Podcast
Questions and Answers
Which task is essential for running a NoSQL database on Amazon EC2 instances?
Which task is essential for running a NoSQL database on Amazon EC2 instances?
- Change database storage parameters regularly
- Audit network traffic to the database
- Maintain high availability at the database layer (correct)
- Update the guest operating system of the EC2 instances
Which AWS service assists with managing Docker environments more efficiently?
Which AWS service assists with managing Docker environments more efficiently?
- AWS Lambda
- Amazon RDS
- AWS CodeDeploy
- AWS Fargate (correct)
Which benefit is provided by AWS Trusted Advisor?
Which benefit is provided by AWS Trusted Advisor?
- Automating the creation of backup instances
- Managing domain name registrations
- Enhancing data encryption techniques
- Improving security by proactively monitoring the AWS environment (correct)
What is one advantage of migrating on-premises workloads to AWS?
What is one advantage of migrating on-premises workloads to AWS?
Which service can help visualize and manage spending in AWS?
Which service can help visualize and manage spending in AWS?
For a company wanting to discover and transform data, which AWS service should they use?
For a company wanting to discover and transform data, which AWS service should they use?
Which AWS tool can identify rightsizing opportunities for EC2 instances?
Which AWS tool can identify rightsizing opportunities for EC2 instances?
Which AWS service is used for managing Infrastructure as Code (IaC) templates?
Which AWS service is used for managing Infrastructure as Code (IaC) templates?
What AWS service can a company use to audit password and access key rotation details for compliance?
What AWS service can a company use to audit password and access key rotation details for compliance?
Which AWS service should a company use to receive notifications for cost thresholds?
Which AWS service should a company use to receive notifications for cost thresholds?
Which service helps answer frequently asked security-related questions by AWS customers?
Which service helps answer frequently asked security-related questions by AWS customers?
What is one of the customer responsibilities in the AWS shared responsibility model?
What is one of the customer responsibilities in the AWS shared responsibility model?
Which of these is NOT a pillar of the AWS Well-Architected Framework?
Which of these is NOT a pillar of the AWS Well-Architected Framework?
Which cost factor is typically reduced after migrating an IT infrastructure to the AWS Cloud?
Which cost factor is typically reduced after migrating an IT infrastructure to the AWS Cloud?
What is considered a best practice for secure configuration of AWS Identity and Access Management (IAM)?
What is considered a best practice for secure configuration of AWS Identity and Access Management (IAM)?
To secure programmatic access to AWS resources, which credential type is recommended?
To secure programmatic access to AWS resources, which credential type is recommended?
For running stateless simulations on AWS Batch, which EC2 instance type is most cost-effective?
For running stateless simulations on AWS Batch, which EC2 instance type is most cost-effective?
What does elasticity in the AWS Cloud primarily refer to?
What does elasticity in the AWS Cloud primarily refer to?
Which service provides the ability to audit API calls within an AWS environment?
Which service provides the ability to audit API calls within an AWS environment?
What does agility mean in the context of AWS Cloud computing?
What does agility mean in the context of AWS Cloud computing?
What is a customer responsibility when using AWS Lambda in the AWS shared responsibility model?
What is a customer responsibility when using AWS Lambda in the AWS shared responsibility model?
Which AWS service can be utilized to complete migration faster and more reliably according to best practices?
Which AWS service can be utilized to complete migration faster and more reliably according to best practices?
What EC2 purchasing option is best for an e-learning platform that needs to avoid downtime during a 2-month annual application run?
What EC2 purchasing option is best for an e-learning platform that needs to avoid downtime during a 2-month annual application run?
Which AWS service allows a developer to quickly deploy an application without manual resource creation?
Which AWS service allows a developer to quickly deploy an application without manual resource creation?
To protect sensitive customer data in an S3 bucket from accidental deletion, which functionality is recommended?
To protect sensitive customer data in an S3 bucket from accidental deletion, which functionality is recommended?
Which AWS service enables the management of infrastructure as code?
