cyber wista questions Flashcards

1
Q

You are supporting a production AWS EC2 instance. You are notified that your AWS instance has corrupted EBS volume. What AWS resource would geographically identify the issue and allow you to create and configure forwarding notifications across multiple channels?

A) AWS inspector

B) AWS Personal Health Dashboard

C) AWS Config

D) AWS Trusted Advisor

A

B) AWS Personal Health Dashboard

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

Which two actions can you perform using AWS cost explorer? ( choose two)

A) view your top five cost consuming services

B) create estimates for use cases on AWS

C) find the third-party budgeting software

D) set alarms for budget overrun

E) view cost of resources by tags

A

A) view your top five cost consuming services

E) view cost of resources by tags

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

You need to allow your development team to efficiently package application code and it’s dependencies together to be used across different systems. Which of these are container orchestration tools you use on AWS? (Choose two)

A) EFS

B) RDS

C) EKS

D) ECS

E) EBS

A

C) EKS

D)ECS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Which AWS service should you use to reduce miss reporting and noncompliance risk, save costs on cloud infrastructure, and ensure noncompliant server usage is stopped before it occurs?

A) Amazon recognition

B) AWS x-ray

C) AWS license manager

D) Amazon forecast

A

C) AWS license manager

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

You are to inventory all of the IT assets across your systems as per their usage and analyze infrastructure, dependencies, and application components you also want to organize resources into logical application groups to better understand their relationship and dependencies which of the following technologies should you use for this?

A) AWS IAM identity center

B) AWS schema conversion tool

C) AWS migration hub

D) AWS API Gateway

A

C) AWS migration hub

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is the purpose behind configuring dynamic architectures for growth and elasticity on AWS

A) AWS usage should be focused on building applications spread across multiple availabilities zones and regions

B) auto scaling features to account for increased capacity

C) AWS usage should be focused on Amazon S3 components

D) reduced cost

A

A) AWS usage should be focused on building applications spread across multiple availabilities zones and regions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Which pillar of the AWS well architected framework covers the capability for effective running of workload and gaining insight into their operations?

A) reliability

B) security

C) operational excellence

D) performance efficiency

A

C) operational excellence

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

You need to use a technology that can help your team accelerate it web and mobile application development using open source frameworks, and app hosting services. Which of these AWS systems would be suitable for this need?

A) AWS app sync

B) AWS compute optimizer

C) Amazon web spaces web

C) AWS amplify

A

C) AWS amplify

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

You are creating a news reporting application and need a way to provide a text to speech capabilities that have life like speech and consulate accent. What would you use for this?

A) translate

B) Polly

C) forecast

D) deep learning AMIs

A

A) translate

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

You are teaching a class on Amazon S3 storage what are two primary characteristics you might write on the chalkboard first? (Choose two)

A) storage must be attached to Amazon S3 and then pre-allocated for use

B) each object has a specific URL

C) it can be used as a primary source for holding database data files

D) and Amazon S3 bucket cannot be transferred between accounts

E) objects house within Amazon. S3 are public by default, but can be changed to private.

F) it can store objects with a size over 20 TB

A

B) each object has a specific URL

D) and Amazon S3 bucket cannot be transferred between accounts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What does Amazon recommend for protecting data in transit when connecting to a public cloud service that uses remote desktop protocol (RDP) connection

A) secure shell (SSH)

B) a non-SSL/TLS connection

C) self signed certificates

D) X. 509 certificate.

A

D) X. 509 certificate.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Which AWS service should you use when you need to perform pricing for climate risk into a portfolio reduce a company’s carbon footprint or make alignment with new environmental, social and governance (ESG) requirements?

A) AWS data exchange

B) AWS storage gateway

C) AWS outpost

D) AWS trusted advisor

A

A) AWS data exchange

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

Which Amazon S3 bucket policy can limit access to a specific object?

A) Gmail account

B) using a custom prefix

C) company stock ticker

D) network subnet

A

B) using a custom prefix

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

You need to select the correct computing options for your companies’s workload. Which EC two instance type would be the right choice for workload the process data set for higher performance databases.?

A) general purpose

B) memory optimized

C) storage optimized

D) compute optimized

A

B) memory optimized

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

You have created a VPC if your company’s AWS deployment you need to implement a way of controlling incoming and outgoing for your EC two instance on the VPC what would you use for this?

A) AWS marketplace

B) security groups

C) NACLs

D) AWS WAF

A

C) NACLs

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Which of the following security events would AWS trusted advisor look for within your AWS infrastructure?

A) security groups with restricted access

B) protected access keys

C) I am keys rotated after 30 days

D) security groups with unrestricted access

A

D) security groups with unrestricted access

16
Q

Which perspective of the AWS cloud adoption framework would you use to gain knowledge on updating the skills of the company staff and all company processes?

A) operations

B) business

C) governance

D) people

17
Q

Which two activities will the database company need to pay special attention to so that it can grow its business value? (choose two.)

A) the way it’s data tables are built

B) how my SQL is installed on it servers

C) the method used for creating its data structures

D) the way, database backups are stored

E) how the OS for servers is patched

A

A) the way it’s data tables are built

C) the method used for creating its data structures

18
Q

Which two support cases can you create using AWS support from the AWS management console? (choose two.)

A) support plan change

B) change the route account email address

C) account and billing

D) closing your account

E) service limit increase

A

C) account and billing

E) service limit increase

19
Q

What dynamo DB feature is an in memory cashing component that delivers microsecond responses for its front end applications?

