Cloud Practitioner Exam Flashcards
List out 6 benefits of AWS Cloud
- Variable instead of capital expense
- Economies of scale by sharing servers with others
- Don’t have to ‘guess’ capacity
- Quicker to start operating
- Don’t need to manage data centre
- Global
How does AWS Cloud allow users to focus on business value?
AWS takes care of IT infrastructure concerns, allowing orgs to focus on their business.
Define at least 6 items that would be part of a Total Cost Ownership Proposal
- Location
- Service
- Tenancy
- Operating System
- Workload
- Number of Instances
Identify which operations will reduce costs by moving to the cloud
Infrastructure costs
Explain the 5 cloud architecture design principles
- Perform operations as code
- Make frequent, small reversible changes
- Refine operations procedures frequently
- Anticipate failure (pre-mortem exercises)
- Learn from all operational failures
What are the 7 elements of the shared responsibility model
- Physical security
- Client and end-point protection
- Identity and access management
- Application-level controls
- Network controls
- Host infrastructure
- Physical security
Rank the following models from most customer responsible to most cloud provider responsible:
SaaS
FaaS
On-premises
IaaS
PaaS
- On-premises
- IaaS
- PaaS
- SaaS
- FaaS
What is the customer always responsible for in the shared responsibility model?
Data classification and accountability
What is the core responsibility of AWS in the share responsibility model?
Protecting the infrastructure that runs the cloud services offered
In the shared responsibility model, whose responsibility is the security of your platform for PaaS environments
Shared Responsibility
In the shared responsibility model, the responsibility for data security in SaaS environments belongs to ________
Customer
Shared responsibility model
Who is responsible for Application level controls in IaaS?
Customer
Shared responsibility model
Who is responsible for Application level controls in PaaS?
Both customer and cloud provider
Shared responsibility model
Who is responsible for Network Controls in FaaS?
Cloud Provider
Shared responsibility model
Who is responsible for IAM in PaaS?
both customer and cloud provider
Where can you find AWS compliance information?
AWS Artifact
Where are system and organisations control located in AWS?
AWS Artifact
Identity and access management (IAM) is capable of performing the following tasks:
- Fine grained access to AWS resources
- Providing options for multi-factor authentication
- Analysing access for users and services across AWS environment
- Integrating with existing corporate directories
AWS CloudTrail is where:
trails and recent activities are summarized
CloudTrail Management Events for the last ___ days are displayed in the Event History
90
In CloudTrail, when are events recorded?
When resources are created, updated or deleted
What is a trail?
It is a generated path of tracked actions
What does an event log include:
event name, time, user, kind of resource, resource name
CloudTrail Insights allow customers to ….
monitor their accounts for abnormal behaviour