Which AWS service enables the management of infrastructure as code?
For an online gaming company with predictable traffic, what EC2 purchasing option is best for running instances for 1 year?
For an online gaming company with predictable traffic, what EC2 purchasing option is best for running instances for 1 year?
Which AWS service establishes a dedicated network connection between on-premises data centers and the AWS Cloud?
Which AWS service establishes a dedicated network connection between on-premises data centers and the AWS Cloud?
What is the primary purpose of an internet gateway within a VPC?
What is the primary purpose of an internet gateway within a VPC?
Which of the following activities related to a Snowball Edge device are available to the company at no cost?
Which of the following activities related to a Snowball Edge device are available to the company at no cost?
Which AWS service should a company use to assess application vulnerabilities and identify infrastructure that does not meet best practices?
Which AWS service should a company use to assess application vulnerabilities and identify infrastructure that does not meet best practices?
What is the MOST operationally efficient AWS solution for extending file storage capabilities for users with large requirements?
What is the MOST operationally efficient AWS solution for extending file storage capabilities for users with large requirements?
How should an Amazon EC2 instance be granted access to an S3 bucket according to security best practices?
How should an Amazon EC2 instance be granted access to an S3 bucket according to security best practices?
Which of these is a customer responsibility when using Amazon DynamoDB under the AWS Shared Responsibility Model?
Which of these is a customer responsibility when using Amazon DynamoDB under the AWS Shared Responsibility Model?
Which option is essential for a company to effectively monitor the compliance of its AWS services?
Which option is essential for a company to effectively monitor the compliance of its AWS services?
Which AWS service is primarily used for assessing the security posture of AWS resources?
Which AWS service is primarily used for assessing the security posture of AWS resources?
What is a primary benefit of using an Amazon WorkDocs solution for user file management?
What is a primary benefit of using an Amazon WorkDocs solution for user file management?
Flashcards
What AWS service can assess application vulnerabilities and identify infrastructure deployments that do not meet best practices?
What AWS service can assess application vulnerabilities and identify infrastructure deployments that do not meet best practices?
A service that helps you identify potential security issues and infrastructure misconfigurations in Amazon EC2 instances.
How can a company extend their on-premises file storage capabilities for a group of users with large file storage requirements?
How can a company extend their on-premises file storage capabilities for a group of users with large file storage requirements?
AWS Storage Gateway provides a hybrid solution for extending your on-premises storage to AWS. It integrates with your existing file systems and databases, providing a seamless transition.
How should an Amazon EC2 instance be given access to an S3 bucket according to security best practices?
How should an Amazon EC2 instance be given access to an S3 bucket according to security best practices?
AssumeRole is a secure way of giving an EC2 instance access to an S3 bucket. By assuming a role, the instance gets temporary security credentials, limiting the risk of exposure.
Why is it considered a security best practice for an EC2 instance to 'assume a role' to access an S3 bucket?
Why is it considered a security best practice for an EC2 instance to 'assume a role' to access an S3 bucket?
Signup and view all the flashcards
What is a common AWS storage service and how does it benefit a company?
What is a common AWS storage service and how does it benefit a company?
Signup and view all the flashcards
What is a customer's responsibility in terms of the AWS Shared Responsibility Model when using Amazon DynamoDB?
What is a customer's responsibility in terms of the AWS Shared Responsibility Model when using Amazon DynamoDB?
Signup and view all the flashcards
What does AWS Trusted Advisor do?
What does AWS Trusted Advisor do?
Signup and view all the flashcards
What is AWS Service Catalog used for?
What is AWS Service Catalog used for?
Signup and view all the flashcards
What is AWS Glue used for?
What is AWS Glue used for?
Signup and view all the flashcards
What is AWS Cost Explorer used for?
What is AWS Cost Explorer used for?
Signup and view all the flashcards
What is AWS Lambda used for?
What is AWS Lambda used for?
Signup and view all the flashcards
How can you use AWS Cost Explorer to right-size EC2 instances?
