aws Flashcards

1
Q

AWS Support API

A

Business & Enterprise

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Which of the following can you use to resolve the connection between your on-premises VPN and your AWS virtual private cloud?

A

VPG, Route 53

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

Backup

A

Manage backup across services

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Which of the following is typically used to secure your VPC subnets?

A

Network ACL

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Serverless compute for containers

A

Fargate

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

For audit data, used infrequently, doesn’t need fast access.

A

S3 Glacier

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the best way to keep track of all activities made in your AWS account?

A

Create a multi-region trail in AWS CloudTrail

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Managed Blockchain

A

DB service. Create and manage scalable blockchain networks

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Which service lets you create rules to filter web traffic based on conditions that include IP addresses, HTTP headers, or custom URIs?

A

AWS WAF

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

2 CPUs, 4GB Memory, 8TB storage

A

Snowcone

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

Business Support Plan

A

Developer + full Trusted Advisor, 4-hour SLA for impaired, 1-hour SLA for down. Use-case guidance, limited support for 3rd-party software

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

CodeArtifact

A

artifact management for development

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

App Mesh

A

monitor and control microservices

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

SageMaker

A

Machine learning

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

Which of the following services will be able to reroute traffic to your secondary EC2 instances in another region during disaster recovery?

A

Amazon Route 53

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Basic + 24-hour SLA, 12-hour SLA if systems impaired, diagnostic tools

A

Developer Support Plan

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

NoSQL database, serverless

A

DynamoDB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

ElastiCache

A

cache over DBs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

certain permissions, used for a temporary amount of time

A

Role

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

Deliver business value, constantly improving

A

Operational Excellence

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

details of resources in your account, relationships, configs

A

Config

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

S3 Infrequent Access One Zone

A

Only stored in one availabilty zone

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

Which of the following should you set up in order to connect your AWS VPC network to your local network via an IPsec tunnel?

A

A VPN gateway in your VPC connected to the Customer Gateway in your on-premises network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

Web-based interface for accessing and managing AWS services. Includes wizards and automated workflows. Has a mobile app. Good for initial set-up, but manual, so human error can be a problem.

A

Management Console

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

Storage-optimized (80TB) or compute-optimized (42TB)

A

Snowball

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

Lift & shift - don’t change anything, just move to AWS

A

Rehost

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

Managed Relational Database Service for MySQL, PostgreSQL, Oracle, SQL Server, and MariaDB

A

RDS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
28
Q

Cloud9

A

Write, Run, and Debug Code on a Cloud IDE

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
29
Q

Network Firewall

A

stateful, managed, network firewall

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
30
Q

Redshift

A

Data Warehousing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
31
Q

Which of the following services are part of the AWS serverless platform that does not require provisioning, maintaining, and administering servers for backend components?

A

Lambda@Edge, Amazon API Gateway

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
32
Q

Contact Center

A

Connect

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
33
Q

Change management, right people right roles, training

A

People Perspective

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
34
Q

Analyze and debug your applications

A

X-Ray

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
35
Q

Aurora

A

serverless MySQL DB, Relational database, six copies, three availability zones. Continuous backup to S3.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
36
Q

every API request is tracked, records all the details, for RCA

A

CloudTrail

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
37
Q

CodeBuild

A

Build and Test Code

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
38
Q

X-Ray

A

Analyze and debug your applications

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
39
Q

Marketplace

A

Curated catalog of 3rd-party software

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
40
Q

Commit to consistent usage for 1- or 3- year term. Up to your commitment at discounted prices, beyond that at on-demand pricing. Can be used for serverless as well. Measured in dollars per hour.

A

savings plan

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
41
Q

Data Warehousing

A

Redshift

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
42
Q

Which among the options below can you use to launch a new Amazon RDS database cluster to your VPC?

A

AWS Management Console, AWS CloudFormation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
43
Q

Data Pipeline

A

automate movement and transformation of data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
44
Q

Platform Perspective

A

Patterns, principles for architecture, migration

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
45
Q

Simple Storage Service - scalable, access to multiple instances, but can be accessed by other cloud services, large volumes of static content, and complex queries, flat storage, analytics, archiving

A

S3

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
46
Q

DynamoDB

A

NoSQL database, serverless

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
47
Q

connects an on-premises software appliance with cloud-based storage

A

Storage Gateway

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
48
Q

Enterprise Support Plan

A

Business + 15-minute SLA, dedicated Technical Account Manager

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
49
Q

Migration Hub

A

Find best migration tool and monitor migrations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
50
Q
  1. AWS Management Console 2. AWS Command Line Interface 3. Software Development Kits 4. AWS Elastic Beanstalk 5. AWS CloudFormation
A

tools/services to provision resources

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
51
Q

Build, Deploy, and Manage APIs

A

API Gateway

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
52
Q

A customer is building a cloud architecture in AWS which should scale horizontally or vertically in order to automatically adjust capacity and maintain steady, predictable performance at the lowest possible cost. Which of the following statements are true regarding horizontal and vertical scaling?

