Cloud Partitioner Test 2 Flashcards

1
Q

Which of the following provides software solutions that are either hosted on or integrated with the AWS platform which may include Independent Software Vendors (ISVs), SaaS, PaaS, developer tools, management, and security vendors?

a.Technical Account Management
b.Concierge Support
c.AWS Partner Network Technology Partners
d.AWS Partner Network Consulting Partners

A

c.AWS Partner Network Technology Partners

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

In AWS, which of the following is a design principle that you should implement when designing your cloud architecture?

a.Utilize free or open-source software
b.Use multiple Availability Zones
c.Always use large servers to anticipate increase usage
d.Tightly couple your components

A

b.Use multiple Availability Zones

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

In Amazon EC2, which pricing construct adjusts its price based on supply and demand of EC2 instances?

a.On-Demand Instance
b.Spot Instance
c.Standard Reserved Instance
d.Convertible Reserved Instance

A

b.Spot Instance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Which service does AWS use to notify you when AWS is experiencing events that may impact you?

a.AWS Health
b.Amazon CloudWatch
c.AWS Support Center
d.Amazon SNS

A

a.AWS Health

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Which service would you use to speed up content delivery to your customers?

a.Amazon CloudWatch
b.Amazon CloudFront
c.AWS CloudTrail
d.Amazon S3 Transfer Acceleration

A

b.Amazon CloudFront

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

A company plans to migrate their on-premises MySQL database to Amazon RDS. Which AWS service should they use for this task?

a.AWS Glue
b.AWS Database Migration Service (AWS DMS)
c.AWS Schema Conversion Tool (AWS SCT)
d.AWS Server Migration Service

A

b.AWS Database Migration Service (AWS DMS)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Which of the following is a fully managed database in AWS that can be used to store JSON documents?

a.Amazon ElastiCache
b.Amazon Redshift
c.Amazon Aurora
d.Amazon DynamoDB

A

d.Amazon DynamoDB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Which of the following are defined as global services in AWS? (Select TWO.)

a.Amazon CloudFront
b.AWS Batch
c.Amazon RDS
d.Amazon DynamoDB
e.AWS Identity and Access Management

A

a.Amazon CloudFront
e.AWS Identity and Access Management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

Which of the following is best suited for load balancing Transmission Control Protocol (TCP), User Datagram Protocol (UDP), and Transport Layer Security (TLS) traffic and has the capability of handling millions of requests per second while maintaining ultra-low latencies?

a.Network Load Balancer
b.None of the above
c.Gateway Load Balancer
d.Application Load Balancer

A

a.Network Load Balancer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

__________ lets you provision a logically isolated section of the AWS Cloud where you can launch AWS resources in a virtual network that you define.

a.Amazon WorkSpaces
b.Amazon Lightsail
c.Amazon VPC
d.Virtual Private Gateway

A

c.Amazon VPC

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

A leading company wants to ensure that its cloud services are consistently delivered at the agreed-upon level of its business stakeholders. The company is considering using the AWS Cloud Adoption Framework (AWS CAF) to guide its cloud operations.

Which capabilities within the AWS CAF’s Operations perspective would be most helpful for the company?

a.Identity and Access Management
b.Modern Application Development
c.Performance and Capacity Management
d.Program and Project Management

A

c.Performance and Capacity Management

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Which service allows you to add powerful visual analysis feature to your applications that enables you to search, verify, and organize millions of images?

a.Amazon Rekognition
b.Amazon CloudSearch
c.Amazon SageMaker
d.Amazon Macie

A

a.Amazon Rekognition

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

A customer needs to establish a dedicated connection between their on-premises network and their AWS VPC that provides a more consistent network experience than Internet-based connections. Which of the following network services should they use?

a.VPN Connection
b.AWS Direct Connect
c.AWS VPN CloudHub
d.VPC Peering

A

b.AWS Direct Connect

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Which is a machine learning-powered security service that discovers, classifies, and protects sensitive data such as personally identifiable information (PII) or intellectual property?

a.Amazon GuardDuty
b.Amazon Rekognition
c.Amazon Macie
d.Amazon Cognito

A

c.Amazon Macie

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

A startup wants to move its on-premises infrastructure to AWS. The IT Security team wants to protect all of the applications against unintended and unauthorized access as well as potential vulnerabilities.

