Udemy Practice Exam 4 Flashcards

1
Q

Which AWS service would you use to create a logically isolated section of the AWS Cloud where you can launch AWS resources in your virtual network?

A

Virtual Private Cloud (VPC)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

As per the Shared Responsibility Model, Security and Compliance is a shared responsibility between AWS and the customer. Which of the following security services falls under the purview of AWS under the Shared Responsibility Model?

-AWS Shield Standard
-AWS Web Application Firewall (WAF)
-AWS Shield Advanced
-Security Groups for Amazon EC2

A

AWS Shield Standard

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

According to the AWS Shared Responsibility Model, which of the following are responsibilities of the customer for IAM? (Select two)

-Manage global network security infrastructure
-Enable MFA on all accounts
-Analyze user access patterns and review IAM permissions
-Configuration and vulnerability analysis for the underlying software infrastructure
-Compliance validation for the underlying software infrastructure

A

-Enable MFA on all accounts
-Analyze user access patterns and review IAM permissions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Which of the following is available across all AWS Support plans?

-Full set of AWS Trusted Advisor best practice checks
-Enhanced Technical Support with unlimited cases and unlimited contacts
-AWS Personal Health Dashboard
-Third-Party Software Support

A

“AWS Personal Health Dashboard”

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

A streaming media company wants to convert English language subtitles into Spanish language subtitles. As a Cloud Practitioner, which AWS service would you recommend for this use-case?

A

Amazon Translate

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

AWS Shield Advanced provides expanded DDoS attack protection for web applications running on which of the following resources? (Select two)

A

-Amazon CloudFront
-Amazon Elastic Compute Cloud

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Who’s responsability is Patching networking infrastructure

A

AWS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Which of the following types are free under the Amazon S3 pricing model? (Select two)

A

Data transferred in from the internet

Data transferred out to an Amazon Elastic Compute Cloud (Amazon EC2) instance, when the instance is in the same AWS Region as the S3 bucket

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

The DevOps team at an IT company wants to centrally manage its servers on AWS Cloud as well as on-premise data center so that it can collect software inventory, run commands, configure and patch servers at scale. As a Cloud Practitioner, which AWS service would you recommend for this use-case?

A

Systems Manager

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Which of the following AWS services offer LifeCycle Management for cost-optimal storage?

A

S3

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

How is Amazon EC2 different from traditional hosting systems? (Select two)

A

-Amazon EC2 can scale with changing computing requirements -With Amazon EC2, developers can launch and terminate the instances anytime they need to

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Who is responsible for AWS Shield Standard

A

AWS
-managed service
-automatically activated for all customers
-no customization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

An e-commerce company would like to receive alerts when the Reserved EC2 Instances utilization drops below a certain threshold. Which AWS service can be used to address this use-case?

A

AWS Budgets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

-alert you when your costs or usage exceed (or are forecasted to exceed) your budgeted amount
-define a utilization threshold and receive alerts when your RI usage falls below that threshold

A

AWS Budgets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

An organization maintains a separate Virtual Private Cloud (VPC) for each of its business units. Two units need to privately share data. Which is the most optimal way of privately sharing data between the two VPCs?

A

VPC Peering

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Which of the following are the serverless computing services offered by AWS (Select two)

A

-Fargate
-Lambda

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Analyze user access patterns and review IAM permissions
responsibility of

A

Customer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

A financial services company wants to migrate from its on-premises data center to AWS Cloud. As a Cloud Practitioner, which AWS service would you recommend so that the company can compare the cost of running their IT infrastructure on-premises vs AWS Cloud?

A

AWS Pricing Calculator

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Which of the following S3 storage classes do not charge any data retrieval fee? (Select two)

A

-S3 Standard
-S3 Intelligent-Tiering

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

AWS Marketplace facilitates which of the following use-cases? (Select two)

A

-Sell Software as a Service (SaaS) solutions to AWS customers
-AWS customer can buy software that has been bundled into customized AMIs by the AWS Marketplace sellers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

Which of the following describes an Availability Zone in the AWS Cloud?

A

One or more data centers in the same location

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

is one or more discrete data centers with redundant power, networking, and connectivity in an AWS Region.

A

vailability Zone

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

A media company uploads its media (audio and video) files to a centralized S3 bucket from geographically dispersed locations. Which of the following solutions can the company use to optimize transfer speeds?

A

S3 Transfer Acceleration

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

A financial services company wants to ensure that all customer data uploaded on its data lake on Amazon S3 always stays private. Which of the following is the MOST efficient solution to address this compliance requirement?

A

Use Amazon S3 Block Public Access to ensure that all S3 resources stay private

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

Which of the following statements are true regarding Amazon Simple Storage Service (S3) (Select two)?

A

-S3 is a key value based object storage service
-S3 stores data in a flat non-hierarchical structure

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

AWS Shield Advanced provides expanded DDoS attack protection for web applications running on which of the following resources? (Select two)

A

Cloud Front
EC2 Elastic Compute Cloud

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

Reserved Instance pricing is available for which of the following AWS services? (Select two)

A

-RDS
-EC2

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
28
Q

Which entity ensures that your application on Amazon EC2 always has the right amount of capacity to handle the current traffic demand?

A

Auto Scaling

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
29
Q

Which of the following is the MOST cost-effective EC2 instance purchasing option for short-term, spiky and critical workloads on AWS Cloud?

A

On-Demand Instance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
30
Q

Which of the following AWS Support plans provide programmatic access to AWS Support Center features to create, manage and close your support cases? (Select two)

A

-Business
-Enterprise

31
Q

Which pillar of AWS Well-Architected Framework is responsible for making sure that you select the right resource types and sizes based on your workload requirements?