How can you use AWS Cost Explorer to right-size EC2 instances?
Signup and view all the flashcards
What's crucial for a NoSQL database on Amazon EC2 instances?
What's crucial for a NoSQL database on Amazon EC2 instances?
Signup and view all the flashcards
What is the AWS Cloud Adoption Framework (CAF) and what does governance encompass?
What is the AWS Cloud Adoption Framework (CAF) and what does governance encompass?
Signup and view all the flashcards
What is AWS Professional Services and what does it offer?
What is AWS Professional Services and what does it offer?
Signup and view all the flashcards
Why is it recommended to use Reserved Instances for an application with consistent usage?
Why is it recommended to use Reserved Instances for an application with consistent usage?
Signup and view all the flashcards
Which service helps developers deploy applications efficiently without manual configuration?
Which service helps developers deploy applications efficiently without manual configuration?
Signup and view all the flashcards
How can you protect sensitive customer data in S3 from accidental deletion?
How can you protect sensitive customer data in S3 from accidental deletion?
Signup and view all the flashcards
Which service helps manage infrastructure as code?
Which service helps manage infrastructure as code?
Signup and view all the flashcards
What EC2 purchasing option is suitable for an online game with predictable traffic and no downtime?
What EC2 purchasing option is suitable for an online game with predictable traffic and no downtime?
Signup and view all the flashcards
How to connect your on-premises data center to the AWS Cloud securely and efficiently?
How to connect your on-premises data center to the AWS Cloud securely and efficiently?
Signup and view all the flashcards
What is the physical location of AWS infrastructure called?
What is the physical location of AWS infrastructure called?
Signup and view all the flashcards
What AWS service helps companies audit password and access key rotation?
What AWS service helps companies audit password and access key rotation?
Signup and view all the flashcards
Which AWS service sends notifications when a specific AWS cost threshold is reached?
Which AWS service sends notifications when a specific AWS cost threshold is reached?
Signup and view all the flashcards
Which AWS service provides answers to common security-related questions?
Which AWS service provides answers to common security-related questions?
Signup and view all the flashcards
What are some tasks considered customer responsibilities in the AWS shared responsibility model?
What are some tasks considered customer responsibilities in the AWS shared responsibility model?
Signup and view all the flashcards
What are some pillars of the AWS Well-Architected Framework?
What are some pillars of the AWS Well-Architected Framework?
Signup and view all the flashcards
What AWS service sends both text and email messages from applications?
What AWS service sends both text and email messages from applications?
Signup and view all the flashcards
Which credential type is used for securing programmatic access to AWS resources?
Which credential type is used for securing programmatic access to AWS resources?
Signup and view all the flashcards
What EC2 instance type is suitable for stateless, fault-tolerant workloads that can restart?
What EC2 instance type is suitable for stateless, fault-tolerant workloads that can restart?
Signup and view all the flashcards
What service audits API calls in AWS?
What service audits API calls in AWS?
Signup and view all the flashcards
What AWS service brings cloud resources closer to users on a mobile network?
What AWS service brings cloud resources closer to users on a mobile network?
Signup and view all the flashcards
What EC2 purchase option provides a discount for upfront commitment?
What EC2 purchase option provides a discount for upfront commitment?
Signup and view all the flashcards
What is 'elasticity' in the AWS Cloud?
What is 'elasticity' in the AWS Cloud?
Signup and view all the flashcards
What customer responsibility is specific to AWS Lambda in the AWS Shared Responsibility Model?
What customer responsibility is specific to AWS Lambda in the AWS Shared Responsibility Model?
Signup and view all the flashcards
Study Notes
Exam A - Topic 1
-
Question #1: A company uses an Amazon Snowball Edge to transfer files to the AWS Cloud. Free activities include using the appliance for 10 days, transferring data from the appliance to Amazon S3, but not daily use after 10 days or transferring data from Amazon S3 to the appliance.
-
Question #2: A company has applications on Amazon EC2 instances and needs to assess application vulnerabilities. AWS Trusted Advisor is used to meet these requirements.