Which of the following capability of AWS CAF’s Security perspective would be most relevant to address this concern?

a.Data Protection
b.Threat Detection
c.Identity and Access Management
d.Infrastructure Protection

A

d.Infrastructure Protection

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Which of the following are the characteristics of Amazon EC2 Convertible Reserved Instances? (Select TWO.)

a.Allows the change of instance family, operating system, tenancy, and payment option
b.Provides the most significant discount of the RI types and are best suited for steady-state usage
c.Has the capability to change the attributes of the RI as long as the exchange results in the creation of Reserved Instances of equal or greater value
d.Allows you to match your capacity reservation to a predictable recurring schedule that only requires a fraction of a day, a week, or a month

A

a.Allows the change of instance family, operating system, tenancy, and payment option
c.Has the capability to change the attributes of the RI as long as the exchange results in the creation of Reserved Instances of equal or greater value

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

A customer has a number of on-demand instances running simultaneously to serve customer transactions. Occasionally, most of these instances do not perform any tasks when demand is low. What is a good cost optimization strategy to implement for this case?

a.Use spot instances instead of on-demand instances
b.Create a script that would automatically shut down an instance when utilization is low
c.Implement an auto scaling group to control the number of running instances at a time
d.Scale up the instances to a higher instance type to reduce the number of running instances at a time

A

c.Implement an auto scaling group to control the number of running instances at a time

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

Which of the following will allow you to create a data warehouse in AWS for your business intelligence needs?

a. Amazon RDS
b. Amazon DynamoDB
c. Amazon Redshift
d.Amazon S3

A

c. Amazon Redshift

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Which of the following services are part of the AWS serverless platform that does not require provisioning, maintaining, and administering servers for backend components? (Select TWO.)

a.Amazon ElastiCache
b.Amazon API Gateway
c.Amazon EMR
d.Amazon OpenSearch
e.Lambda@Edge

A

b.Amazon API Gateway
e.Lambda@Edge

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

Which of the following is the benefit of using Amazon Relational Database Service (Amazon RDS) over traditional database management?

a.Automatically apply both client-side and server-side encryption to your data by default
b.Automatically scales up the instance type of your RDS cluster based on demand
c.It is five times faster than standard MySQL databases and three times faster than standard PostgreSQL databases
d.Lower administrative burden through automatic software patching and maintenance of the underlying operating system

A

d.Lower administrative burden through automatic software patching and maintenance of the underlying operating system

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

In the AWS Shared Responsibility Model, whose responsibility is it to patch the host operating system of an Amazon EC2 instance?

a.Both AWS and the customer
b.Customer
c.AWS
d.Neither AWS nor the customer

A

c.AWS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

What is the most secure way to provide applications temporary access to your AWS resources?

a.-Create an IAM role and have the application assume the role
b.Create an IAM group that has access to the resources, and add the application there
c.Create an IAM policy that allows the application to access the resources, and attach the policy to the application
d.Create an IAM user with access keys and assign it to the application

A

a.-Create an IAM role and have the application assume the role

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

A space agency is using Amazon S3 to store their high-resolution satellite images and videos everyday. Which of the following should they do to minimize the upload time?

a.Upload the images and videos using the BatchWriteItem API
b.Use the Multipart upload API
c.Shift to S3 Intelligent-Tiering storage class
d.Enable Cross-Origin Resource Sharing (CORS)

A

b.Use the Multipart upload API

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

A customer in North Virginia, USA is doing some drone work and collecting environmental data. Which of the following services allows him to easily obtain terabytes of data storage for use in a space-constrained environment and allows him to transfer these data to AWS?

a.AWS Snowmobile
b.AWS Snowcone
c.AWS Data Pipeline
d.AWS Transit Gateway

A

b.AWS Snowcone

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

What services will help you create a highly available and scalable web app in the cloud? (Select TWO.)

a.Amazon CloudFront
b.Amazon EC2 Auto Scaling
c.AWS ELB
d.Amazon CloudWatch
e.Amazon AppStream 2.0

A

b.Amazon EC2 Auto Scaling
c.AWS ELB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

Which of the following is the most cost-effective payment option when you purchase either a Standard or Convertible Reserved Instance for a 1-year term?

a.No Upfront
b.Partial Upfront
c.All Upfront
d.Deferred

A

c.All Upfront

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

Which of the following is a data transport solution that accelerates moving terabytes to petabytes of data into and out of AWS using appliances with on-board storage and compute capabilities?

a.Lambda@Edge
b.AWS Snowball Edge
c.AWS Snowcone
d.AWS Snowmobile

A

b.AWS Snowball Edge

28
Q

Which of the following should you use to automatically transfer your infrequently accessed data in your S3 bucket to a more cost-effective storage class?

a.AWS Storage Gateway
b.Amazon S3 access control list
c.AWS Transfer Family
d.Amazon S3 Lifecycle Policy

