Must Knows! Flashcards

1
Q

Which service should you use if you need a scalable, fast, and flexible non-relational database service?

A

Amazon DynamoDB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What is a fully managed NoSQL database service that provides fast and predictable performance with seamless scalability?

A

Amazon DynamoDB

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What is a data warehousing service that is specifically designed for online analytic processing (OLAP) and business intelligence (BI) applications which require complex queries against large datasets?

A

Amazon Redshift

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Which database is used primarily as a relational database?

A

Amazon RDS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

Which database is commonly used as scalable object storage and not as a nonrelational database?

A

Amazon S3

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What is zone security?

A

Customer-specific control based on the AWS Shared Responsibility Model

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What can you use to connect your on-premises data center and your cloud architecture in AWS?

A

Virtual Private Gateway and Amazon Route 53

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What is a highly available and scalable cloud Domain Name System (DNS) web svc?

A

Amazon Route 53

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

What enables EC2 instances in private subnet to connect to the Internet or other AWS services, but prevent the Internet from initiating a connection with those instances?

A

NAT Gateway

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

What is VPC Peering? What can you VPC Peer with?

A

Networking connection between two VPCs; can create a VPC peering connection between your own VPCs, with a VPC in another AWS account, or with a VPC in a different AWS Region.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

What are six advantages of using Cloud Computing?

A
  1. Trade capital expense for variable expense
  2. Benefit from massive economies of scale
  3. Stop guessing capacity
  4. Increase speed and agility
  5. Stop spending money running and maintaining data centers
  6. Go global in minutes
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

In the VPC dashboard of your AWS Management Console, which of the following services or features below can you manage?

A

All of the components of your VPCs (Subnets, Internet Gateways, NAT Gateways, Elastic IPs and many more)

Control the security of your VPC by configuring the Network ACLs and Security Groups

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

How can you apply and easily manage the common access permissions to a large number of IAM users in AWS?

A

Attach policies/permissions to new IAM Group; then, add the IAM Users to the IAM Group

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

Which of the following services in AWS could you use to deploy a web application to servers running on-premises?

A

OpsWorks & CodeDeploy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

What are patterns of cloud architecture for mission-critical application in AWS which must be highly available?

A

Use multiple Availability Zones to ensure that the application can handle the failure of any single component.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

What can improve the security of your Identity and Access Management (IAM) users?

A
  1. Rotate credentials regularly
  2. Configure a strong password policy for your users
  3. Enable MFA
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Which type of Elastic Load Balancer supports path-based routing, host-based routing, and bi-directional communication channels using WebSockets?

A

Application Load Balancer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

Which type of Elastic Load Balancer is best suited for load balancing of Transmission Control Protocol (TCP), User Datagram Protocol (UDP) and Transport Layer Security (TLS) traffic where extreme performance is required. Operating at the connection level (Layer 4), Network Load Balancer routes traffic to targets within Amazon Virtual Private Cloud (Amazon VPC) and is capable of handling millions of requests per second while maintaining ultra-low latencies, as well as sudden and volatile traffic patterns?

A

Network Load Balancer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

What is a security service that uses machine learning to automatically discover, classify, and protect sensitive data in AWS?

A

Amazon Macie

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

What service is primarily used for governance, compliance, operational auditing, and risk auditing of your AWS account?

A

AWS CloudTrail

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

What service is just a virtual private server (VPS) solution and is not used for Amazon EC2 Scaling. This service provides developers compute, storage, and networking capacity and capabilities to deploy and manage websites and web applications in the cloud?

A

Amazon LightSail

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

How does AWS lessen the time to provision your IT resources?

A

It provides various ways to programmatically provision IT resources

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

What is capable of inspecting your AWS environment and makes recommendations for saving money, improving system performance and reliability, or closing security gaps?

A

AWS Trusted Advisor

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

What is a is capable of inspecting your AWS environment and makes recommendations for saving money, improving system performance and reliability, or closing security gaps?

A

AWS Cost Explorer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Q

What gives you the ability to set custom budgets that alert you when your costs or usage exceed (or are forecasted to exceed) your budgeted amount?

A

AWS Budgets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
26
Q

What is an automated security assessment service that helps improve the security and compliance of applications deployed on AWS?

A

AWS Inspector

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
27
Q

What categories does Trusted Advisor check?