A

Adding more EC2 instances to your resource pool is an example of Horizontal Scaling, Upgrading to a higher EC2 instance type is an example of Vertical Scaling

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
53
Q

Basic set-up with basic tools to get started on AWS

A

Lightsail

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
54
Q

Which of the following is a threat detection service that continuously monitors for malicious activity and unauthorized behavior to protect your AWS accounts and workloads?

A

Amazon GuardDuty

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
55
Q

Define business operations to meet business goals

A

Operations Perspective

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
56
Q

Snow Family

A

Migration services when you have slow/no connection - physical devices to transform and/or compute, can transfer your data then send to Amazon for uploading

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
57
Q

CloudHSM

A

Hardware-based Key Storage for Regulatory Compliance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
58
Q

Which of the following are the things that Amazon CloudWatch Logs can accomplish

A

Monitor application logs from Amazon EC2 Instances, Adjust the retention policy for each log group

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
59
Q

In which of the following occasions should you use the Amazon SQS in your application system? (Select TWO.)

A

If you need to decouple certain parts of your system for better fault tolerance
If you require a durable storage for your application events or messages

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
60
Q

Use IT & computing resources efficiently

A

Performance Efficiency

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
61
Q

Among the following services, which is the most suitable one to use to store the results of I/O-intensive SQL database queries to improve application performance?

A

Amazon ElastiCache

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
62
Q

Which service in AWS protects your resources from common DDoS attacks in a proactive manner?

A

AWS Shield

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
63
Q

Database Migration Service - can migrate relational or non-relational, can convert type, consolidate

A

DMS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
64
Q

Firewall Manager

A

Central Management of Firewall Rules

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
65
Q

Build and Test Code

A

CodeBuild

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
66
Q

securely share your resources across AWS accounts and within your organization or organizational units (OUs) in AWS Organizations

A

Resource Access Manager (RAM)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
67
Q

Which of the following are regarded as regional services in AWS

A

EFS, Batch

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
68
Q

Inspector

A

security vulnerability assessment - vulnerabilities or deviations from best practices - security findings prioritized by level of severity

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
69
Q

Model cloud infrastructure using code

A

Cloud Development Kit (CDK)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
70
Q

In front of your VPC to allow public traffic in

A

Internet Gateway (IGW)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
71
Q

Business Analytics

A

QuickSight

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
72
Q

Free-tier

A

some stuff always free (usually with usage limits), 12-months free, and free-trials

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
73
Q

Lift, tinker, & shift - make a few optimizations when you rehost

A

Replatform

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
74
Q

Dedicated fiber connection from your data center to AWS - for lower latency on VPC.

A

Direct Connect

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
75
Q

You are permitted to conduct security assessments and penetration testing without prior approval against which AWS resources?

A

Amazon RDS, Amazon Aurora

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
76
Q

Storage that comes with an EC2 instance - attached to the instance, when the instance is stopped, the storage goes away. Fine for temporary files.

A

Instance Store Volume

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
77
Q

Elastic File Service - can be mounted to multiple instances, scalable, like a hard drive in a file structure

A

EFS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
78
Q

Inspects services, recommendations for best practices: cost, performance, security, fault tolerance, service limits

A

Trusted Advisor

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
79
Q

Data Exchange

A

third-party data

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
80
Q

Find best migration tool and monitor migrations

A

Migration Hub

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
81
Q

Shield

A

DDoS Protection

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
82
Q

Cheaper and slower than Glacier

A

S3 Glacier Deep Archive

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
83
Q

Automate Code Deployment

A

CodeDeploy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
84
Q

Migrate On-Premises Servers to AWS

A

Server Migration Service

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
85
Q

Accelerated Computing instance

A

hardware accelerators, graphics processing, data pattern matching

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
86
Q

Repurchase

A

Go with a new vendor

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
87
Q

SDK provides customers with the ability to migrate timing-critical uncompressed video workflows to the cloud

A

The Cloud Digital Interface (CDI)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
88
Q

RDS

A

Managed Relational Database Service for MySQL, PostgreSQL, Oracle, SQL Server, and MariaDB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
89
Q

Glue

A

Serverless - data engineers, data scientists

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
90
Q

Cost insights

A

Application Cost Profiler

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
91
Q

Release Software using Continuous Delivery

A

CodePipeline

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
92
Q

What is the minimum support plan that will provide you access to all Trusted Advisor Checks?

A

Business

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
93
Q

Steady-state workloads or predictable usage. 1- or 3- year term.

A

Reserved instance pricing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
94
Q

6 Benefits of Cloud computing

A
  1. Trade upfront expense for variable expense 2. Stop spending $ to run data centers 3. Stop guessing capacity 4. Economies of scale 5. Increase speed and agility 6. Go global in minutes
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
95
Q

Transit Gateway

A

Easily scale VPC and account connections

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
96
Q

Operations Perspective

A

Define business operations to meet business goals

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
97
Q

Create and Manage Resources with Templates. Provision instances and build environments with code, no manual actions.

