Questions from exams Flashcards
2 AWS Services with automatic data encryption
S3 and Storage Gateway
Which AWS service enables you to make it easy to centrally manage access to multiple AWS accounts and business applications and provide users with single sign-on?
SSO (Single Sign On)
Using AWS marketplace what two ways can sellers deliver software to customers?
AMIs and SaaSs
Which AWS service lets you use Chef and Puppet to automate how servers are configured, deployed and managed across your EC2 instances or on-premises computer environments
AWS OpsWorks
True or False; you can use CloudWatch for on-premises servcers?
True
Which AWS service has an easy-to-use interface that lets you visualise, understand and manage your AWS costs and usage over time?
AWS Cost Explorer
Which AWS services is an online tool that provides real-time guidance to help provision your resources following AWS best practices?
AWS Trusted Advisor
Which AWS service enables you to access, audit and evaluate the configurations of your AWS resources?
AWS Config
Which AWS service is an automated security assessment service that helps improve the security and compliance of applications deployed on your EC2 instances?
AWS Inspector
Which AWS service is a fully-managed data security and data privacy service that uses machine learning and pattern matching to discover and protect sensitive data in AWS?
AWS Macie
Which AWS service is a fully-managed extract, transform and load (ETL) service that makes it easy for customers to prepare and load their data for analytics?
AWS Glue
Which AWS service turns text into life-like speech?
AWS Polly
True or False; DynamoDB is schemaless?
True
True or False; Redshift is schemaless?
False
Which MFA device is a device that you can plug into a USB port on your computer?
U2F Security Key - Universal 2nd Factor Security Key
Which AWS service allows marketers and developers to deliver customer-centric engagement experiences by capturing customer usage data to draw real-time insights
Amazon Pinpoint
Which AWS service automates code deployments to any instance, including EC2 instances and instances running on-premises?
AWS CodeDeploy
Which AWS service is a fully-managed source control service that hosts secure Git-based repositories?
AWS CodeCommit
Which AWS service is a continuous delivery service that enables you to model, visualise and automate the steps required to release your software?
AWS CodePipeline
Which AWS service gives the ability to set custom budgets that alert you when your costs or usage exceed (or are forecasted to exceed) your budgeted amount?
AWS Budgets
Which AWS service allows you to centralise operational data from multiple AWS services and automate tasks across your AWS resources?
AWS Systems Manager
Which AWS service helps you identify the optimal resource configurations and delivers recommendations for:
- EC2 instances
- EBS volumes
- EC2 Autoscaling groups
- Lambda functions
?
AWS Compute Optimizer
Which AWS support level gives you access to online training and self-paced labs?
Enterprise support
True or False; DynamoDB global tables replicates data automatically across your choice of AWS regions?
True
True or False; DynamoDB global tables automatically scales capacity to accommodate your workloads?
True
Which AWS service links your network directly to AWS?
AWs Direct Connect
True or False; Foundations are part of the reliability pillar of the AWS Well-Architected Framework?
True
What 3 services are part of Foundations?
- VPC
- Trusted Advisor
- Service Quotas
Which AWS service enables you to privately connect your VPC to supported AWS services and are powered by AWS PrivateLink without requiring an Internet Gateway, NAT device, VPN connection or Direct Connect connection?
VPC Endpoints
What are the six pillars of the Well-Architected Framework?
- Operational Excellence
- Security
- Reliability
- Performance Efficiency
- Cost Optimisation
- Sustainability
Main purpose of RDS Multi-AZ deployments?
High Availability
Main purpose of RDS Multi-region deployments?
Disaster recovery and local performance
Main purpose of RDS Read replicas?
Scalability
RDS Multi-AZ deployments non-Aurora uses synchronous or asynchronous replication?
Synchronous
RDS Multi-AZ deployments Aurora uses synchronous or asynchronous replication?
Asynchronous
RDS Multi-region deployments uses synchronous or asynchronous replication?
Asynchronous
RDS Read replicas uses synchronous or asynchronous replication?
Asynchronous
What refers to new IT resources being only a click away?
Agility
Which AWS service are built by AWS Solutions Architects + Partners to help you deploy popular technologies on AWS, based on best practices for security and high availability. These accelerations reduce hundreds of manual procedures into just a few steps, so you can build your production environment quickly and start using it immediately?
AWS Quick Starts
Rule of thumb
- for resource performance monitoring, events and alerts, which service should you think of?
CloudWatch
Rule of thumb
- for account specific activity and audit, which service should you think of?
CloudTrail
Rule of thumb
- for specific change history, audit and compliance, which service should you think of?
Config
A financial services company wants to ensure that its AWS account activity meets the governance, compliance and auditing norms. As a Cloud Practitioner, which AWS service would you recommend for this use-case?