A

Cost optimization, security, fault tolerance, performance, and service limits

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
28
Q

Which Cost Management Tool allows you to track your Amazon EC2 Reserved Instance (RI) usage and view the discounted RI rate that was charged to your resources?

A

AWS Cost and Usage Report

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
29
Q

What provides a unified user interface so you can view operational data from multiple AWS services and allows you to automate operational tasks across your AWS resources?

A

AWS Systems Manager

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
30
Q

What additional features do Business or Enterprise support plans have?

A

Use-case guidance, AWS Trusted Advisor, API for interacting w/ support center and trusted advisors, and 3rd party software support

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
31
Q

What is an audit service that records all API calls made to your AWS account?

A

CloudTrail

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
32
Q

What is an automated security assessment service for EC2 instance (virtual OS)?

A

Amazon Inspector Service

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
33
Q

Opportunity to replace upfront _____ with ___ variable costs is a key financial benefit of migrating systems from on-prem to AWS

A

CAPEX & low

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
34
Q

In the Shared Responsibility Model, what are shared control between AWS and the customer?

A

Controls which apply to both the infra and customer layer, including Patch mgmgt, config mgmt, and awareness & training

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
35
Q

Which service provides event history of your AWS account activity, including actions taken through the AWS Management Console, AWS SDKs, command line tools, and other AWS services?

A

AWS CloudTrail

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
36
Q

What is a service that enables you to assess, audit, and evaluate the configurations of your AWS resources?

A

AWS Config

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
37
Q

What should you use to retrieve compliance-related docs, such as ISO certifications, Payment Card Industry (PCI), and Service Organization Control (SOC) reports?

A

AWS Artifacts

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
38
Q

What has 99.99999999999% reliability and durability?

A

S3

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
39
Q

What service makes it easy to set up, operate, and scale a relational database in the cloud by providing cost-efficient and resizable capacity while automating time-consuming administration tasks such as hardware provisioning, database setup, patching and backups?

A

Amazon RDS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
40
Q

What can you use to launch a new Amazon RDS database cluster to your VPC?

A

AWS CloudFormation
AWS CLI
AWS Management Console

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
41
Q

What is a fully managed continuous delivery service that helps you automate your release pipelines for fast and reliable application and infrastructure updates?

A

AWS CodePipeline

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
42
Q

Who is a senior customer service agent who is assigned to your account when you subscribe to an Enterprise or qualified Reseller Support plan?

A

AWS Concierge

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
43
Q

What can a developer use to interact with your AWS services?

A

AWS Management Console
AWS SDKs
AWS CLI

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
44
Q

Which service should you use if there is a need to launch a customized self-hosted database which requires a scheduled shutdown every night to save on cost?

A

Amazon EC2 instance w/ an EBS volume

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
45
Q

What is the recommended storage option when you run a database on an instance?

A

Amazon EBS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
46
Q

Who helps customers of all sizes design, architect, migrate, or build new applications on AWS?

A

APN Consulting Partners

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
47
Q

Who provides software solutions that are either hosted on, or integrated with, the AWS platform?`

A

APN Technology Partners

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
48
Q

What service allows you to set coverage targets and receive alerts when your utilization drops below the threshold you define?

A

AWS Budgets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
49
Q

What allows you to monitor your estimated AWS charges, this service still does not allow you to set coverage targets and receive alerts when your utilization drops below the threshold you define?

A

Amazon CloudWatch Billing Alarm

the latter is AWS Budget

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
50
Q

What is a highly available and scalable cloud Domain Name System (DNS) web service in AWS?

A

Amazon Route 53

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
51
Q

What is designed to give developers and businesses an extremely reliable and cost-effective way to route end users to Internet applications by translating names like www.tutorialsdojo.com into the numeric IP addresses like 192.0.2.1 that computers use to connect to each other?

A

Amazon Route 53

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
52
Q

What is a service that makes it easier for you to add powerful visual analysis to your applications that enables you to search, verify, and organize millions of images?

A

Rekognition

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
53
Q

What is a core Windows service that provides the foundation for many enterprise-class Microsoft-based solutions, including Microsoft SharePoint, Microsoft Exchange, and .NET applications?

A

Active Directory Domain Service

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
54
Q

What is an easy-to-use cloud platform that offers everything you need to build an application or website, plus a cost-effective, monthly plan?