A

CloudFormation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
98
Q

QuickSight

A

Business Analytics

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
99
Q

DDoS Protection

A

Shield

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
100
Q

Automated lift-and-shift migration, simplifies and expedites migration to AWS.

A

Application Migration Service

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
101
Q

Audit Manager

A

audit your services & security against industry standards, regulations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
102
Q

Snowcone

A

2 CPUs, 4GB Memory, 8TB storage

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
103
Q

Which of the following best describes what CloudWatch can be used for

A

A repository for metrics and logs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
104
Q

Security Perspective

A

Meet security objectives

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
105
Q

Management Console

A

Web-based interface for accessing and managing AWS services. Includes wizards and automated workflows. Has a mobile app. Good for initial set-up, but manual, so human error can be a problem.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
106
Q
  1. Rehost 2. Replatform 3. Retire 4. Retain 5. Repurchase 6. Refactor
A

Migration Strategies 6 Rs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
107
Q

Neptune

A

Fully Managed Graph DB service

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
108
Q

Global Accelerator

A

Improve application availability and performance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
109
Q

Direct Connect

A

Dedicated fiber connection from your data center to AWS - for lower latency on VPC.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
110
Q

Server Migration Service

A

Migrate On-Premises Servers to AWS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
111
Q

CloudFront

A

CDN to edge locations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
112
Q

Subnet

A

One chunk of IP addresses. Like things are grouped. Subnets can be public or private.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
113
Q

Fast performance for processing large datasets in memory

A

Memory Optimized instance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
114
Q

Application Cost Profiler

A

Cost insights

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
115
Q

What is the best type of instance purchasing option to choose if you will run an EC2 instance for 3 months to perform a job that is uninterruptible?

A

On-Demand

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
116
Q

Instance Store Volume

A

Storage that comes with an EC2 instance - attached to the instance, when the instance is stopped, the storage goes away. Fine for temporary files.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
117
Q

web application firewall - block or allow requests based on conditions that you specify

A

WAF

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
118
Q

Serverless Application Repository

A

Discover, Deploy, and Publish Serverless Applications

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
119
Q

Elastic Container Service - Manage Docker containers

A

ECS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
120
Q

Fargate

A

Serverless compute for containers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
121
Q

Resource Access Manager (RAM)

A

securely share your resources across AWS accounts and within your organization or organizational units (OUs) in AWS Organizations

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
122
Q

Lambda

A

serverless computing

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
123
Q

45-ft shipping container delivered by semi, 100 petabytes

A

Snowmobile

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
124
Q

monitor and control microservices

A

App Mesh

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
125
Q

Security group

A

Security on an instance - every instance has one. By default, nothing allowed in until you add rules. Stateful. Whitelist.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
126
Q

ensure IT aligns with business

A

Business Perspective

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
127
Q

Fault Injection Simulator

A

Fully managed fault injection service

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
128
Q

OpsWorks

A

Automate Operations with Chef and Puppet

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
129
Q

DB service. Create and manage scalable blockchain networks

A

Managed Blockchain

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
130
Q

Which of the following statements is true for AWS CloudTrail?

A

When you create a trail in the AWS Management Console, the trail applies to all AWS Regions by default

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
131
Q

Build conversational interfaces with voice and text

A

Lex

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
132
Q

Business + 15-minute SLA, dedicated Technical Account Manager

A

Enterprise Support Plan

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
133
Q

Which of the following is the most cost-effective service to use if you want to coordinate multiple AWS services into serverless workflows?

A

A VPN gateway in your VPC connected to the Customer Gateway in your on-premises network

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
134
Q

hardware accelerators, graphics processing, data pattern matching

A

Accelerated Computing instance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
135
Q

audit your services & security against industry standards, regulations

A

Audit Manager

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
136
Q

Securely Access Services Hosted on AWS

A

PrivateLink

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
137
Q

savings plan

A

Commit to consistent usage for 1- or 3- year term. Up to your commitment at discounted prices, beyond that at on-demand pricing. Can be used for serverless as well. Measured in dollars per hour.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
138
Q

DataSync

A

Simple, fast, online data transfer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
139
Q

VPC

A

Isolated Cloud Resources

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
140
Q

Control Tower

A

manage governance rules across accounts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
141
Q

recommend optimal Compute resources

A

Compute Optimizer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
142
Q

Discover, Deploy, and Publish Serverless Applications

A

Serverless Application Repository

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
143
Q

Identity and Access Management (IAM)

A

control user access to AWS services, JSON, don’t use root user

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
144
Q

A new AWS customer needs to deploy up to 100 t3a.large EC2 instances on their recently launched VPC, which is way beyond the default service limit. What should they do before launching their instances?