A

d.Amazon S3 Lifecycle Policy

29
Q

A customer is building a cloud architecture in AWS which should scale horizontally or vertically in order to automatically adjust capacity and maintain steady, predictable performance at the lowest possible cost. Which of the following statements are true regarding horizontal and vertical scaling? (Select TWO.)

a.Upgrading to a higher EC2 instance type and adding more EC2 instances to your resource pool are both examples of Horizontal Scaling
b.Adding more EC2 instances to your resource pool is an example of Vertical Scaling
c.Upgrading to a higher EC2 instance type is an example of Horizontal Scaling
d.Adding more EC2 instances to your resource pool is an example of Horizontal Scaling
e.Upgrading to a higher EC2 instance type is an example of Vertical Scaling

A

d.Adding more EC2 instances to your resource pool is an example of Horizontal Scaling
e.Upgrading to a higher EC2 instance type is an example of Vertical Scaling

30
Q

Which of the following statements accurately describes the AWS Shared Responsibility model?

a.AWS is responsible for securing the physical infrastructure of the cloud, applications, and data in the cloud, while customers are only responsible for managing the access and identity of their users.
b.AWS is responsible for securing the physical infrastructure of the cloud, while customers are responsible for securing their applications and data in the cloud.
c.Both AWS and customers are equally responsible for securing the physical infrastructure of the cloud, applications, and data in the cloud.
d.Customers are responsible for securing the physical infrastructure of the cloud, while AWS is responsible for securing their applications and data in the cloud.

A

b.AWS is responsible for securing the physical infrastructure of the cloud, while customers are responsible for securing their applications and data in the cloud.

31
Q

Which of the following AWS Cost Management tools enable you to forecast future costs and usage of your AWS resources based on your past consumption?

a.AWS Cost and Usage report
b.Amazon Forecast
c.AWS Pricing Calculator
d.Cost Explorer

A

d.Cost Explorer

32
Q

A website is experiencing varying levels of traffic throughout the day and is not fully consuming server capacity all the time. Which advantage does AWS Cloud provide over traditional data centers when it comes to handling traffic load?

a.Quick capacity provisioning
b.High Availability
c.Elasticity
d.Durability

A

c.Elasticity

33
Q

Which of the following is typically used to secure your VPC subnets?

a.Network ACL
b.AWS Config
c.Security Group
d.AWS IAM

A

a.Network ACL

34
Q

Which among the services below can you use to test and troubleshoot IAM and resource-based policies?

a.IAM Policy Simulator
b.Amazon Inspector
c.AWS Config
d.Systems Manager

A

a.IAM Policy Simulator

35
Q

A customer needs to retrieve the instance ID, instance profile permissions, and kernel information of their EC2 instance for an app that is running within the same instance. Where can the customer find this information?

a.Resource tag
b.Instance metadata
c.Amazon Machine Image
d.Instance user data

A

b.Instance metadata

36
Q

A company wants to launch a Microsoft SQL Server database in AWS. The database instance should only be managed by the company’s DBA and must be accessible via RDP. A standard license for SQL Server is required but the company is not yet sure how much CPU and memory to allocate to the database.

Which option gives the most convenience and flexibility to determine the best database size while still being cost-effective?

a.Launch an EC2 instance and install MS SQL Server. Purchase a Standard MSSQL license from Microsoft and apply it to the database you installed.

b.Launch an Amazon Aurora database that runs MS SQL Server. Buy a Standard MSSQL license from the AWS License Manager service.

c.Use a Windows Server with SQL Server Standard bundled AMI so you won’t need to buy and manage your own license.

d.Launch an RDS instance that runs MS SQL Server Standard. Purchase a Standard MSSQL license and store it in the AWS Managed Services (AMS).

A

c.Use a Windows Server with SQL Server Standard bundled AMI so you won’t need to buy and manage your own license.

37
Q

Which of the following actions will AWS charge you for?

a.Provisioning elastic IPs and attaching them to running EC2 instances
b.Transfer of EC2 files between two AWS Regions
c.Setting up additional VPCs in your account
d.Network charges for the transfer of data from your data center to S3 through a VPN

A

b.Transfer of EC2 files between two AWS Regions

38
Q

Which of the following is true regarding the Business support plan in AWS?

a.Provides a 15-minute response time support if your production system goes down
b.Provides a 15-minute response time support if your business-critical system goes down
c.Provides a 1-hour response time support if your production system got impaired
d.Provides a 1-hour response time support if your production system goes down

