Udemy Practice Exam 4 Flashcards

(73 cards)

1
Q

Which AWS service would you use to create a logically isolated section of the AWS Cloud where you can launch AWS resources in your virtual network?

A

Virtual Private Cloud (VPC)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

As per the Shared Responsibility Model, Security and Compliance is a shared responsibility between AWS and the customer. Which of the following security services falls under the purview of AWS under the Shared Responsibility Model?

-AWS Shield Standard
-AWS Web Application Firewall (WAF)
-AWS Shield Advanced
-Security Groups for Amazon EC2

A

AWS Shield Standard

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

According to the AWS Shared Responsibility Model, which of the following are responsibilities of the customer for IAM? (Select two)

-Manage global network security infrastructure
-Enable MFA on all accounts
-Analyze user access patterns and review IAM permissions
-Configuration and vulnerability analysis for the underlying software infrastructure
-Compliance validation for the underlying software infrastructure

A

-Enable MFA on all accounts
-Analyze user access patterns and review IAM permissions

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

Which of the following is available across all AWS Support plans?

-Full set of AWS Trusted Advisor best practice checks
-Enhanced Technical Support with unlimited cases and unlimited contacts
-AWS Personal Health Dashboard
-Third-Party Software Support

A

“AWS Personal Health Dashboard”

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

A streaming media company wants to convert English language subtitles into Spanish language subtitles. As a Cloud Practitioner, which AWS service would you recommend for this use-case?

A

Amazon Translate

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

AWS Shield Advanced provides expanded DDoS attack protection for web applications running on which of the following resources? (Select two)

A

-Amazon CloudFront
-Amazon Elastic Compute Cloud

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

Who’s responsability is Patching networking infrastructure

A

AWS

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

Which of the following types are free under the Amazon S3 pricing model? (Select two)

A

Data transferred in from the internet

Data transferred out to an Amazon Elastic Compute Cloud (Amazon EC2) instance, when the instance is in the same AWS Region as the S3 bucket

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
9
Q

The DevOps team at an IT company wants to centrally manage its servers on AWS Cloud as well as on-premise data center so that it can collect software inventory, run commands, configure and patch servers at scale. As a Cloud Practitioner, which AWS service would you recommend for this use-case?

A

Systems Manager

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
10
Q

Which of the following AWS services offer LifeCycle Management for cost-optimal storage?

A

S3

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
11
Q

How is Amazon EC2 different from traditional hosting systems? (Select two)

A

-Amazon EC2 can scale with changing computing requirements -With Amazon EC2, developers can launch and terminate the instances anytime they need to

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
12
Q

Who is responsible for AWS Shield Standard

A

AWS
-managed service
-automatically activated for all customers
-no customization

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
13
Q

An e-commerce company would like to receive alerts when the Reserved EC2 Instances utilization drops below a certain threshold. Which AWS service can be used to address this use-case?

A

AWS Budgets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
14
Q

-alert you when your costs or usage exceed (or are forecasted to exceed) your budgeted amount
-define a utilization threshold and receive alerts when your RI usage falls below that threshold

A

AWS Budgets

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
15
Q

An organization maintains a separate Virtual Private Cloud (VPC) for each of its business units. Two units need to privately share data. Which is the most optimal way of privately sharing data between the two VPCs?

A

VPC Peering

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
16
Q

Which of the following are the serverless computing services offered by AWS (Select two)

A

-Fargate
-Lambda

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
17
Q

Analyze user access patterns and review IAM permissions
responsibility of

A

Customer

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
18
Q

A financial services company wants to migrate from its on-premises data center to AWS Cloud. As a Cloud Practitioner, which AWS service would you recommend so that the company can compare the cost of running their IT infrastructure on-premises vs AWS Cloud?

A

AWS Pricing Calculator

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
19
Q

Which of the following S3 storage classes do not charge any data retrieval fee? (Select two)

A

-S3 Standard
-S3 Intelligent-Tiering

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
20
Q

AWS Marketplace facilitates which of the following use-cases? (Select two)

A

-Sell Software as a Service (SaaS) solutions to AWS customers
-AWS customer can buy software that has been bundled into customized AMIs by the AWS Marketplace sellers

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
21
Q

Which of the following describes an Availability Zone in the AWS Cloud?

A

One or more data centers in the same location

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
22
Q

is one or more discrete data centers with redundant power, networking, and connectivity in an AWS Region.

A

vailability Zone

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
23
Q

A media company uploads its media (audio and video) files to a centralized S3 bucket from geographically dispersed locations. Which of the following solutions can the company use to optimize transfer speeds?

A

S3 Transfer Acceleration

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
24
Q

A financial services company wants to ensure that all customer data uploaded on its data lake on Amazon S3 always stays private. Which of the following is the MOST efficient solution to address this compliance requirement?