A

Create a case in the AWS Support Center page and request a service limit increase.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
145
Q

S3 Infrequent Access (S3 IA)

A

Accessed less frequently, but needs rapid access when it is used. Stored in at least 3 availability zones. Lower storage price, higher retrieval price

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
146
Q

Security on an instance - every instance has one. By default, nothing allowed in until you add rules. Stateful. Whitelist.

A

Security group

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
147
Q

for data with unknown access patterns - analyzes and moves to the class matching use

A

S3 Intelligent-tiering

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
148
Q

What service acts as a firewall for your EC2 instances?

A

Security Group

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
149
Q

four factors to consider in selecting a Region

A
  1. Compliance with data governance (company or government) 2. Proximity to customers 3. Availability of features 4. Pricing
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
150
Q

cache over DBs

A

ElastiCache

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
151
Q

Which of the following allows you to create and deploy infrastructure-as-code templates in AWS?

A

CloudFormation

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
152
Q

What is the lowest support plan that allows an unlimited number of technical support cases to be opened?

A

Developer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
153
Q

Launch Wizard

A

third party applications

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
154
Q

A company needs to troubleshoot an issue on their serverless application which is composed of an API Gateway, Lambda function, and a DynamoDB database. Which service should they use to trace user requests as they travel through their entire application?

A

AWS X-Ray

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
155
Q

Well-Architected Framework 5 pillars

A
  1. Operational Excellence 2. Security 3. Reliability 4. Performance Efficiency 5. Cost Optimization
156
Q

Cloud Development Kit (CDK)

A

Model cloud infrastructure using code

157
Q

Unified security and compliance center

A

Security Hub

158
Q

Meet security objectives

A

Security Perspective

159
Q

Business Perspective

A

ensure IT aligns with business

160
Q

stateful, managed, network firewall

A

Network Firewall

161
Q

Organizations

A

consolidate multiple AWS accounts into an organization

162
Q

Host and Manage Active Directory

A

Directory Service

163
Q

Find your most expensive lines of code

A

CodeGuru

164
Q

automate movement and transformation of data

A

Data Pipeline

165
Q

Rehost

A

Lift & shift - don’t change anything, just move to AWS

166
Q

Agility is one of the benefits of using cloud computing that provides customer with what advantage?

A

Focus your valuable IT resources on developing applications that differentiate your business rather than managing infrastructure and data centers.

167
Q

Know this structure of AWS Security

A
168
Q

Which of the following are defined as global services in AWS?

A

AWS Identity and Access Management, Amazon CloudFront

169
Q

If you have multiple instances in one subnet with different security rules

A

Instance-level Security

170
Q

What is the primary reason why you should be using an elastic load balancer?

A

ELBs provide elasticity by directing traffic to a minimum number of instances required to handle the traffic load

171
Q

ACL

A

Access control list - controls traffic in and out of a subnet. Stateless, By default, Blacklist.

172
Q
  1. Compliance with data governance (company or government) 2. Proximity to customers 3. Availability of features 4. Pricing
A

four factors to consider in selecting a Region

173
Q

Config

A

details of resources in your account, relationships, configs

174
Q

The Cloud Development Kit (CDK)

A

software development framework for defining your cloud infrastructure in code and provisioning it through AWS CloudFormation.

175
Q

Security Hub

A

Unified security and compliance center

176
Q

Trusted Advisor

A

Inspects services, recommendations for best practices: cost, performance, security, fault tolerance, service limits

177
Q

Write, Run, and Debug Code on a Cloud IDE

A

Cloud9

178
Q

Virtual Private Gateway (VPG)

A

In front of your VPC to allow private traffic in - like a VPN

179
Q

Which of the following policies grant the necessary permissions required to access your Amazon S3 resources?

A

Bucket policies, User policies

180
Q

deploy application configurations

A

AppConfig

181
Q

create directories for a variety of use cases, such as organizational charts, course catalogs, and device registries

A

Cloud Directory

182
Q

get compliance and security docs for audits

A

Artifact

183
Q

Retain

A

Stuff that will be deprecated isn’t worth the cost to move

184
Q

Cost Explorer

A

analyze your costs, slice-n-dice historical costs

185
Q

Machine learning

A

SageMaker

186
Q

Outpost

A

Your own mini-Region in your own building. Owned and operated by Amazon.

187
Q

ECS

A

Elastic Container Service - Manage Docker containers

188
Q

Serverless

A

you don’t have to manage servers

189
Q

Elastic Block Store -block storage - attached to an instance, when you need high-performance storage attached on a single instance

A

EBS

190
Q

serverless MySQL DB, Relational database, six copies, three availability zones. Continuous backup to S3.

A

Aurora

191
Q

point of contact for everything, helps you use services in best way

A

Technical Account Manager

192
Q

to organize, monitor, and automate management tasks on your AWS resources.

A

Systems Manager

193
Q

PrivateLink

A

Securely Access Services Hosted on AWS

194
Q

Which service does AWS use to notify you when AWS is experiencing events that may impact you?

