Free preview mode
Enjoy the free questions and consider upgrading to gain full access!
AWS Certified Cloud Practitioner CLF-C02
Free trial
Verified
Question 76
Which of the following is an AWS value proposition that describes a user’s ability to scale infrastructure based on demand?
- A: Speed of innovation
- B: Resource elasticity
- C: Decoupled architecture
- D: Global deployment
Question 77
Which action is a security best practice for access to sensitive data that is stored in an Amazon S3 bucket?
- A: Enable S3 Cross-Region Replication (CRR) on the S3 bucket.
- B: Use IAM roles for applications that require access to the S3 bucket.
- C: Configure AWS WAF to prevent unauthorized access to the S3 bucket.
- D: Configure Amazon GuardDuty to prevent unauthorized access to the S3 bucket.
Question 78
A company wants to know more about the benefits offered by cloud computing. The company wants to understand the operational advantage of agility. How does AWS provide agility for users?
- A: The ability the ensure high availability by deploying workloads to multiple regions
- B: A pay-as-you-go model for many services and resources
- C: The ability to transfer infrastructure management to the AWS Cloud
- D: The ability to provision and deprovision resources quickly with minimal effort
Question 79
A developer wants to deploy an application quickly on AWS without manually creating the required resources.
Which AWS service will meet these requirements?
- A: Amazon EC2
- B: AWS Elastic Beanstalk
- C: AWS CodeBuild
- D: Amazon Personalize
Question 80
A company needs a central user portal so that users can log in to third-party business applications that support Security Assertion Markup Language (SAML) 2.0.
Which AWS service will meet this requirement?
- A: AWS Identity and Access Management (IAM)
- B: Amazon Cognito
- C: AWS IAM Identity Center (AWS Single Sign-On)
- D: AWS CLI
Question 81
Which AWS service should users use to learn about AWS service availability and operations?
- A: Amazon EventBridge
- B: AWS Service Catalog
- C: AWS Control Tower
- D: AWS Health Dashboard
Question 82
Which AWS service or tool can be used to capture information about inbound and outbound traffic in an Amazon VPC?
- A: VPC Flow Logs
- B: Amazon Inspector
- C: VPC endpoint services
- D: NAT gateway
Question 83
What is the customer ALWAYS responsible for managing, according to the AWS shared responsibility model?
- A: Software licenses
- B: Networking
- C: Customer data
- D: Encryption keys
Question 84
Which AWS service can be used to retrieve compliance reports on demand?
- A: AWS Secrets Manager
- B: AWS Artifact
- C: AWS Security Hub
- D: AWS Certificate Manager
Question 85
Which AWS service enables users to check for vulnerabilities on Amazon EC2 instances by using predefined assessment templates?
- A: AWS WAF
- B: AWS Trusted Advisor
- C: Amazon Inspector
- D: AWS Shield
Question 86
A company plans to migrate to the AWS Cloud. The company is gathering information about its on-premises infrastructure and requires information such as the hostname, IP address, and MAC address.
Which AWS service will meet these requirements?
- A: AWS DataSync
- B: AWS Application Migration Service
- C: AWS Application Discovery Service
- D: AWS Database Migration Service (AWS DMS)
Question 87
Which action will help increase security in the AWS Cloud?
- A: Enable programmatic access for all IAM users.
- B: Use IAM users instead of IAM roles to delegate permissions.
- C: Rotate access keys on a reoccurring basis.
- D: Use inline policies instead of customer managed policies.
Question 88
A company is planning to migrate its application to the AWS Cloud.
Which AWS tool or set of resources should the company use to analyze and assess its readiness for migration?
- A: AWS Cloud Adoption Framework (AWS CAF)
- B: AWS Pricing Calculator
- C: AWS Well-Architected Framework
- D: AWS Budgets
Question 89
Which of the following describes some of the core functionality of Amazon S3?
- A: Amazon S3 is a high-performance block storage service that is designed for use with Amazon EC2.
- B: Amazon S3 is an object storage service that provides high-level performance, security, scalability, and data availability.
- C: Amazon S3 is a fully managed, highly reliable, and scalable file storage system that is accessible over the industry-standard SMB protocol.
- D: Amazon S3 is a scalable, fully managed elastic NFS for use with AWS Cloud services and on-premises resources.
Question 90
A company is storing sensitive customer data in an Amazon S3 bucket. The company wants to protect the data from accidental deletion or overwriting.
Which S3 feature should the company use to meet these requirements?
- A: S3 Lifecycle rules
- B: S3 Versioning
- C: S3 bucket policies
- D: S3 server-side encryption
Question 91
Which AWS benefit is demonstrated by on-demand technology services that enable companies to replace upfront fixed expenses with variable expenses?
- A: High availability
- B: Economies of scale
- C: Pay-as-you-go pricing
- D: Global reach
Question 92
Which AWS services or features enable users to connect on-premises networks to a VPC? (Choose two.)
- A: AWS VPN
- B: Elastic Load Balancing
- C: AWS Direct Connect
- D: VPC peering
- E: Amazon CloudFront
Question 93
A user needs to quickly deploy a nonrelational database on AWS. The user does not want to manage the underlying hardware or the database software.
Which AWS service can be used to accomplish this?
- A: Amazon RDS
- B: Amazon DynamoDB
- C: Amazon Aurora
- D: Amazon Redshift
Question 94
Which actions are examples of a company’s effort to rightsize its AWS resources to control cloud costs? (Choose two.)
- A: Switch from Amazon RDS to Amazon DynamoDB to accommodate NoSQL datasets.
- B: Base the selection of Amazon EC2 instance types on past utilization patterns.
- C: Use Amazon S3 Lifecycle policies to move objects that users access infrequently to lower-cost storage tiers.
- D: Use Multi-AZ deployments for Amazon RDS.
- E: Replace existing Amazon EC2 instances with AWS Elastic Beanstalk.
Question 95
Which AWS service or feature can a company use to apply security rules to specific Amazon EC2 instances?
- A: Network ACLs
- B: Security groups
- C: AWS Trusted Advisor
- D: AWS WAF
Question 96
Which design principles support the reliability pillar of the AWS Well-Architected Framework? (Choose two.)
- A: Perform operations as code.
- B: Enable traceability.
- C: Automatically scale to meet demand.
- D: Deploy resources globally to improve response time.
- E: Automatically recover from failure.
Question 97
A company that uses AWS needs to transfer 2 TB of data.
Which type of transfer of that data would result in no cost for the company?
- A: Inbound data transfer from the internet
- B: Outbound data transfer to the internet
- C: Data transfer between AWS Regions
- D: Data transfer between Availability Zones
Question 98
A company wants to create templates that the company can reuse to deploy multiple AWS resources.
Which AWS service or feature can the company use to meet this requirement?
- A: AWS Marketplace
- B: Amazon Machine Image (AMI)
- C: AWS CloudFormation
- D: AWS OpsWorks
Question 99
A company is building an application that requires the ability to send, store, and receive messages between application components. The company has another requirement to process messages in first-in, first-out (FIFO) order.
Which AWS service should the company use?
- A: AWS Step Functions
- B: Amazon Simple Notification Service (Amazon SNS)
- C: Amazon Kinesis Data Streams
- D: Amazon Simple Queue Service (Amazon SQS)
Question 100
Which AWS service or feature is a browser-based, pre-authenticated service that can be launched directly from the AWS Management Console?
- A: AWS API
- B: AWS Lightsail
- C: AWS Cloud9
- D: AWS CloudShell
Free preview mode
Enjoy the free questions and consider upgrading to gain full access!