A

Lightsail

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
55
Q

What are the benefits of Edge location?

A
  1. Improves application performance by delivering content closer to your users
  2. Provides caching which reduces the load on your origin servers
How well did you know this?
1
Not at all
2
3
4
5
Perfectly
56
Q

Which services are regarded as regional services in AWS?

A

AWS Batch

Amazon EFS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
57
Q

What EC2 instance purchasing option provides 75% discount?

A

Standard Reserved Instance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
58
Q

What EC2 instance purchasing option provides 54% discount?

A

Convertible Reserved Instance

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
59
Q

Which service should a customer use if there is a requirement to launch a new database in AWS where the customer assumes the responsibility and management of the guest operating system, including updates and security patches?

A

Amazon EC2

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
60
Q

Be happy

A

Be happy

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
61
Q

What is a fully-managed document database service that supports MongoDB workloads?

A

Amazon DocumentDB

62
Q

Which AWS service should you use if you need to launch a highly scalable MySQL database?

A

Amazon Aurora

63
Q

What is a fully managed by Amazon Relational Database Service (RDS), which automates time-consuming administration tasks like hardware provisioning, database setup, patching, and backups?

A

Amazon Aurora

64
Q

What service makes it easy for you to deploy and run Memcached or Redis protocol-compliant server nodes in the cloud.?

A

Amazon ElastiCache

65
Q

What is the most cost-effective AWS Support Plan to use if you need access to AWS Support API for programmatic case management?

A

Business

66
Q

*Which AWS services should you use to store rapidly changing data with low read and write latencies?

A

Amazon EBS & Amazon RDS

67
Q

What can Amazon CloudWatch Logs can accomplish?

A
  1. Adjust the retention policy for each log group

2. Monitor application logs from Amazon EC2 Instances

68
Q

Which combination of AWS services should you use to serve the files with lowest possible latency?

A

CloudFront & Amazon S3

69
Q

What is a caching feature for DynamoDB?

A

Amazon DynamoDB Accelerator (DAX)

70
Q

What is your one-stop-shop for accessing the most granular data about your AWS costs and usage, which also allows you to load your cost and usage information into Amazon Athena, Amazon Redshift, AWS QuickSight, or a tool of your choice?

A

Cost and Usage Report

71
Q

What can you do with Cost and Usage Report?

A
  1. Access comprehensive AWS cost and usage information
  2. Track your Amazon EC2 Reserved Instance (RI) usage
  3. Leverage strategic data integrations
72
Q

A company is planning to adopt a hybrid cloud architecture with AWS. Which of the following can they use to assist them in estimating their costs?

A

AWS Total Cost of Ownership (TCO) Calculator

To estimate a bill, use the AWS Pricing Calculator.

73
Q

What service can forecast your costs based on your previous usage?

A

AWS Cost Explorer

74
Q

What service provides the lowest-cost storage option for retaining database backups which also allows occasional data retrieval in minutes?

A

Amazon Glacier

75
Q

What is an object storage service that offers industry-leading scalability, data availability, security, and performance?

A

Amazon S3

76
Q

What service should you use to host a new Microsoft SQL Server database in AWS for an urgent project?

A

Amazon RDS & EC2

77
Q

Which IAM identity is associated with the access keys that are used in managing your cloud resources via the AWS Command Line Interface (AWS CLI)?

A

IAM User

78
Q

What are the benefits of Amazon RDS, ElastiCache, and CloudSearch?

A

They are all managed, i.e. easy to set up, operate, and scale a relational database in the cloud; provides cost-efficient and resizable capacity while automating time-consuming administration tasks such as hardware provisioning, database setup, patching and backups. It frees you to focus on your applications so you can give them the fast performance, high availability, security and compatibility they need. Periodically, Amazon RDS performs maintenance on Amazon RDS resources. Maintenance most often involves updates to the DB instance’s underlying hardware, underlying operating system (OS), or database engine version.

79
Q

What are the policy options for Route 53?

A

Simple routing policy, weighted routing policy, latency routing policy (redirect user based on user to minimize latency), failover routing policy

80
Q

What is an AWS CDN (content delivery network) service?

A

AWS CloudFront

81
Q

What service improves read performance and user experience by caching content at the edge?

A

AWS CloudFront

82
Q

What can CloudFront cache from?