A

AWS Personal Health Dashboard

195
Q

Improve application availability and performance

A

Global Accelerator

196
Q

open-source framework to build serverless applications - template and a command line interface

A

The Serverless Application Model (SAM)

197
Q

Some stuff just isn’t needed

A

Retire

198
Q

Elastic Beanstalk

A

You upload code and configs, AWS provisions, load balances, scales, monitors

199
Q

Which of the following AWS well-architected pillars discusses the use of the right computing resources to meet demand levels even as the demand changes and technologies evolve?

A

Performance Efficiency

200
Q

CodeStar

A

Develop and Deploy Applications

201
Q

control user access to AWS services, JSON, don’t use root user

A

Identity and Access Management (IAM)

202
Q

Serverless - data engineers, data scientists

A

Glue

203
Q

Sharing a host with other instances

A

virtual machines

204
Q

DMS

A

Database Migration Service - can migrate relational or non-relational, can convert type, consolidate

205
Q

Pricing concepts

A

pay for what you use, pay less when you reserve, pay less with volume discounts

206
Q

In Amazon EC2, which pricing construct adjusts its price based on supply and demand of EC2 instances?

A

Spot Instance

207
Q

CloudWatch

A

Monitor resources and applications, track metrics, set alarms, dashboard of all metrics

208
Q

Refactor

A

Recode on new platform, new architecture, new features (AKA re-architecting)

209
Q

How can you easily and securely copy your infrastructure to another AWS Region?

A

Create a CloudFormation template and deploy it in the new region

210
Q

Application Discovery Service

A

plan application migration projects by automatically identifying applications running in on-premises data centers, their associated dependencies

211
Q

Cognito

A

user accounts for web and mobile apps

212
Q

Which of the following cloud best practices reinforces the use of the Service-Oriented Architecture (SOA) design principle?

A

Decouple your components.

213
Q

tools/services to provision resources

A
  1. AWS Management Console 2. AWS Command Line Interface 3. Software Development Kits 4. AWS Elastic Beanstalk 5. AWS CloudFormation
214
Q

There is a requirement to launch a new database in AWS where the customer assumes the responsibility and management of the guest operating system, including updates and security patches. Which of the following services should the customer use?

A

Amazon EC2

215
Q

Transfer Family

A

Fully managed SFTP, FTPS, and FTP service

216
Q

In front of your VPC to allow private traffic in - like a VPN

A

Virtual Private Gateway (VPG)

217
Q

Basic Support Plan

A

everyone gets, no cost, long SLAs, limited Trusted Advisor, free documentation

218
Q

pay for what you use, pay less when you reserve, pay less with volume discounts

A

Pricing concepts

219
Q

Instance-level Security

A

If you have multiple instances in one subnet with different security rules

220
Q

plan application migration projects by automatically identifying applications running in on-premises data centers, their associated dependencies

A

Application Discovery Service

221
Q

Athena

A

Query Data in S3 using SQL

222
Q

Easily scale VPC and account connections

A

Transit Gateway

223
Q

API Gateway

A

Build, Deploy, and Manage APIs

224
Q

Users from different parts of the globe are complaining about the slow performance of the newly launched photo-sharing website in loading their high-resolution images. Which combination of AWS services should you use to serve the files with lowest possible latency?

A

Amazon S3, Amazon CloudFront

225
Q

One chunk of IP addresses. Like things are grouped. Subnets can be public or private.

A

Subnet

226
Q

to review your workloads against current Amazon Web Services architectural best practices. The AWS Well-Architected Tool measures the workload and provides recommendations on how to improve your architecture.

A

Well-Architected Tool

227
Q

Snowmobile

A

45-ft shipping container delivered by semi, 100 petabytes

228
Q

Curated catalog of 3rd-party software

A

Marketplace

229
Q

WAF

A

Filter Malicious Web Traffic

230
Q

The Serverless Application Model (SAM)

A

open-source framework to build serverless applications - template and a command line interface

231
Q

EBS

A

Elastic Block Store -block storage - attached to an instance, when you need high-performance storage attached on a single instance

232
Q

Which of the following should you use if you need to provide temporary AWS credentials for users who have been authenticated via their social media logins as well as for guest users who do not require any authentication?

A

Amazon Cognito Identity Pool

233
Q

Device Farm

A

Test Android, iOS, and web apps on real devices in the cloud

234
Q

Governance Perspective

A

Minimize risk, manage & measure for business outcomes

235
Q

CodePipeline

A

Release Software using Continuous Delivery

236
Q

S3

A

Simple Storage Service - scalable, access to multiple instances, but can be accessed by other cloud services, large volumes of static content, and complex queries, flat storage, analytics, archiving

237
Q

Create cost estimates different use cases

A

Pricing Calculator

238
Q

People Perspective

A

Change management, right people right roles, training

239
Q

Well-Architected Tool

A

to review your workloads against current Amazon Web Services architectural best practices. The AWS Well-Architected Tool measures the workload and provides recommendations on how to improve your architecture.