A

Performance Efficiency

32
Q

The ability of a system to recover from infrastructure or service disruptions, dynamically acquire computing resources to meet demand, and mitigate disruptions such as misconfigurations or transient network issues.

A

Reliability

33
Q

Pillar includes the ability to run and monitor systems to deliver business value and to continually improve supporting processes and procedures.

A

Operational Excellence

34
Q

AWS Trusted Advisor can provide alerts on which of the following common security misconfigurations? (Select two)?

A

-When you allow public access to Amazon S3 buckets

-When you don’t turn on user activity logging (AWS CloudTrail)

35
Q

Which of the following S3 storage classes has NO constraint of a minimum storage duration charge for objects?

A

S3 Standard
S3 Intelligent Tiering

36
Q

minimum storage duration charge for 90 days

A

S3 Glacier

37
Q

minimum storage duration charge for 30 days.

A

Infrequent Access

38
Q

minimum storage duration charge for 180 days.

A

S3 Glacier Deep Archive

39
Q

Which of the following is best-suited for load-balancing HTTP and HTTPS traffic?

A

Application Load Balancer

40
Q

Which of the following is correct regarding the AWS RDS service?Read Replicas

A

-You can use Read Replicas for both improved read performance as well as Disaster Recovery
-cross-Region Read Replica

41
Q

Which of the following can you use to run a bootstrap script while launching an EC2 instance?

A

EC2 instance user data

42
Q

Which of the following is available across all AWS Support plans?

A

AWS Personal Health Dashboard

43
Q

AWS Personal Health Dashboard

A

U2F security key

44
Q

The DevOps team at a Big Data consultancy has set up EC2 instances across two AWS Regions for its flagship application. Which of the following characterizes this application architecture? cross region improves

A

Availability

45
Q

Which AWS service will help you install application code automatically to an Amazon EC2 instance?

A

AWS CodeDeploy

46
Q

Which of the following are recommended security best practices for the AWS account root user? (Select two)

A

Enable MFA for the AWS account root user

Set up an IAM user with administrator permissions and do not use AWS account root user for administrative tasks

47
Q

Which AWS service can be used to set up billing alarms to monitor estimated charges on your AWS account?

-AWS Organizations
-Amazon CloudWatch
-AWS Organizations
-AWS Cost Explorer

A

Amazon CloudWatch

48
Q

Which AWS service would you choose for a data processing project that needs a schemaless database?

A

Amazon DynamoDB

49
Q

Amazon DynamoDB

A

True

50
Q

Which of the following is a container service of AWS?
works with both Amazon Elastic Container Service (ECS) and Amazon Elastic Kubernetes Service (EKS).

A

AWS Fargate

51
Q

Which of the following AWS storage services can be directly used with on-premises systems?

A

Amazon Elastic File System (Amazon EFS)

52
Q

To access EFS file systems from on-premises

A

-AWS Direct Connect or
-AWS VPN connection

53
Q

Amazon S3 can be accessed from on-premises

A

only via AWS Storage Gateway

54
Q

A firm wants to maintain the same data on S3 between its production account and multiple test accounts. Which technique should you choose to copy data into multiple test accounts while retaining object metadata?

A

Amazon S3 Replication

55
Q

When accounts in organization share reserved instances,
they must

A

be launched in the same Availability Zone as the reserved instances where purchased

56
Q

Which of the following entities are part of a VPC in the AWS Cloud? (Select two)

A

Subnet
Internet Gateway

57
Q

An e-commerce company has migrated its IT infrastructure from the on-premises data center to AWS Cloud. Which of the following costs is the company responsible for?

A

Application software license costs

58
Q

Which AWS service will you use to provision the same AWS infrastructure across multiple AWS accounts and regions?

A

AWS CloudFormation

59
Q

Which of the following entities can be used to connect to an EC2 server from a Mac OS, Windows or Linux based computer via a browser-based client?

A

EC2 Instance Connect

60
Q

EC2 Instance Connect uses

A

Secure Shell (SSH).
AWS Identity and Access Management (IAM) policies

61
Q

can be used from a Mac OS, Windows or Linux based computer,

A

SSH

62
Q

Which of the following AWS services can be used to forecast your AWS account usage and costs?

A

AWS Cost Explorer

63
Q

automatically assesses applications for exposure, vulnerabilities, and deviations from best practices.

A

Inspector

64
Q

Which AWS service can help you analyze your infrastructure to identify unattached or underutilized EBS volumes?

A

AWS Trusted Advisor

65
Q

Which of the following are benefits of the AWS Web Application Firewall (WAF)? (Select two)

A

-WAF can block all requests except the ones that you allow
-WAF can check for the presence of SQL code that is likely to be malicious (known as SQL injection)

66
Q

WAF can check for the presence of SQL code that is likely to be malicious (known as SQL injection)

A

-Amazon API Gateway API
-Amazon CloudFront
-Application Load Balancer.

67
Q

-is a good fit for non-HTTP use cases
-provides static IP addresses that act as a fixed entry point to your applications

A

AWS Global Accelerator

68
Q

Which of the following AWS entities lists all users in your account and the status of their various account aspects such as passwords, access keys, and MFA devices?

A

Credential Reports

69
Q

A cargo shipping company runs its server-fleet on Amazon EC2 instances. Some of these instances host the CRM (Customer Relationship Management) applications that need to be accessible 24*7. These applications are not mission-critical. In case of a disaster, these applications can be managed on a lesser number of instances for some time.

Which disaster recovery strategy is well-suited as well as cost-effective for this requirement?

A

Warm Standby strategy

70
Q

-always running but smaller
-business critical

A

Warm Standby strategy

71
Q

-iddle service
-provision and then scale

A

Pilot light

72
Q

-mission critial
-no downtime

A

multi-site active/active

73
Q

-lower priority
-restore after event

A

backup & restore