Search Header Logo

Associate Architecting & SysOps on AWS (Day 3)

Authored by Su Trinh

Professional Development

Professional Development

Used 6+ times

Associate Architecting & SysOps on AWS (Day 3)
AI

AI Actions

Add similar questions

Adjust reading levels

Convert to real-world scenario

Translate activity

More...

    Content View

    Student View

15 questions

Show all answers

1.

MULTIPLE CHOICE QUESTION

1 min • 2 pts

You have been evaluating the NACLs in your company. Most of the NACLs are configured the same:

100 All Traffic Allow

200 All Traffic Deny

* All Traffic Deny

What function does the * All Traffic Deny rule perform?

Traffic will be denied from specified IP addresses
The * specifies that it is an example rule
This rule ensures that if a packet doesn't match any of the other numbered rules, it's denied
It is there in case no other rules are defined

2.

MULTIPLE CHOICE QUESTION

1 min • 5 pts

Which section of a CloudFormation template allows you to define which AMI ID to use based on the region you are deploying to?

Mappings
Outputs
Description
Resources

3.

MULTIPLE CHOICE QUESTION

1 min • 5 pts

Your S3 buckets are separated based on the type of data they are holding and the level of security required for that data. You have several buckets that have data you want to safeguard from accidental deletion. Which configuration will meet this requirement?

Signed URLs to all users to access the bucket
Configure cross-account access with an IAM Role prohibiting object deletion in the bucket
Archive sensitive data to Amazon Glacier
Enable versioning on the bucket and multi-factor authentication delete as well

4.

MULTIPLE SELECT QUESTION

1 min • 5 pts

Your company has been using AWS Organizations. As a security engineer, what methods can you control permissions among accounts, resources? (select TWO.)

IAM policies
VPC peering
Resource Access Manager
Service Control Policy
AWS Config

5.

MULTIPLE SELECT QUESTION

1 min • 5 pts

What of the following are about caching features/strategies? (select TWO.)

Write Through

TLS termination

Read Replica
TTL

6.

MULTIPLE CHOICE QUESTION

1 min • 5 pts

Several S3 Buckets have been deleted and a few EC2 instances have been terminated. Which AWS service can you use to determine who took these actions?

Trusted Advisor
AWS CloudWatch
AWS CloudTrail
AWS Inspector

7.

MULTIPLE CHOICE QUESTION

1 min • 8 pts

You are managing S3 buckets in your organization. For auditing purposes you would like to be informed if an object is moved because of Lifecycle transition. What is the most efficient way you can do this?

Configure S3 Transfer Acceleration

Create a Lambda function which is triggered by any event of S3 object

Configure S3 event notifications

Create an SNS notification for any upload to S3

Access all questions and much more by creating a free account

Create resources

Host any resource

Get auto-graded reports

Google

Continue with Google

Email

Continue with Email

Classlink

Continue with Classlink

Clever

Continue with Clever

or continue with

Microsoft

Microsoft

Apple

Apple

Others

Others

Already have an account?

Discover more resources for Professional Development