instances
277
Reliability
Recovery planning, handle change to meet business & customer demand
278
Which of the following is true about the enhanced technical support response times of the Enterprise support plan in AWS?
Provides a 15-minute response time support if your business-critical system goes down, Provides a 1-hour response time support if your production system goes down
279
Lightsail
Basic set-up with basic tools to get started on AWS
280
third party applications
Launch Wizard
281
Shared responsibility model
AWS controls security OF the cloud, customer controls security IN the cloud.
282
consolidate multiple AWS accounts into an organization
Organizations
283
Systems Manager
to organize, monitor, and automate management tasks on your AWS resources.
284
CodeDeploy
Automate Code Deployment
285
Amazon Virtual Private Cloud - your own private network in AWS. You place EC2 instances and ELBs within your VPC. IP range is defined.
VPC
286
Relational Database Service (RDS)
Run relational databases in the cloud - automates hardware provisioning, database setup, patching, and backups.
287
Which of the following services allow you to mask downtime of your application by rerouting your traffic to healthy instances? (Select TWO.)
AWS ELB Amazon Route 53
288
Internet Gateway (IGW)
In front of your VPC to allow public traffic in
289
Fully Managed Graph DB service
Neptune
290
Go with a new vendor
Repurchase
291
Geographically isolated, greatest possible fault tolerance
Why have Regions?
292
software development framework for defining your cloud infrastructure in code and provisioning it through AWS CloudFormation.
The Cloud Development Kit (CDK)
293
establishes a secure and private tunnel from your network or device to the AWS Cloud
Virtual Private Network (VPN)
294
mobile and web applications
Amplify
295
Run relational databases in the cloud - automates hardware provisioning, database setup, patching, and backups.
Relational Database Service (RDS)
296
Storage Optimized instance?
High sequential read and write access to large datasets on local storage.
297
CodeCommit
Store Code in Git repos
298
High sequential read and write access to large datasets on local storage.
Storage Optimized instance?
299
Key Management Service
Managed Creation and Control of Encryption Keys
300
Develop and Deploy Applications
CodeStar
301
protect your sensitive data
Macie
302
EFS
Elastic File Service - can be mounted to multiple instances, scalable, like a hard drive in a file structure
303
Replatform
Lift, tinker, & shift - make a few optimizations when you rehost
304
Memory Optimized instance
Fast performance for processing large datasets in memory
305
Migration services when you have slow/no connection - physical devices to transform and/or compute, can transfer your data then send to Amazon for uploading
Snow Family
306
MongoDB-compatible databases
DocumentDB
307
Isolated Cloud Resources
VPC
308
Which of the following AWS Cost Management tools enable you to forecast future costs and usage of your AWS resources based on your past consumption?
Cost Explorer
309
FinSpace
Analytics for the financial services industry
310
AWS controls security OF the cloud, customer controls security IN the cloud.
Shared responsibility model
311
user accounts for web and mobile apps
Cognito
312
Migration Strategies 6 Rs
1. Rehost 2. Replatform 3. Retire 4. Retain 5. Repurchase 6. Refactor
313
Managed Services (AMS)
operate AWS more efficiently and securely. Leveraging AWS services and a growing library of automations, configurations, and run books,
314
Stuff that will be deprecated isn’t worth the cost to move
Retain
315
Only stored in one availabilty zone
S3 Infrequent Access One Zone
316
Which of the following security group rules are valid?
Security groups accept IP address, IP address range, and security group ID as either source or destination of inbound or outbound rules.
317
third-party data
Data Exchange
318
The Cloud Digital Interface (CDI)
SDK provides customers with the ability to migrate timing-critical uncompressed video workflows to the cloud
319
Application Migration Service
Automated lift-and-shift migration, simplifies and expedites migration to AWS.
320
AppSync
GraphQL service
321
Fully managed fault injection service
Fault Injection Simulator
322
compute-bound applications that need high-performance processors
Compute Optimized instance
323
Pricing Calculator
Create cost estimates different use cases
324
Monitor resources and applications, track metrics, set alarms, dashboard of all metrics
CloudWatch
325
S3 Intelligent-tiering
for data with unknown access patterns - analyzes and moves to the class matching use
326
Which AWS service is commonly used for streaming data in real-time?
Amazon Kinesis
327
Technical Account Manager
point of contact for everything, helps you use services in best way
328
Fully managed SFTP, FTPS, and FTP service
Transfer Family
329
Application resource registry for microservices, lets you name and discover your cloud resources
Cloud Map
330
everyone gets, no cost, long SLAs, limited Trusted Advisor, free documentation
Basic Support Plan
331
Which of the following security group rules are valid? (Select TWO.)