A

d.Provides a 1-hour response time support if your production system goes down

39
Q

In compliance with the Sarbanes-Oxley Act (SOX) federal law, a US-based company is required to provide SOC 1 and SOC 2 reports of their cloud resources. Where are these AWS compliance documents located?

a.AWS GovCloud
b.AWS Certificate Manager
c.AWS Organizations
d.AWS Artifact

A

d.AWS Artifact

40
Q

Which of the following should you use if you need to provide temporary AWS credentials for users who have been authenticated via their social media logins as well as for guest users who do not require any authentication?

a.AWS Single Sign-On
b.Amazon Cognito Identity Pool
c.AWS AppSync
d.Amazon Cognito User Pool

A

b.Amazon Cognito Identity Pool

41
Q

Which of the folllowing is a threat detection service that continuously monitors for malicious activity and unauthorized behavior to protect your AWS accounts and workloads?

a.Amazon Macie
b.AWS Shield
c.Amazon GuardDuty
d.AWS WAF

A

c.Amazon GuardDuty

42
Q

A company needs to troubleshoot an issue on their serverless application which is composed of an API Gateway, Lambda function, and a DynamoDB database. Which service should they use to trace user requests as they travel through their entire application?

a.AWS X-Ray
b.AWS CloudTrail
c.Amazon Inspector
d.Amazon CloudWatch

A

a.AWS X-Ray

43
Q

Which of the following cloud design principles supports growth in users, traffic, or data size with no drop-in performance?

a.Scalability
b.Design for failure
c.Decouple your components
d.Go Serverless to reduce compute footprint

A

a.Scalability

44
Q

Which of the following is the most cost-effective instance purchasing option for hosting an application which will run non-interruptible workloads for a period of three years?

a.Amazon EC2 Spot Instances
b.Amazon EC2 On-Demand Instances
c.Amazon EC2 Standard Reserved Instances
d.Amazon EC2 Convertible Reserved Instances

A

c.Amazon EC2 Standard Reserved Instances

45
Q

Which of the following cloud best practices reinforces the use of the Service-Oriented Architecture (SOA) design principle?

a.Decouple your components.
b.Design for failure.
c.Implement elasticity.
d.Think parallel.

A

a.Decouple your components.

46
Q

A manufacturing company has multiple AWS accounts for various departments. As the company grows, they are experiencing an increase in its AWS costs and want to optimize its expenses by taking advantage of any available discounts.

Which of the following actions below will allow you to take advantage of volume discounts in AWS?

a.Move all of your AWS resources from multiple accounts to a single global account.
b.Upgrade to an AWS Enterprise support plan.
c.Use AWS Organizations and enable the consolidated billing feature.
d.Opt for an All upfront Convertible Reserved Instance pricing for a 3-year term.

A

c.Use AWS Organizations and enable the consolidated billing feature.

47
Q

Which of the following policies grant the necessary permissions required to access your Amazon S3 resources? (Select TWO.)

a.User policies
b.Object policies
c.Bucket policies
d.Network access control policies
e.Routing policies

A

a.User policies
c.Bucket policies

48
Q

Which of the following is a valid characteristic of an IAM Group?

a.Groups can be nested.
b.A group can contain many users, and a user can belong to multiple groups.
c.There’s no limit to the number of groups you can have.
d.There is a default group that automatically includes all users in the AWS account.

A

b.A group can contain many users, and a user can belong to multiple groups.

49
Q

Which of the following is used to enable instances in the public subnet to connect to the public Internet?

a.Internet Gateway
b.NAT instance
c.API Gateway
d.NAT Gateway

A

a.Internet Gateway

50
Q

You are permitted to conduct security assessments and penetration testing without prior approval against which AWS resources? (Select TWO.)

a.Amazon RDS
b.Amazon S3
c.Amazon Aurora
d.AWS Security Token Service (STS)
e.AWS Identity and Access Management (IAM)

A

a.Amazon RDS
c.Amazon Aurora

51
Q

A new AWS customer needs to deploy up to 100 t3a.large EC2 instances on their recently launched VPC, which is way beyond the default service limit. What should they do so they can launch their additional instances?

a.Create a case in the AWS Support Center page and request a service limit increase.
b.Use AWS Trusted Advisor to increase the default service limits for EC2 instances.
c.Do nothing. You can directly launch 100 t3a.large EC2 instances at the same time since AWS will automatically increase your service limit for you.
d.Enable Enhanced Networking.

A

a.Create a case in the AWS Support Center page and request a service limit increase.

