A company stores sensitive documents in Amazon S3. Only specific IAM users should have read access to one bucket. Which approach provides least-privilege access?
#42Design Resilient Architectures
An application has heavy read traffic causing high latency on its Aurora MySQL primary instance. How should the architect improve read performance while maintaining availability?
#43Design High-Performing Architectures
A company collects millions of IoT sensor events per second and must process them in real time with sub-second latency. Which ingestion service handles this volume?
#44Design Secure Architectures
An application in a private subnet must access S3 without traversing the public internet or using a NAT gateway. Which solution meets this requirement?
#45Design Resilient Architectures
A company needs its production RDS PostgreSQL database to automatically failover if the primary instance becomes unavailable. Which feature should be enabled?
#46Design Secure Architectures
A company wants continuous threat detection for its AWS environment that monitors VPC flow logs, DNS logs, and CloudTrail events. Which service provides this capability?
#47Design Resilient Architectures
A company must replicate S3 objects to a different AWS region for disaster recovery. The replica must stay in sync continuously. Which S3 feature achieves this?
#48Design Cost-Optimized Architectures
A company wants to commit to a consistent amount of compute usage per hour for 1 or 3 years in exchange for lower prices, but needs flexibility to change instance types. Which pricing model fits?
#49Design Cost-Optimized Architectures
An application in us-east-1 transfers 10 TB of data monthly to a replica in eu-west-1 over the internet. The architect wants to reduce cross-region data transfer costs. Which approach is most effective?
#50Design High-Performing Architectures
A startup wants to build a REST API without managing servers. The API should scale automatically and charge only per request. Which architecture is most suitable?
#51
What does RRS stand for when talking about S3?
#52
You have an EC2 Security Group with several running EC2 instances. You change the Security Group rules to allow inbound traffic on a new port and protocol, and launch several new instances in the same Security Group. The new rules apply:
#53Choose 2
Which of the following statements are true about Amazon Route 53 resource records? (Choose 2 answers)
#54
If you want to launch Amazon Elastic Compute Cloud (EC2) instances and assign each instance a predetermined private IP address you should:
#55
A Provisioned IOPS volume must be at least [...] GB in size.
#56
Does Route 53 support MX Records?
#57
A user has created an application which will be hosted on EC2. The application makes calls to DynamoDB to fetch certain data. The application is using the DynamoDB SDK to connect with from theEC2 instance. Which of the below mentioned statements is true with respect to the best practice for security in this scenario?
#58
A user has created a CloudFormation stack. The stack creates AWS services, such as EC2 instances, ELB, AutoScaling, and RDS. While creating the stack it created EC2, ELB and AutoScaling but failed to create RDS. What will CloudFormation do in this scenario?
#59
You have just set up your first Elastic Load Balancer (ELB) but it does not seem to be configured properly. You discover that before you start using ELB, you have to configure the listeners for your load balancer. Which protocols does ELB use to support the load balancing of applications?
#60
A, [...] is an individual, system, or application that interacts with AWS programmatically.
Want to track your score, take timed mock exams and get AI explanations? Create a free account