A

S3 bucket & Custom Origin (Http)

Customer origin includes:
App Load Balancer, EC2 instance, S3 website, and any http backend

83
Q

Global edge network

A

CloudFront

84
Q

What is CloudFront good for?

A

Static content that must be available everywhere

85
Q

What should you use to replicate entire S3 bucket into another region?

A

S3 Cross Region Replication

86
Q

What is great for content that needs to be available at low latency in few regions? How does it work?

A

S3 Cross Region Replication

File is transferred to an AWS edge location, which will then forward the data to the S3 bucket in the target region to increase transfer speed

87
Q

What improves global application availability and (60%) performance using AWS global internal network?

A

AWS global accelerator

88
Q

What are the similarities between AWS Global Accelerator and CloudFront?

A

Both use AWS global network and edge locations, and integrate with AWS Shield for DDoS protection

89
Q

What are the differences between AWS Global Accelerator and CloudFront?

A

CloudFront uses caching (of images & videos & dynamic content - API & dynamic content) and content is served at the edge

Global Accelerator does not use caching; they are proxying packets at the edge to applications running in 1/1+ AWS regions

AWS Global Accelerator and Amazon CloudFront are separate services that use the AWS global network and its edge locations around the world. CloudFront improves performance for both cacheable content (such as images and videos) and dynamic content (such as API acceleration and dynamic site delivery). Global Accelerator improves performance for a wide range of applications over TCP or UDP by proxying packets at the edge to applications running in one or more AWS Regions. Global Accelerator is a good fit for non-HTTP use cases, such as gaming (UDP), IoT (MQTT), or Voice over IP, as well as for HTTP use cases that specifically require static IP addresses or deterministic, fast regional failover. Both services integrate with AWS Shield for DDoS protection.

90
Q

What 8 svcs are AWS customers welcomed to carry out security assessments or pen test against without prior approval?

A
  • Amazon EC2 instances, NAT Gateways, and Elastic Load Balancers
  • Amazon RDS
  • Amazon CloudFront
  • Amazon Aurora
  • Amazon API Gateways
  • AWS Lambda and Lambda Edge functions
  • Amazon Lightsail resources
  • Amazon Elastic Beanstalk environments
91
Q

What is AWS encryption service for data both at rest and in transit?

A

AWS Key Management Service (KMS)

92
Q

What cloud optimized database supports SQL and automatically grows in increments of 10 GB up to 64 GB?

A

Aurora

93
Q

Which service provides alerts and remediation guidance when AWS is experiencing events that may impact you?

A

AWS Personal Health Dashboard

94
Q

What service provides access to current status and historical data about each and every Amazon Web Service?

A

AWS Service Health Dashboard

95
Q

Which are AWS serverless platform that does not require provisioning, maintaining, and administering servers for backend components?

A

Serverless computing: AWS Lambda, Lambda@Edge, and AWS Fargate

API Proxy: Amazon API Gateway services

96
Q

A customer currently has a Basic support plan and they are planning to use the Infrastructure Event Management, Well-Architected Reviews and Operations Reviews features in AWS. What should they do in order to access these features in the most cost-effective manner?

A

AWS Enterprise Support

97
Q

What is the only support plan to have specific SLA for “business-critical system down”? What is it?

A

Enterprise and <15 mins

98
Q

A company needs to troubleshoot an issue on their serverless application which is composed of an API Gateway, Lambda function, and a DynamoDB database. Which service should they use to trace user requests as they travel through their entire application?

A

AWS X-ray

99
Q

Which AWS Cost Management tools enable you to forecast future costs and usage of your AWS resources based on your past consumption?

A

Cost Explorer

100
Q

What allows you to estimate your AWS bill by manually entering your planned resources by service. It does not forecast future costs and usage of your AWS resources based on your past consumption, unlike the AWS Cost Explorer.?

A

AWS Pricing Calculator

101
Q

What lists your AWS usage for each service category used by an account and its IAM users in hourly or daily line items, as well as any tags that you have activated for cost allocation purposes?

A

AWS Cost and Usage report

102
Q

What is a fully managed service that uses machine learning to deliver highly accurate forecasts of any time-series data, such as retail demand, manufacturing demand, travel demand, revenue, IT capacity, logistics, and web traffic.?