A

Use Amazon S3 Block Public Access to ensure that all S3 resources stay private

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
25
Which of the following statements are true regarding Amazon Simple Storage Service (S3) (Select two)?
-S3 is a key value based object storage service -S3 stores data in a flat non-hierarchical structure
26
AWS Shield Advanced provides expanded DDoS attack protection for web applications running on which of the following resources? (Select two)
Cloud Front EC2 Elastic Compute Cloud
27
Reserved Instance pricing is available for which of the following AWS services? (Select two)
-RDS -EC2
28
Which entity ensures that your application on Amazon EC2 always has the right amount of capacity to handle the current traffic demand?
Auto Scaling
29
Which of the following is the MOST cost-effective EC2 instance purchasing option for short-term, spiky and critical workloads on AWS Cloud?
On-Demand Instance
30
Which of the following AWS Support plans provide programmatic access to AWS Support Center features to create, manage and close your support cases? (Select two)
-Business -Enterprise
31
Which pillar of AWS Well-Architected Framework is responsible for making sure that you select the right resource types and sizes based on your workload requirements?
Performance Efficiency
32
The ability of a system to recover from infrastructure or service disruptions, dynamically acquire computing resources to meet demand, and mitigate disruptions such as misconfigurations or transient network issues.
Reliability
33
Pillar includes the ability to run and monitor systems to deliver business value and to continually improve supporting processes and procedures.
Operational Excellence
34
AWS Trusted Advisor can provide alerts on which of the following common security misconfigurations? (Select two)?
-When you allow public access to Amazon S3 buckets -When you don't turn on user activity logging (AWS CloudTrail)
35
Which of the following S3 storage classes has NO constraint of a minimum storage duration charge for objects?
S3 Standard S3 Intelligent Tiering
36
minimum storage duration charge for 90 days
S3 Glacier
37
minimum storage duration charge for 30 days.
Infrequent Access
38
minimum storage duration charge for 180 days.
S3 Glacier Deep Archive
39
Which of the following is best-suited for load-balancing HTTP and HTTPS traffic?
Application Load Balancer
40
Which of the following is correct regarding the AWS RDS service?Read Replicas
-You can use Read Replicas for both improved read performance as well as Disaster Recovery -cross-Region Read Replica
41
Which of the following can you use to run a bootstrap script while launching an EC2 instance?
EC2 instance user data
42
Which of the following is available across all AWS Support plans?
AWS Personal Health Dashboard
43
AWS Personal Health Dashboard
U2F security key
44
The DevOps team at a Big Data consultancy has set up EC2 instances across two AWS Regions for its flagship application. Which of the following characterizes this application architecture? cross region improves
Availability
45
Which AWS service will help you install application code automatically to an Amazon EC2 instance?
AWS CodeDeploy
46
Which of the following are recommended security best practices for the AWS account root user? (Select two)
Enable MFA for the AWS account root user Set up an IAM user with administrator permissions and do not use AWS account root user for administrative tasks
47
Which AWS service can be used to set up billing alarms to monitor estimated charges on your AWS account? -AWS Organizations -Amazon CloudWatch -AWS Organizations -AWS Cost Explorer
Amazon CloudWatch
48
Which AWS service would you choose for a data processing project that needs a schemaless database?
Amazon DynamoDB
49
Amazon DynamoDB
True
50
Which of the following is a container service of AWS? works with both Amazon Elastic Container Service (ECS) and Amazon Elastic Kubernetes Service (EKS).
AWS Fargate
51
Which of the following AWS storage services can be directly used with on-premises systems?
Amazon Elastic File System (Amazon EFS)
52
To access EFS file systems from on-premises
-AWS Direct Connect or -AWS VPN connection
53
Amazon S3 can be accessed from on-premises
only via AWS Storage Gateway
54
A firm wants to maintain the same data on S3 between its production account and multiple test accounts. Which technique should you choose to copy data into multiple test accounts while retaining object metadata?
Amazon S3 Replication
55
When accounts in organization share reserved instances, they must
be launched in the same Availability Zone as the reserved instances where purchased
56
Which of the following entities are part of a VPC in the AWS Cloud? (Select two)
Subnet Internet Gateway
57
An e-commerce company has migrated its IT infrastructure from the on-premises data center to AWS Cloud. Which of the following costs is the company responsible for?
Application software license costs
58
Which AWS service will you use to provision the same AWS infrastructure across multiple AWS accounts and regions?
AWS CloudFormation
59
Which of the following entities can be used to connect to an EC2 server from a Mac OS, Windows or Linux based computer via a browser-based client?
EC2 Instance Connect
60
EC2 Instance Connect uses
Secure Shell (SSH). AWS Identity and Access Management (IAM) policies
61
can be used from a Mac OS, Windows or Linux based computer,
SSH
62
Which of the following AWS services can be used to forecast your AWS account usage and costs?
AWS Cost Explorer
63
automatically assesses applications for exposure, vulnerabilities, and deviations from best practices.
Inspector
64
Which AWS service can help you analyze your infrastructure to identify unattached or underutilized EBS volumes?
AWS Trusted Advisor
65
Which of the following are benefits of the AWS Web Application Firewall (WAF)? (Select two)
-WAF can block all requests except the ones that you allow -WAF can check for the presence of SQL code that is likely to be malicious (known as SQL injection)
66
WAF can check for the presence of SQL code that is likely to be malicious (known as SQL injection)
-Amazon API Gateway API -Amazon CloudFront -Application Load Balancer.
67
-is a good fit for non-HTTP use cases -provides static IP addresses that act as a fixed entry point to your applications
AWS Global Accelerator
68
Which of the following AWS entities lists all users in your account and the status of their various account aspects such as passwords, access keys, and MFA devices?
Credential Reports
69
A cargo shipping company runs its server-fleet on Amazon EC2 instances. Some of these instances host the CRM (Customer Relationship Management) applications that need to be accessible 24*7. These applications are not mission-critical. In case of a disaster, these applications can be managed on a lesser number of instances for some time. Which disaster recovery strategy is well-suited as well as cost-effective for this requirement?
Warm Standby strategy
70
-always running but smaller -business critical
Warm Standby strategy
71
-iddle service -provision and then scale
Pilot light
72
-mission critial -no downtime
multi-site active/active
73
-lower priority -restore after event
backup & restore