Inbound HTTP rule with security group ID as source, Inbound RDP rule with an address range as source
332
CloudTrail
every API request is tracked, records all the details, for RCA
333
Retire
Some stuff just isn’t needed
334
Detective
Investigate potential security issues
335
Reserved instance pricing
Steady-state workloads or predictable usage. 1- or 3- year term.
336
AppFlow
connect your software as a service (SaaS) applications to AWS services, and securely transfer data. Use Amazon AppFlow flows to manage and automate your data transfers without needing to write code.
337
Virtual Private Cloud (VPC)
Your chunk of AWS
338
1. Operational Excellence 2. Security 3. Reliability 4. Performance Efficiency 5. Cost Optimization
Well-Architected Framework 5 pillars
339
Connect
Contact Center
340
General Purpose instance
Balance of compute, memory, and networking
341
Recode on new platform, new architecture, new features (AKA re-architecting)
Refactor
342
Where can you track the costs you’ve incurred so far in your AWS account with a graphical visualization?
AWS Cost Explorer
343
instance types
1. General Purpose 2. Compute Optimized 3. Memory Optimized 4. Accelerated Computing 5. Storage Optimized
344
Compute Optimizer
recommend optimal Compute resources
345
Operational Excellence
Deliver business value, constantly improving
346
Investigate potential security issues
Detective
347
Directory Service
Host and Manage Active Directory
348
Storage Gateway
connects an on-premises software appliance with cloud-based storage
349
Macie
protect your sensitive data
350
Analytics for the financial services industry
FinSpace
351
some stuff always free (usually with usage limits), 12-months free, and free-trials
Free-tier
352
AWS security responsibility
Physical data centers, hypervisor, software, compute, storage, database, networking, hardware, regions, zones, edge locations
353
Amplify
mobile and web applications
354
Test Android, iOS, and web apps on real devices in the cloud
Device Farm
355
Service and Communications Protection or Zone Security
Customer responsibility
356
Simple, fast, online data transfer
DataSync
357
CloudEndure
Disaster Recovery
358
AppConfig
deploy application configurations
359
Operating systems, data, platform, IAM, firewalls, client-side encryption, server-side encryption
Customer security responsibility
360
Patterns, principles for architecture, migration
Platform Perspective
361
Cloud Directory
create directories for a variety of use cases, such as organizational charts, course catalogs, and device registries
362
Which type of EC2 instance is the most suitable and cost-effective if the customer will be running mission-critical workloads continuously for a whole year?
Reserved
363
Which of the following statements is true for AWS CloudTrail?
When you create a trail in the AWS Management Console, the trail applies to all AWS Regions by default
364
What should you provide to your developers to allow them to access your AWS services through the AWS CLI?
Access keys
365
What service should you use in order to add user sign-up, sign-in, and access control to your mobile app with a feature that supports sign-in with social identity providers such as Facebook, Google, and Amazon, and enterprise identity providers via SAML 2.0?
Amazon Cognito
366
Your chunk of AWS
Virtual Private Cloud (VPC)
367
security vulnerability assessment - vulnerabilities or deviations from best practices - security findings prioritized by level of severity
Inspector
368
Query Data in S3 using SQL
Athena
369
Customer security responsibility
Operating systems, data, platform, IAM, firewalls, client-side encryption, server-side encryption
370
CloudTrailInsights
Detect unusual API activity
371
Managed Creation and Control of Encryption Keys
Key Management Service
372
Create and Use Standardized Products
Service Catalog
373
analyze your costs, slice-n-dice historical costs
Cost Explorer
374
operate AWS more efficiently and securely. Leveraging AWS services and a growing library of automations, configurations, and run books,
Managed Services (AMS)
375
Which of the following is true regarding the AWS Cost and Usage report?
Allows you to load your cost and usage information into Amazon Athena, Amazon Redshift, and AWS QuickSight Provides you with granular data about your AWS costs and usage
376
Performance Efficiency
Use IT & computing resources efficiently
377
VPC
Amazon Virtual Private Cloud - your own private network in AWS. You place EC2 instances and ELBs within your VPC. IP range is defined.
378
Service Catalog
Create and Use Standardized Products
379
4 Benefits of EC2
1. Provision in minutes 2. stop using when done3. only pay for time you use 4. only pay for capacity you need
380
CodeGuru
Find your most expensive lines of code
381
Filter Malicious Web Traffic
WAF
382
Cloud Map
Application resource registry for microservices, lets you name and discover your cloud resources
383
Which of the following services are part of the AWS serverless platform that does not require provisioning, maintaining, and administering servers for backend components? (Select TWO.)
Amazon API Gateway Lambda@Edge
384
Snowball
Storage-optimized (80TB) or compute-optimized (42TB)
385
Store Code in Git repos
CodeCommit