A

Amazon Forecast

Redshift is columnar OLAP not transaction

103
Q

What is a cloud service solution that makes it easy to establish a dedicated network connection from your premises to AWS. It also allows you to establish private connectivity between AWS and your datacenter, office, or colocation environment, which in many cases can reduce your network costs, increase bandwidth throughput, and provide a more consistent network experience than Internet-based connections?

A

AWS Direct Connect

104
Q

What is the difference between VPN Connection/AWS VPN CloudHub and Direct Connect?

A

VPN is an internet-based connection unlike Direct Connect, which is a dedicated connection

105
Q

What services allows you to easily migrate petabyte-scale data to AWS?

A

AWS Snowball

106
Q

What is a horizontally scaled, redundant, and highly available VPC component that allows communication between instances in your VPC and the internet? AND serves two purposes: to provide a target in your VPC route tables for internet-routable traffic, and to perform network address translation (NAT) for instances that have been assigned public IPv4 addresses?

A

Internet gateway

107
Q

What is a service meant for creating, publishing, maintaining, monitoring, and securing APIs?

A

API Gateway

108
Q

What should you use to enable instances in a private subnet to connect to the Internet or other AWS services, but prevent the Internet from initiating connections with the instances?

A

NAT Gateways and NAT Instances

109
Q

What are the benefits of Amazon Relational Database Service?

A

Makes it easy to set up, operate, and scale a relational database in the cloud. It provides cost-efficient and resizable capacity while automating time-consuming administration tasks such as hardware provisioning, database setup, patching and backups. It frees you to focus on your applications so you can give them the fast performance, high availability, security and compatibility they need.

110
Q

What is a fast, fully managed data warehouse that makes it simple and cost-effective to analyze all your data using standard SQL and your existing Business Intelligence (BI) tools?

A

Amazon Redshift

111
Q

Which should you use to automatically transfer your infrequently accessed data in your S3 bucket to a more cost-effective storage class?

A

Lifecycle policy

112
Q

What service helps you migrate databases to AWS quickly and securely, which keeping the source database remains fully operational during the migration, minimizing downtime to applications that rely on the database?

A

The AWS Database Migration Service. It can migrate your data to and from most widely used commercial and open-source databases, and supports both homogeneous & heterogeneous migration

113
Q

What services will help you create a highly available and scalable web app in the cloud?

A

AWS ELB and Amazon EC2 Auto Scaling.

114
Q

What is a fully managed application streaming service which you can use to centrally manage your desktop applications?

A

Amazon AppStream 2.0

115
Q

What do you need to launch an EBS-backed EC2 instance?

A

EBS Root volume, VPC and subnet specification, and Security Group

116
Q

What service should you use to ingest real-time data such as video, audio, application logs, website clickstreams, and IoT telemetry data for machine learning, analytics, and other applications?

A

Amazon Kinesis

117
Q

What service enables you to process and analyze data as it arrives and respond instantly instead of having to wait until all your data is collected before the processing can begin?

A

Amazon Kinesis

118
Q

Be happy

A

Be happy

119
Q

What is a web service that helps you reliably process and move data between different AWS compute and storage services, as well as on-premises data sources, at specified intervals?

A

Amazon Data Pipeline

120
Q

What is best suited for load balancing of HTTP and HTTPS traffic and provides advanced request routing targeted at the delivery of modern application architectures, including microservices and containers? And, also routes traffic to targets within Amazon Virtual Private Cloud (Amazon VPC) based on the content of the request by operating at the individual request level (layer 7)?

A

Application Load Balancer

121
Q

Which of the following allows you to create and deploy infrastructure-as-code templates in AWS?

A

CloudFormation

122
Q

What is a service that provides every developer and data scientist with the ability to build, train, and deploy machine learning models quickly in AWS?

A

Amazon SageMaker

123
Q

What is cloudsearch?

A

It is primarily used to set up, manage, and scale a search solution for your website or application in AWS.

124
Q

What lets you provision a logically isolated section of the AWS Cloud where you can launch AWS resources in a virtual network that you define?

A

Amazon VPC

125
Q

Which is a fully-managed source control service that allows you to host Git-based repositories and enable code collaboration for your team via pull requests, branching, and merging?

A

AWS CodeCommit

126
Q

What unified UI enables you to quickly develop, build, and deploy applications on AWS? Where can you edit?

