AWS questins 2 Flashcards
learn
Capacity forecasting involves predicting the computing resources needed to meet future demand.
Economies of scale
is an WAF design principle for operational excellence in the AWS cloud?
Make frequent small reversible changes.
benefit of using AWS serverless computing?
Management of infrastructure is offloaded to AWS.
Customers responsibility?
Maintain the configuration of guest operating systems and applications , manage Decision involving encryption options.
Company wants to verify if MFA is enabled for all users?
IAM credential reports
The company uses AWS security services and tools. The company needs a service to help manage the security alerts and must organize the alerts into a single dashboard.
AWS Security Hub
AWS security Hub ( Definition)
Comprehensive security service that provides a centralized view of security alerts and findings from various AWS services, as well as supported third party security tools. it helps you identify and prioritize security issues. AWS Security Hub is designed for managing and organize security alerts into a single dashboard.
Company wants to run its workloads in the AWS cloud effectively, reduce management overhead, and improve processes. Which WAF pillar its presents?
Operational excellence
Auditor requested that a company provide a list of all its IAM users, including the status of user credentials and access keys?
Download the IAM credential report, then provide the report to the auditor.
Which task can a company perform by using security groups in the AWS cloud?
Allow access to an Amazon EC2 instance through only a specific port.
Security groups Defination
allows you to control inbound and outbound traffic to an Amazon Ec2 instance. you can specify rules to allow traffic only on specific ports, providing fine grained control over network access to the Ec2 instances.
Company Plans to run a compute-intensive workload that uses graphics processing units (GPUs?
Accelerated Computing
features of network ACLs as they are used in the AWS cloud?
They are Stateless , They process rules in order , starting with the lowest numbered rule, when deciding whether to allow traffic.
Capabilities are in the platform prespective of the AWS CAF?
Data Engineering , Continuous integration and continuous delivery.
S3 storage class most cost effective for unknown access patterns?
S3 Intelligent-Tiering
CAF security perspective Capabilities?
Incident Response , Infrastructure Protection
IAM policy - Grant the necessary permissions for users to accomplish required tasks?
Create a Custom IAM policy
Who is responsible for rotating access keys?
The customer is responsible for rotating keys.
Which AWS service should be used to determine what action made EC2 instance inaccessible?
AWS cloud trail
chracter of the AWS account root user?
is the first sign in identity that is availaible when an AWs account is created.
Company wants to quickly implement a continuous delivery (CI/CD) pipeline. Which AWS service meets the requirement?
AWS codestar
AWS codestar
is fully managed service that makes it easy for developers TO DEVELOPE build and deploy applications on AWS. it provides a pre-configured CI/CD pipeline, making it easy to set up continuous integration and delivery for your applications.
Cloud deployment model uses AWS outposts as part of the application deployment infrastracture?
Hybrid
fully managed graph database service on AWS?
Amazon neptune