240
Q

DocumentDB

A

MongoDB-compatible databases

241
Q

Automate Operations with Chef and Puppet

A

OpsWorks

242
Q

WAF

A

web application firewall - block or allow requests based on conditions that you specify

243
Q

Disaster Recovery

A

CloudEndure

244
Q

you don’t have to manage servers

A

Serverless

245
Q

Which of the following is an advantage of using managed services like RDS, ElastiCache, and CloudSearch in AWS?

A

Simplifies all of your OS patching and backup activities to help keep your resources current and secure

246
Q

Minimize risk, manage & measure for business outcomes

A

Governance Perspective

247
Q

Developer + full Trusted Advisor, 4-hour SLA for impaired, 1-hour SLA for down. Use-case guidance, limited support for 3rd-party software

A

Business Support Plan

248
Q

Accessed less frequently, but needs rapid access when it is used. Stored in at least 3 availability zones. Lower storage price, higher retrieval price

A

S3 Infrequent Access (S3 IA)

249
Q

hich of the following services allows you to store Docker images and orchestrate Docker containers in a simple and cost-effective manner? (Select TWO.)

A

Amazon ECR, Amazon ECS

250
Q

Which of the following is a data transport solution that accelerates moving terabytes to petabytes of data into and out of AWS using appliances with on-board storage and compute capabilities?

A

AWS Snowball Edge

251
Q

S3 Glacier Deep Archive

A

Cheaper and slower than Glacier

252
Q

Cloud Adoption Framework 6 Perspectives

A
  1. Business 2. People 3. Governance 4. Platform 5. Security 6. Operations
253
Q

What is the best way to keep track of all activities made in your AWS account?

A

Create a multi-region trail in AWS CloudTrail

254
Q

CloudFormation

A

Create and Manage Resources with Templates. Provision instances and build environments with code, no manual actions.

255
Q

You upload code and configs, AWS provisions, load balances, scales, monitors

A

Elastic Beanstalk

256
Q

Why have Regions?

A

Geographically isolated, greatest possible fault tolerance

257
Q

serverless computing

A

Lambda

258
Q

Role

A

certain permissions, used for a temporary amount of time

259
Q

Compute Optimized instance

A

compute-bound applications that need high-performance processors

260
Q

Virtual Private Network (VPN)

A

establishes a secure and private tunnel from your network or device to the AWS Cloud

261
Q

manage governance rules across accounts

A

Control Tower

262
Q

Your own mini-Region in your own building. Owned and operated by Amazon.

A

Outpost

263
Q

In the AWS Shared Responsibility Model, whose responsibility is it to patch the host operating system of an Amazon EC2 instance?

A

AWS

264
Q

GuardDuty

A

Managed Threat Detection Service

265
Q

Managed Threat Detection Service

A

GuardDuty

266
Q

Developer Support Plan

A

Basic + 24-hour SLA, 12-hour SLA if systems impaired, diagnostic tools

267
Q
  1. General Purpose 2. Compute Optimized 3. Memory Optimized 4. Accelerated Computing 5. Storage Optimized
A

instance types

268
Q

CloudSearch

A

Managed Search Service

269
Q

Balance of compute, memory, and networking

A

General Purpose instance

270
Q

Recovery planning, handle change to meet business & customer demand

A

Reliability

271
Q

Central Management of Firewall Rules

A

Firewall Manager

272
Q

Lex

A

Build conversational interfaces with voice and text

273
Q

Artifact

A

get compliance and security docs for audits

274
Q

Which type of Elastic Load Balancer supports path-based routing, host-based routing, and bi-directional communication channels using WebSockets?

A

Application Load Balancer

275
Q

S3 Glacier

A

For audit data, used infrequently, doesn’t need fast access.

276
Q

virtual machines

A

Sharing a host with other instances

277
Q

Reliability

A

Recovery planning, handle change to meet business & customer demand

278
Q

Which of the following is true about the enhanced technical support response times of the Enterprise support plan in AWS?

A

Provides a 15-minute response time support if your business-critical system goes down, Provides a 1-hour response time support if your production system goes down

279
Q

Lightsail

A

Basic set-up with basic tools to get started on AWS

280
Q

third party applications

A

Launch Wizard

281
Q

Shared responsibility model

A

AWS controls security OF the cloud, customer controls security IN the cloud.

282
Q

consolidate multiple AWS accounts into an organization

A

Organizations

283
Q

Systems Manager

A

to organize, monitor, and automate management tasks on your AWS resources.

284
Q

CodeDeploy

A

Automate Code Deployment

285
Q

Amazon Virtual Private Cloud - your own private network in AWS. You place EC2 instances and ELBs within your VPC. IP range is defined.

A

VPC

286
Q

Relational Database Service (RDS)

A

Run relational databases in the cloud - automates hardware provisioning, database setup, patching, and backups.