52
Q

Which of the following is not required when launching an EBS-backed EC2 instance?

a.Elastic IP address
b.EBS Root volume
c.Security group
d.VPC and subnet specification

A

a.Elastic IP address

53
Q

Which of the following AWS service enables customers to analyze, investigate, and identify the root cause of potential security issues or suspicious activities in their AWS environment?

a.AWS Security Hub
b.Amazon Detective
c.Amazon GuardDuty
d.Amazon Inspector

A

b.Amazon Detective

54
Q

Which of the following are the best practices that can help secure your AWS resources using the AWS Identity and Access Management (IAM) service? (Select TWO.)

a.Lock away your AWS account root user access keys.
b.Use Bastion Hosts.
c.Use Inline Policies instead of Customer Managed Policies.
d.Grant least privilege.
e.Grant most privilege.

A

a.Lock away your AWS account root user access keys.
d.Grant least privilege.

55
Q

When a company uses AWS and decouple from their on-premises data center, they will be able to have which of the following benefits? (Select TWO.)

a.Massive discounts for bare metal servers from Amazon.com.
b.Decrease your TCO.
c.Deferred payments to their operational expenditures.
d.Replace low variable costs with upfront capital expenses (CAPEX).
e.Reduce time to market.

A

b.Decrease your TCO.
e.Reduce time to market.

56
Q

Which of the following tasks fall under the sole responsibility of AWS based on the shared responsibility model?

a.Implementing IAM policies
b.Physical and environmental controls
c.Patch Management
d.Applying Amazon S3 bucket policies

A

b.Physical and environmental controls

57
Q

Which is a fully-managed source control service that allows you to host Git-based repositories and enable code collaboration for your team via pull requests, branching, and merging?

a.AWS CodeCommit
b.AWS CodeBuild
c.AWS CodeStar
d.AWS CodeDeploy

A

a.AWS CodeCommit

58
Q

Which AWS service is commonly used for streaming data in real-time?

a.Amazon EMR
b.Amazon OpenSearch Service
c.Amazon Data Pipeline
d.Amazon Kinesis

A

d.Amazon Kinesis

59
Q

A customer currently has a Basic support plan and they are planning to use the Infrastructure Event Management, Well-Architected Reviews and Operations Reviews features in AWS. What should they do in order to access these features in the most cost-effective manner?

a.None since these features are already included in their Basic support plan.
b.Upgrade to Developer support plan.
c.Upgrade to Business support plan.
d.Upgrade to Enterprise support plan.

A

d.Upgrade to Enterprise support plan.

60
Q

An insurance company plans to use AWS to visually create, run, and monitor ETL workflows. Which of the following services would you recommend?

a.AWS Storage Gateway
b.Amazon Athena
c.Amazon QuickSight Q
d.AWS Glue Studio

A

d.AWS Glue Studio

61
Q

What is the best type of instance purchasing option to choose if you will run an EC2 instance for 3 months to perform a job that is uninterruptible?

a.Reserved
b.Spot
c.Dedicated
d. On-Demand

A

d. On-Demand

62
Q

The IT Security team of your company needs to conduct a vulnerability analysis on your application servers to ensure that the EC2 instances comply with the annual security IT audit. You need to set up an automated security assessment service to improve the security and compliance of your applications. The solution should automatically assess applications for exposure, vulnerabilities, and deviations from the AWS best practices.

Which of the following options would you implement to satisfy this requirement?

a.AWS Inspector
b.AWS WAF
c.Amazon CloudFront
d.AWS Snowball

A

a.AWS Inspector

63
Q

There is an incident with your team where an S3 object was deleted using an account without the owner’s knowledge. What can be done to prevent unauthorized deletion of your S3 objects?

a.Set your S3 buckets to private so that objects are not publicly readable/writable
b.Configure MFA delete on the S3 bucket.
c.Create access control policies so that only you can perform S3-related actions
d.Set up stricter IAM policies that will prevent users from deleting S3 objects

A

b.Configure MFA delete on the S3 bucket.

64
Q

Which of the following are pillars of the AWS Well-Architected Framework? (Select TWO.)

a.Scalability
b.High Availability
c.Performance Efficiency
d.Agility
e.Sustainability

A

c.Performance Efficiency
e.Sustainability

65
Q

Which of the following is one of the benefits of migrating your systems from an on-premises data center to AWS Cloud?

a.Eliminates the need for the customer to implement client-side or service-side encryption for their data
b.Enables the customer to eliminate high IT infrastructure costs since cloud computing is absolutely free
c.Completely eliminates the administrative overhead of patching the guest operating system of their EC2 instances
d.Enables the customer to focus on business activities rather than on the heavy lifting of racking, stacking, and powering servers

A

d.Enables the customer to focus on business activities rather than on the heavy lifting of racking, stacking, and powering servers