Prime 100 domande random Flashcards
What part of an Amazon Virtual Private Cloud (VPC) is considered stateful?
Security groups
You have created a VPC for your company’s AWS deployment. You need to implement a way of controllingincoming and outgoing for your EC2 instance on the VPC. What would you use for this?
Security groups
What type of storage option is a regional service that gives you the ability to store and manage files within the AWSCloud?
Amazon EFS
(Amazon Elastic File System)
Which of these would you use for running programs that can automatically retrieve key costs related to various AWSservices?
AWS Cost Explorer
Which two features are part of AWS Organizations?
Consolidating billing for multiple accounts
Controlling permission for accounts using SCPs
if you wanted to route Internet traffic to your specific domain, what AWS resource should you use?
Amazon Route 53
Which Amazon Kinesis tool lets you create time-series analytics using standard SQL queries against real-time data?
Amazon Kinesis Data Analytics
You need to create a historical CPU report on your Amazon Elastic Compute Cloud (EC2) instance. How long doesAmazon CloudWatch keep metric data?
15 months
You work for ABC corporation that is actively using Amazon S3 storage solutions. The company has files that are stored using Amazon S3, but they want to save costs because a majority of their files are not used after 40 days. However, they need the ability to recover files within a few minutes after the request to see a file. Which option below best meets these requirements?
Move the data to Amazon S3 Standard using Infrequent Access (IA)option after 40 days.
You need to present a case to your company’s management for moving operations from an on-premises data centerto AWS Cloud. Which of these will help your company reduce its costs by moving to an AWS cloud deployment?(Select TWO.)
Using automation
Taking advantage of managed services
You work for a financial services company, and you need to find a way to automatically detect and analyzehandwritten notes inside of financial reports. Which AWS service should you use?
Textract
Which of the following statements is true when it comes to using route tables within your virtual private cloud (VPC)?
When your VPC is created, it automatically comes with a route table that can be modified.
If you want to access the Internet from your Amazon EC2 instance and not use a public IP address, which networking component would you use to access the Internet?
NAT gateway
Which Amazon storage option is a good solution if you need storage that offers block-level encryption, high reliability, and is highly available, while using applications that use fine-grained updates to raw unformatted data?
Amazon EBS
Which Amazon Elastic Block Storage (EBS) storage type provides cost-effective storage for data that is typically accessed infrequently, with an IOPS of around 100?
HDD-backed volumes
You are guiding an application development team to design a new system that needs to be high performing and resilient. Which architecture type should you implement to ensure that the failure of a single component does not bring the whole system down?
Microservices-based
As an IT specialist with a cloud background, you are concerned with the overall recoverability of your data within thecloud. What does Amazon S3 offer to alleviate this concern?
Amazon S3 provides strong read-after-write consistency.
You are a cloud technology consultant for a company that wants to expand its global operations using AWSRegions. What would you set as requirements for selecting the appropriate AWS Region for your business?
Maintaining regional data sovereignty
Reducing latency for users
You have been managing your current production workload with several Reserved Instances for about 15 months.However, you have noticed a small and progressive increase in overall workload and want to make sure your EC2infrastructure can handle the bandwidth to support the increased workload.
What type of instance would meet this requirement?
On-Demand Instance
Which of the following is considered a true advantage of cloud technology when decoupling from a data center?
Changing resources dynamically based on seasonal needs
When does Amazon DynamoDB encrypt data at rest?
When the first rows of data enter the table
You need to select an AWS Support plan for your organization that will include a technical account manager for additional support. Which would be the most economical option in this scenario?
Developer
For which two situations will AWS Trusted Advisor recommend actions?
Weak IAM user password policies
EBS volumes with no snapshots
Your boss asks you which storage option would allow the company to transfer petabytes of data between thecurrent AWS S3 storage solution and data that resides in the company-owned data center. Which option would you recommend?
AWS Snowball Edge
Which perspective of the AWS Cloud Adoption Framework would you use to gain knowledge on updating the skills of the company staff and all company processes?
People
You need to run a certain software tool on AWS compute resources and allow your users to securely access asingle version of it using any device while ensuring high levels of performance. Which AWS system should you usefor this requirement?
Amazon AppStream
What security option gives you the ability to manage permissions for several different users at one time while controlling access to specific AWS resources?
IAM group
Which two tasks can you complete using AWS Artifact?
Access agreements made with AWS
Create users to allow access to AWS resources
Which two statements are correct applications of VPC components?
Keep databases with customer personal data on a private subnet.
Use a virtual private gateway to connect a VPC and office network.
You are supporting an application that requires that the EC2 instance be shut down after 5:00 PM every day. You want to make sure this is done automatically so you have configured the shut-down processing to use a Lambda function. For some reason, the application binaries are sporadically being corrupted and the corruption is related tothe shut-down process.
Which of the following components can be used to identify the faulty EC2 instance?
Instance metadata
Which of these technologies should you use for securely connecting remote workers and on-premises networks to your AWS cloud?
AWS VPN
You are architecting a solution on AWS for your company and need to optimize costs by considering data transfer costs. Which of these actions incurs data transfer charges on AWS?
Data transferred across AWS Regions.
Your company has several AWS Cloud accounts and VPCs in all of them. You need to integrate several VPCs into a much larger network. Which two connectivity options can you use for this?
AWS Transit Gateway
Software Site-to-Site VPN
You want to load balance connections from your EC2 instance to another application tier on the same network.Which type of load balancer would you choose to meet this requirement?
Internal load balancer
You have been working for your company for three years as a system administrator. You have been informed that you need to house several batch application servers. This application can be stopped and started at any point intime. Your task is to provision the needed EC2 infrastructures and your goal is to keep the cost to a minimum.
Which type of instance should you consider?
Spot Instances
Which of the following actions is MOST aligned with the sustainability pillar of the AWS Well-ArchitectedFramework?
Terminating unused Elastic IPs to avoid unnecessary resource usage.
You are a cloud technology consultant working for a US Government agency. You are running web applicationsusing Elastic Compute Cloud (EC2) instances with attached Elastic Block Store (EBS) volumes for storing confidential user data like PII. You need to ensure security of both data-in-transit as well as data-at-rest for theinstances and their EBS volumes. How will you do this most efficiently?
Use AWS KMS Keys for Amazon EBS encryption.
You need to use an AWS service that allows you to automate evidence collection and perform risk and compliancemanagement. Which of these services should you use for this scenario?
AWS Audit Manager
Which two statements are true regarding AWS Regions and Availability Zones?
A Region can have several AZs.
Each AZ has several data centers.
You need to run a certain software tool on AWS compute resources and allow your users to securely access asingle version of it using any device while ensuring high levels of performance. Which AWS system will you use forthis requirement?
Amazon AppStream 2.0