287
Q

Which of the following services allow you to mask downtime of your application by rerouting your traffic to healthy instances? (Select TWO.)

A

AWS ELB
Amazon Route 53

288
Q

Internet Gateway (IGW)

A

In front of your VPC to allow public traffic in

289
Q

Fully Managed Graph DB service

A

Neptune

290
Q

Go with a new vendor

A

Repurchase

291
Q

Geographically isolated, greatest possible fault tolerance

A

Why have Regions?

292
Q

software development framework for defining your cloud infrastructure in code and provisioning it through AWS CloudFormation.

A

The Cloud Development Kit (CDK)

293
Q

establishes a secure and private tunnel from your network or device to the AWS Cloud

A

Virtual Private Network (VPN)

294
Q

mobile and web applications

A

Amplify

295
Q

Run relational databases in the cloud - automates hardware provisioning, database setup, patching, and backups.

A

Relational Database Service (RDS)

296
Q

Storage Optimized instance?

A

High sequential read and write access to large datasets on local storage.

297
Q

CodeCommit

A

Store Code in Git repos

298
Q

High sequential read and write access to large datasets on local storage.

A

Storage Optimized instance?

299
Q

Key Management Service

A

Managed Creation and Control of Encryption Keys

300
Q

Develop and Deploy Applications

A

CodeStar

301
Q

protect your sensitive data

A

Macie

302
Q

EFS

A

Elastic File Service - can be mounted to multiple instances, scalable, like a hard drive in a file structure

303
Q

Replatform

A

Lift, tinker, & shift - make a few optimizations when you rehost

304
Q

Memory Optimized instance

A

Fast performance for processing large datasets in memory

305
Q

Migration services when you have slow/no connection - physical devices to transform and/or compute, can transfer your data then send to Amazon for uploading

A

Snow Family

306
Q

MongoDB-compatible databases

A

DocumentDB

307
Q

Isolated Cloud Resources

A

VPC

308
Q

Which of the following AWS Cost Management tools enable you to forecast future costs and usage of your AWS resources based on your past consumption?

A

Cost Explorer

309
Q

FinSpace

A

Analytics for the financial services industry

310
Q

AWS controls security OF the cloud, customer controls security IN the cloud.

A

Shared responsibility model

311
Q

user accounts for web and mobile apps

A

Cognito

312
Q

Migration Strategies 6 Rs

A
  1. Rehost 2. Replatform 3. Retire 4. Retain 5. Repurchase 6. Refactor
313
Q

Managed Services (AMS)

A

operate AWS more efficiently and securely. Leveraging AWS services and a growing library of automations, configurations, and run books,

314
Q

Stuff that will be deprecated isn’t worth the cost to move

A

Retain

315
Q

Only stored in one availabilty zone

A

S3 Infrequent Access One Zone

316
Q

Which of the following security group rules are valid?

A

Security groups accept IP address, IP address range, and security group ID as either source or destination of inbound or outbound rules.

317
Q

third-party data

A

Data Exchange

318
Q

The Cloud Digital Interface (CDI)

A

SDK provides customers with the ability to migrate timing-critical uncompressed video workflows to the cloud

319
Q

Application Migration Service

A

Automated lift-and-shift migration, simplifies and expedites migration to AWS.

320
Q

AppSync

A

GraphQL service

321
Q

Fully managed fault injection service

A

Fault Injection Simulator

322
Q

compute-bound applications that need high-performance processors

A

Compute Optimized instance

323
Q

Pricing Calculator

A

Create cost estimates different use cases

324
Q

Monitor resources and applications, track metrics, set alarms, dashboard of all metrics

A

CloudWatch

325
Q

S3 Intelligent-tiering

A

for data with unknown access patterns - analyzes and moves to the class matching use

326
Q

Which AWS service is commonly used for streaming data in real-time?

A

Amazon Kinesis

327
Q

Technical Account Manager

A

point of contact for everything, helps you use services in best way

328
Q

Fully managed SFTP, FTPS, and FTP service

A

Transfer Family

329
Q

Application resource registry for microservices, lets you name and discover your cloud resources

A

Cloud Map

330
Q

everyone gets, no cost, long SLAs, limited Trusted Advisor, free documentation

A

Basic Support Plan

331
Q

Which of the following security group rules are valid? (Select TWO.)

A

Inbound HTTP rule with security group ID as source, Inbound RDP rule with an address range as source

332
Q

CloudTrail

A

every API request is tracked, records all the details, for RCA

333
Q

Retire

A

Some stuff just isn’t needed

334
Q

Detective

A

Investigate potential security issues

335
Q

Reserved instance pricing

A

Steady-state workloads or predictable usage. 1- or 3- year term.

336
Q

AppFlow

A

connect your software as a service (SaaS) applications to AWS services, and securely transfer data. Use Amazon AppFlow flows to manage and automate your data transfers without needing to write code.