CloudTrail
Which AWS service checks your EC2 instances that were running at any time during the last 14 days and alerts you if the daily CPU utilization was 10% or less and network I/O was 5 MB or less on 4 or more days.
AWS Trusted Advisor
Which AWS service analyses your AWS environment and provides best practice recommendations in five categories: Cost Optimization, Performance, Security, Fault Tolerance, Service Limits.
AWS Trusted Advisor
A corporation would like to have a central user portal to log in to third-party business applications as well as accounts managed under AWS Organizations. As a Cloud Practitioner, which AWS service would you use for this task?
AWS Single Sign On (SSO)
Which AWS service can check Amazon Elastic Block Store (Amazon EBS) volume configurations and warns when volumes appear to be underused?
AWS Trusted Advisor
What rules does a Security Group have?
allow only rules
What acts as a virtual firewall for your instance to control inbound and outbound traffic?
Security Groups
What is an optional layer of security for your VPC that acts as a firewall for controlling traffic in and out of one or more subnets?
Network Access Control List (NACL)
What rules does a NACL (Network Access Control List) have?
A network ACL has separate inbound and outbound rules, and each rule can either allow or deny traffic.
True of False; NAT (Network Address Translation) Gateway is managed by AWS?
True
True of False; NAT (Network Address Translation) Instance is managed by AWS?
False, it is managed by you
Which support plan provides architectural guidance that is contextual to your use-cases?
Business support plan
Which support plan provides architectural guidance that is a consultative review and guidance based on your applications
Enterprise and Enterprise-on-ramp
Which support plans have programmatic case management via the AWS Support API?
Business, Enterprise-on-ramp and Enterprise
Which support plan have AWS Incident Detection and Response (for an additional fee)?
Enterprise
Which support plan has access to a pool of Technical Account Managers?
Enterprise On-Ramp
Which support plan has access to a Designated Technical Account Manager?
Enterprise
Which support plans have access to account assistance via the Concierge Support Team?
Enterprise On-Ramp and Enterprise
AWS Shield Advanced provides expanded DDoS attack protection for web applications running on which five resources?
- Route 53
- AWS Global Accelerator
- EC2
- ELB
- CloudFront
Which AWS service is a fully managed service that makes it easy for developers to create, publish, maintain, monitor, and secure APIs at any scale.
Amazon API Gateway
Five AWS Services that support reservations to optimise costs
- EC2
- RDS
- DynamoDB
- EastiCache
- Redshift
What EC2 instance storage is a good option when you need storage with very low latency, but you don’t need the data to persist when the instance terminates or you can take advantage of fault-tolerant architectures?
Instance Store
True or False; EFS file system can be mounted on instances across multiple Availability Zones
True
Each AWS Region consist of one or more Availability Zones?
False
Each AWS Region consist of two or more Availability Zones?
True
Each Availability Zone (AZ) consists of one or more discrete data centers?
True
Each Availability Zone (AZ) consists of two or more discrete data centers?
False
True or False; for EC2 reserved instances a 3 years term would always be more cost-effective than a 1-year term?
True
Which AWS service creates a secure connection between your data center or branch office and your AWS cloud resources. This connection goes over the public internet.
Site-to-Site VPN
Which AWS service is the industry-leading cloud big data platform for processing vast amounts of data using open source tools such as Hadoop, Apache Spark, Apache Hive, Apache HBase, Apache Flink, Apache Hudi, and Presto.
AWS EMR (Elastic MapReduce)
EMR (Elastic MapReduce) is a serverless service?
False
True or False; data transfer between EC2 instances and S3 within the same region is not charged?
True
True or False; S3 has encryption enabled by default?
False
True or False; CloudTrail Logs has encryption enabled by default?
True
Which AWS service will help you receive alerts when the reservation utilization falls below the defined threshold?
AWS Budgets
True or False; you can use AWS Budgets to set reservation utilization or coverage targets and receive alerts when your utilization drops below the threshold you define?
True
A big data analytics company is moving its IT infrastructure from an on-premises data center to AWS Cloud. The company has some server-bound software licenses that it wants to use on AWS. As a Cloud Practitioner, which of the following EC2 instance types would you recommend to the company?
Dedicated Host
True or False; Amazon EC2 Dedicated Hosts allow you to use your eligible software licenses from vendors such as Microsoft and Oracle on Amazon EC2?
True
True or False; Dedicated Instances supports Bring Your Own License (BYOL)?
False, but Dedicated Hosts do
Which of the AWS Support plans provides access to Infrastructure Event Management for an additional fee?
Business (Enterprise includes it as part of the plan)
Which S3 tier is for data that is accessed less frequently, but requires rapid access when needed?
Standard-Infrequent Access (S3 Standard IA)