A) Amazon dynamo DB streams

B) Amazon elastiCache for redis

C) cross-section replication

D) DAX

20
Q

You need to use an AWS service for managing an automated task performed on many AWS cloud formation stacks at the same time which of these systems should you use for this requirement?

A) AWS application discovery service

B) AWS launch wizard

C) AWS resource groups

D) AWS application migration service

A

C) AWS Resource Groups

21
Q

What type of application could you use if you wanted to install security patches or service packs beyond the patch level for an AMI?

A) DAX

B) Bootstrapping

C) trusted advisor

D) I am policies

A

B) Bootstrapping

22
Q

You need to create a historical CPU report on your Amazon elastic compute cloud instance how long does Amazon cloud watch keep metric data?

A) 6 months

B) 15 months

C) 1 month

D) 15 days

A

B) 15 months new York, New York

22
Q

Your company is considering a migration strategy for moving its operations onto AWS cloud. You need to move to the cloud with minimal changes to your existing applications. Which of these will you use?

A) re-hosting

B) refacing

C) Replatforming

D) re-purchasing

A

C) Replatforming

23
Which of the following is considered a security best practice for an operating system or application? A) create a primary function for the Amazon EC, two instance such as separating web servers from database servers. B) remove IAM user account every month C) enable potentially useful protocols and services to save on development time D) add additional EBS volumes in case they are needed at a later time
A) create a primary function for the Amazon EC, two instance such as separating web servers from database servers.
24
24
Which AWS service provide provides protection against de do attack for free and is a key component of the reliability pillar within the AWS framework A) AWS ELB B) AWS Shield C) AWS Route53 D) AWS DIrect Connect
B) AWS Shield waste your time
25
A company has a physical tape library for storing data backups. The tape library is running out of space. The company needs to extend the tape library capacity to the AWS cloud. Which AWS service should the company use to meet this requirement? Options: A. Amazon Elastic File System (Amazon EFS) B. Amazon Elastic Block Store (Amazon EBS) C. Amazon S3 D. AWS Storage Gateway
D. AWS Storage Gateway
26
Which of the following promotes AWS Cloud architectural best practices for designing and operating reliable, secure, efficient, and cost-effective systems? Options: A. AWS Serverless Application Model framework B. AWS Business Support C. Principle of least privilege D. AWS Well-Architected Framework
D. AWS Well-Architected Framework
27
A company has been storing monthly reports in an Amazon S3 bucket. The company exports the report data to comma-separated value (.csv) files. A developer wants to write a simple query that can read all those files and generate a summary report. Options: A. Amazon S3 Select B. Amazon Athena C. Amazon Redshift D. Amazon EC2
B. Amazon Athena
28
Which AWS service provides encryption at rest for Amazon RDS and for Amazon Elastic Block Store (Amazon EBS) volumes? Options: A. AWS Lambda B. AWS Key Management Service (AWS KMS) C. AWS WAF D. Amazon Rekognition
B. AWS Key Management Service (AWS KMS)
29
A company is running applications on Amazon EC2 instances in the same AWS account for several different projects. The company wants to track infrastructure costs for each of the projects separately. The company must perform this tracking with the least possible impact on existing infrastructure and at no additional cost. Options: A. Use a different Amazon EC2 instance type for each project. B. Publish project-specific Amazon CloudWatch custom metrics for each application. C. Deploy EC2 instances for each project in a separate AWS account. D. Use cost allocation tags with values specific to each project.
D. Use cost allocation tags with values specific to each project.
30
What is AWS Direct Connect? Options: A. A service for connecting on-premises networks to AWS B. A tool for transferring large files C. An instant messaging service D. A database management system
A. A service for connecting on-premises networks to AWS
31
Which capabilities are in the platform perspective of the AWS Cloud Adoption Framework (AWS CAF)? (Select TWO.) Options: A. Performance and capacity management B. Data engineering C. Continuous integration and continuous delivery (CI/CD) D. Infrastructure protection E. Change and release management
B. Data engineering,C. Continuous integration and continuous delivery (CI/CD)
32
Which of the following are components of an AWS Site-to-Site VPN connection? (Select TWO.) Options: A. AWS Storage Gateway B. Virtual private gateway C. NAT gateway D. Customer gateway E. Internet Gateway
B. Virtual private gateway,D. Customer gateway
33
A company needs an automated vulnerability management service that continuously scans AWS workloads for software vulnerabilities. Which AWS service will meet these requirements? Options: A. Amazon GuardDuty B. Amazon Inspector C. AWS Security Hub D. AWS Shield
B. Amazon Inspector
34
What are the responsibilities of a company that is using AWS Lambda? (Select TWO.) Options: A. In-code security B. CPU resource selection C. Operating system patching D. Code writing and updating E. Underlying infrastructure security
A. In-code security,D. Code writing and updating
35
A company needs to migrate all its development teams to a cloud-based integrated development environment (IDE). Options: A. AWS CodeBuild B. AWS Cloud9 C. AWS OpsWorks D. AWS Cloud Development Kit (AWS CDK)
B. AWS Cloud9
36
A company has an application with robust hardware requirements. The application must be accessed by students who are using lightweight, low-cost laptops. Options: A. Amazon AppStream 2.0 B. AWS AppSync C. Amazon WorkLink D. AWS Elastic Beanstalk
A. Amazon AppStream 2.0