337
Q

Virtual Private Cloud (VPC)

A

Your chunk of AWS

338
Q
  1. Operational Excellence 2. Security 3. Reliability 4. Performance Efficiency 5. Cost Optimization
A

Well-Architected Framework 5 pillars

339
Q

Connect

A

Contact Center

340
Q

General Purpose instance

A

Balance of compute, memory, and networking

341
Q

Recode on new platform, new architecture, new features (AKA re-architecting)

A

Refactor

342
Q

Where can you track the costs you’ve incurred so far in your AWS account with a graphical visualization?

A

AWS Cost Explorer

343
Q

instance types

A
  1. General Purpose 2. Compute Optimized 3. Memory Optimized 4. Accelerated Computing 5. Storage Optimized
344
Q

Compute Optimizer

A

recommend optimal Compute resources

345
Q

Operational Excellence

A

Deliver business value, constantly improving

346
Q

Investigate potential security issues

A

Detective

347
Q

Directory Service

A

Host and Manage Active Directory

348
Q

Storage Gateway

A

connects an on-premises software appliance with cloud-based storage

349
Q

Macie

A

protect your sensitive data

350
Q

Analytics for the financial services industry

A

FinSpace

351
Q

some stuff always free (usually with usage limits), 12-months free, and free-trials

A

Free-tier

352
Q

AWS security responsibility

A

Physical data centers, hypervisor, software, compute, storage, database, networking, hardware, regions, zones, edge locations

353
Q

Amplify

A

mobile and web applications

354
Q

Test Android, iOS, and web apps on real devices in the cloud

A

Device Farm

355
Q

Service and Communications Protection or Zone Security

A

Customer responsibility

356
Q

Simple, fast, online data transfer

A

DataSync

357
Q

CloudEndure

A

Disaster Recovery

358
Q

AppConfig

A

deploy application configurations

359
Q

Operating systems, data, platform, IAM, firewalls, client-side encryption, server-side encryption

A

Customer security responsibility

360
Q

Patterns, principles for architecture, migration

A

Platform Perspective

361
Q

Cloud Directory

A

create directories for a variety of use cases, such as organizational charts, course catalogs, and device registries

362
Q

Which type of EC2 instance is the most suitable and cost-effective if the customer will be running mission-critical workloads continuously for a whole year?

A

Reserved

363
Q

Which of the following statements is true for AWS CloudTrail?

A

When you create a trail in the AWS Management Console, the trail applies to all AWS Regions by default

364
Q

What should you provide to your developers to allow them to access your AWS services through the AWS CLI?

A

Access keys

365
Q

What service should you use in order to add user sign-up, sign-in, and access control to your mobile app with a feature that supports sign-in with social identity providers such as Facebook, Google, and Amazon, and enterprise identity providers via SAML 2.0?

A

Amazon Cognito

366
Q

Your chunk of AWS

A

Virtual Private Cloud (VPC)

367
Q

security vulnerability assessment - vulnerabilities or deviations from best practices - security findings prioritized by level of severity

A

Inspector

368
Q

Query Data in S3 using SQL

A

Athena

369
Q

Customer security responsibility

A

Operating systems, data, platform, IAM, firewalls, client-side encryption, server-side encryption

370
Q

CloudTrailInsights

A

Detect unusual API activity

371
Q

Managed Creation and Control of Encryption Keys

A

Key Management Service

372
Q

Create and Use Standardized Products

A

Service Catalog

373
Q

analyze your costs, slice-n-dice historical costs

A

Cost Explorer

374
Q

operate AWS more efficiently and securely. Leveraging AWS services and a growing library of automations, configurations, and run books,

A

Managed Services (AMS)

375
Q

Which of the following is true regarding the AWS Cost and Usage report?

A

Allows you to load your cost and usage information into Amazon Athena, Amazon Redshift, and AWS QuickSight
Provides you with granular data about your AWS costs and usage

376
Q

Performance Efficiency

A

Use IT & computing resources efficiently

377
Q

VPC

A

Amazon Virtual Private Cloud - your own private network in AWS. You place EC2 instances and ELBs within your VPC. IP range is defined.

378
Q

Service Catalog

A

Create and Use Standardized Products

379
Q

4 Benefits of EC2

A
  1. Provision in minutes 2. stop using when done3. only pay for time you use 4. only pay for capacity you need
380
Q

CodeGuru

A

Find your most expensive lines of code

381
Q

Filter Malicious Web Traffic

A

WAF

382
Q

Cloud Map

A

Application resource registry for microservices, lets you name and discover your cloud resources

383
Q

Which of the following services are part of the AWS serverless platform that does not require provisioning, maintaining, and administering servers for backend components? (Select TWO.)

A

Amazon API Gateway
Lambda@Edge

384
Q

Snowball

A

Storage-optimized (80TB) or compute-optimized (42TB)

385
Q

Store Code in Git repos

A

CodeCommit