A

AWS CodeStar & Cloud9

127
Q

What is a fully managed build service that compiles source code, runs tests, and produces software packages that are ready to deploy?

A

AWS CodeBuild

128
Q

What is primarily used to automate code deployments to any instance, including EC2 instances and instances running on-premises?

A

AWS CodeDeploy

129
Q

What is a data migration and edge computing device that comes either compute and storage optimized?

A

AWS Snowball Edge

130
Q

What is primarily used to migrate tens of petabytes to exabytes of data in batches to the cloud?

A

AWS Snowmobile

131
Q

What is a data transport that is suitable for moving 8 TB of data?

A

AWS Snowcone

132
Q

What is a feature of Amazon CloudFront that lets you run code closer to users of your application, which improves performance and reduces latency?

A

Lambda@Edge

133
Q

Who is a part of AWS Enterprise Support which provides advocacy and guidance to help plan and build solutions using best practices, coordinate access to subject matter experts and product teams, and proactively keep your AWS environment operationally healthy?

A

Technical Account Management

134
Q

What should you use to retrieve the instance ID, public keys, and public IP address of their EC2 instance?

A

Instance metadata

135
Q

What mainly provides the information required to launch an instance, which is a virtual server in the cloud?

A

Amazon Machine Image

136
Q

Which service allows you to send, store, and receive messages between software components at any volume, without losing messages or requiring other services to be available?

A

Amazon SQS

137
Q

What is a fully managed message queuing service that enables you to decouple and scale microservices, distributed systems, and serverless applications; and also eliminates the complexity and overhead associated with managing and operating message-oriented middleware, and empowers developers to focus on differentiating work; and, allows you to send, store, and receive messages between software components at any volume, without losing messages or requiring other services to be available?

A

Amazon SQS (Simple Queue Service)

138
Q

What are the characteristics of Amazon EC2 Convertible Reserved Instances?

A
  • Allows the change of instance family, operating system, tenancy, and payment option
  • Has the capability to change the attributes of the RI as long as the exchange results in the creation of Reserved Instances of equal or greater value
139
Q

What are the 5 pillars of Well-Architected Reviews?

A
  1. Operational Excellence
  2. Security
  3. Reliability
  4. Performance Efficiency
  5. Cost Optimization
140
Q

What is a fully managed database in AWS that can be used to store JSON documents?

A

Amazon DynamoDb

141
Q

What is a threat detection service that continuously monitors for malicious activity and unauthorized behavior to protect your AWS accounts and workloads?

A

Amazon GuardDuty

142
Q

What is a managed Distributed Denial of Service (DDoS) protection service that safeguards applications running on AWS?

A

AWS Shield

143
Q

What is a web application firewall that helps protect your web applications from common web exploits that could affect application availability, compromise security, or consume excessive resources?

A

AWS WAF?

144
Q

What is typically used to secure your VPC subnets?

A

Network ACL (network access control list)

145
Q

What is an optional layer of security for your VPC that acts as a firewall for controlling traffic in and out of one or more subnets that can be set up with rules similar to your security groups in order to add an additional layer of security to your VPC?

A

Network ACL (network access control list)

146
Q

What is used to secure your EC2 instances and RDS databases in a similar way with how network ACLs work? Can this be used for subnet security?

A

Security group

147
Q

What services can you use to test and troubleshoot IAM and resource-based policies?

A

IAM Policy Simulator

148
Q

What is primarily used if you want to add user sign-up, sign-in, and access control to your web and mobile apps quickly and easily?

A

Amazon Cognito

149
Q

What should you use if you need to provide temporary AWS credentials for users who have been authenticated via their social media logins as well as for guest users who do not require any authentication?

A

Amazon Cognito Identity Pool

150
Q

What is the most secure way to provide applications temporary access to your AWS resources?

A

IAM role because instead of being uniquely associated with one person (like IAM user), a role is intended to be assumable by anyone who needs it

151
Q

There is an incident with your team where an S3 object was deleted using an account without the owner’s knowledge. What can be done to prevent unauthorized deletion of your S3 objects?

A

In S3, once versioning is enabled for your objects, you can also set up MFA delete so that deleting objects require an additional MFA authentication.

152
Q

Which policies grant the necessary permissions required to access your Amazon S3 resources?

A

User policies & Bucket policies