-
Question #2 (Continued): A company has a centralized group of users with large file storage needs exceeding their on-premises capacity. Extending file storage capabilities while preserving local performance benefits is best addressed by configuring and deploying an AWS Storage Gateway file gateway, connecting user workstations to the gateway.
Exam A - Topic 1 (Continued)
-
Question (from page 2): According to security best practices, an Amazon EC2 instance should obtain privileges by assuming a role rather than directly storing and using access keys.
-
Question (from page 2): Customer responsibility when using Amazon DynamoDB includes data encryption at rest.
-
Question (from page 2): Key aspects of AWS Cloud adoption include sustainability, performance efficiency, and governance.
-
Question (from page 2): For managing Docker environments on Amazon EC2 instances, AWS Lambda is beneficial for managing cluster size, scheduling, and environments.
-
Question (from page 3): AWS Cost Explorer, AWS Billing Conductor, and Amazon CodeGuru can be used to identify rightsizing opportunities for Amazon EC2 instances. AWS Trusted Advisor provides high-performance container orchestration, identification of underutilized resources to save costs and improvements to security through proactive monitoring.
-
Question (from page 3): A company migrates on-premises workloads to the cloud to eliminate running and maintaining on-premises data centers, however, price discounts are usually not identical to hardware provider.
-
Question (from page 4): Managing IT services and infrastructure as code is best achieved using AWS Resource Explorer and AWS Service Catalog.
-
Question (from page 4): AWS Organizations, AWS Pricing Calculator and AWS Cost Explorer can be used to manage AWS spending and visualize the costs.
-
Question (from page 4): AWS Glue, Amazon Elastic File System, Amazon Redshift, Amazon QuickSight, or Amazon Quantum Ledger Database can be used to manage and visualize data.
-
Question (from page 5): To avoid application downtime on Amazon EC2 instances for two months, Reserved Instances or Dedicated Hosts are used.
-
Question (from page 5): Quickly deploying an application on AWS, without creating resources manually, can be achieved with AWS Elastic Beanstalk or AWS CodeBuild.
-
Question (sensitive customer data in Amazon S3): To protect sensitive data in Amazon S3, use S3 lifecycle rules, versioning, or bucket policies.
-
Question (AWS Service): Services like CodePipeline, CodeDeploy or Direct Connect are used to manage infrastructure.
-
Question (on-demand instances 1-year): Reserved instances are the most suitable option for consistent and predictable web traffic.
AWS Shared Responsibility-related Questions
-
AWS Shared Responsibility Model: customers are responsible for security in the AWS environment, and AWS is responsible for the security of the cloud itself.
-
Customers are responsible for the following: Configuring security groups. Classifying company assets. Selecting Availability Zones for buckets Patching or upgrading Amazon DynamoDB
-
AWS is responsible for: Configuring AWS provided security groups. Maintaining the data centre hardware Ensuring data centers are correctly patched against known threats
Question (Internet Gateway):
- The internet gateway is used to create VPC connections to the internet, facilitating communication.
Question (Integrating Application):
- Functional testing can be integrated into AWS deployments, automation can be used for deployment changes, and deployments can be made to multiple locations.
Question (Password/Access Key Rotations):
- IAM Access Analyzer is used to audit password and access key rotation details.
Question (Cost Threshold Notification):
- AWS Budgets, Amazon CloudWatch and Cost Explorer are used to receive notifications of cost thresholds having been reached.
Questions, Page 8 and following
The remaining questions concern specifics about AWS services and are best answered by referring to the relevant AWS documentation. There are many services, each with functions requiring reference to specific AWS documentation.
Studying That Suits You
Use AI to generate personalized quizzes and flashcards to suit your learning preferences.
Related Documents
Description
Test your knowledge on AWS services, including Amazon Snowball Edge, EC2 instances, and AWS Trusted Advisor. This quiz assesses your understanding of file transfer, security best practices, and storage capabilities within AWS. Perfect for those preparing for AWS certifications!