Exam questions Flashcards

1
Q

You need to create and show rates to specific customers across a given period an alternate version of the monthly invoice information. What service should you use.

A

AWS Billing conductor

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

You want to run a report where you can see a monthly cost breakdown by AWS Service and potential future cost.

Which tool do you need?

A

AWS Cost Explorer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Which service retrieve key costs related to various AWS services

A

AWS Pricing API

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

AWS Trusted Advisor recommends AutoScaling groups. With what Pilar does this align best

A

Sustainability

By autoscaling you prevent running instances that consumes eneergy that aren’t needed

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What is an IGW?

A

Internet Gateway

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is a good option for block storage for EC2 that’s Scale able to petabyte level

A

EFS (Elastic File Systems) - it’s a managed file system that can scale to petabyte level

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

You need to use AWS service for managing and automating tasks performed on many AWS CloudFormation Stacks. Which system would you use?

A

AWS Resource groups - is used for managing automating tasks performed on multiple resources at the same time.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is a private cloud deployment?

A

On-premises

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

You need expert Guidance to meet security and compliance requirements to implement best practices for a migration. What service should you use?

A

AWS Security Competency Partners

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is default number of VPC you can have within an individual region?

A

5

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What section of an IAM policy manages the behaviors?

A

Effects -

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

What type of storage option is a regional service that gives you the ability to store and manages files within the AWS cloud?

A

Amazon EFS (Elastic File Systems) - its a regional service that allows you to create and manage file systems within the AWS cloud infrastructure.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Name 2 AWS container orchestration tools

A
  1. ECS (Elastic container Service)
  2. EKS (Elastic Kubernetes Service)
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

What security group gives the ability to manage permissions for several different users at once time while controlling access to specific AWS resources?

A

IAM groups, these group manages permissions for multiple users at one time.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What is rehosting?

A

“lift and shift” - little to no changes are made to the application while moving the application to the cloud.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What is replatforming?

A

“lift, thinker and shift” - for this strategy you need to change certain part of the application, but not the core of the app.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

What is repurchasing?

A

This is a strategy means you replace your old application with a completely new cloud based application.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

What database instance type is offered by Amazon RDS?

A

Oracle

19
Q

When a VPC is created, it automatically comes with a route table that can be modified

A

this

20
Q

What are 2 situations where you can Utilize AWS DynamoDB

A
  1. When using a serverless Database System
  2. When catering up to 45milion request per second
21
Q

What AWS service you want to get insights to reduce the company carbon footprint, allign with with new ESG requirements?

A

AWS Data exchange - This service allows you to locate and use 3rd party information that is related to sustainability.

22
Q

Which AWS Framework pillar is focused on continual improvement and refinement oof system resources over the complete infrastructure cycle

A

Cost optimization pillar – this pillar support improvements and efficiencies on the AWS full lifecycle.

Meet functional requirements while achieving the smallest price point

23
Q

What is a key capability of an amazon S3 data lake architecture component?

A

Utilitzes a broad perspective of data science, data analytics and machinelearning in a centralized platform

24
Q

What is a VPC Flow Log?

A

It gives you the ability to gather details about IP addresses going from and to different network components within your VPC. You can view these via CloudLog

25
Q

What is AWS Direct Connect?

A

It’s a private connection that links your remote network to an VPC. It’s a link between your on-premise netwrok and your VPC

26
Q

Which AWS Service should you use to reduce misreporting and non-compliance risk, save cost on cloud infra, and ensure non-compliant server usage is stopped before it occurss?

A

AWS license manager
This service simplifies the management of software licenses from multiple vendors.

27
Q

If you want to access the internet from your EC2 instance and not use an public IP adress, what netwrok component would you need?

A

NAT (network adress translation) Gateway

28
Q

Which AWS service would you use to improve communication with your users that are located far from your existing AWS Regions?

A

CloudFront - AWS CloudFront is a Content Delivery Network (CDN) that caches copies of data at locations around the world near customers. To do this CloudFront uses Edge locations.

29
Q

What DynamoDB Feature is an in-memory caching component that delivers microsecond responses for it’s front-end applications?

A

DAX - DynamoDB Accelerator

30
Q

Which Technologies should you use to securely connecting remote workers and on-premises networks to your AWS cloud?

A

AWS VPN - virtual private network

31
Q

What security policy do you need to make sure a connection has the appropriate SSL security policy

A

Predefined Security Policy

32
Q

How many internet Gateways (IGW) can be attached to an Amazon VPC?

A

1 - a virtual private cloud can only have one internet gateway attached at a time.

33
Q

Which of the following elements do you need to access an AWS account programmatically?

A
  1. Access Key ID
  2. Secret Access Key
34
Q

What are Elastic IP addresses (EIPs)?

A

is a static, public IPv4 address designed for dynamic cloud computing. You can associate an Elastic IP address with any instance or network interface in any VPC in your account. With an Elastic IP address, you can mask the failure of an instance by rapidly remapping the address to another instance in your VPC.

  • connected to 1 instance or network interface at the time
  • ## IPv6 is not supported
35
Q

What do you need to securely connect your on-premises systems to your VPC?

A

Virtual Private Gateway (VPG)

36
Q

When you create and manage an Amazon RDS environment, there are no setup fees. How is the RDS environment billed?

A

By running time. It billed per hour of use (even if the RDS service is just running for 10 minutes)

37
Q

What is AWS re:Post?

A

a portal that provides access to the AWS knowledge Center for troubleshooting, query resolution by an AWS employee and best practices.

38
Q

Which of the following components can be used to identify the faulty EC2 instances?

A

Resource tagging, via this label you can indentify resources easily.

39
Q

What is the difference between AWS Cost Explores and Pricing calculator

A

Cost explores is looking back of the costs you made in the last 12 months

AWS pricing calculator gives an estimate of the cost that you will make when starting certain services

40
Q

What AWS service automates evidence collection and perform risk and compliance management?

A

AWS Audit Manager

41
Q

What is consider a security best practice for an operating system or application?

A

Create a primary function for the EC2 instance, such as separating web servers from database servers.

42
Q

What type of internal AWs user can be created to mimic a service/application or person to access a resource?

A

an IAM User

43
Q

What does Amazon recommend for protecting data in transit when you have a concern of accidental information disclosure?

A

IPSec ESP

Data should be encrypted using Secure Sockets Layer/Transport Layer Securit (SSL/TLS) or IPSec ESP. IPsec ESP is an internet protocol security

44
Q
A