A company runs its website on Amazon EC2 instances behind an Application Load Balancer that is configured as the origin for an Amazon CloudFront distribution. The company wants to protect against cross-site scripting and SQL injection attacks. Which approach should a solutions architect recommend to meet these requirements?

CS301 SAA Quiz

Quiz
•
Information Technology (IT)
•
University
•
Hard
Hansen Lim
FREE Resource
20 questions
Show all answers
1.
MULTIPLE CHOICE QUESTION
1 min • 1 pt
Enable AWS Shield Advanced. List the CloudFront distribution as a protected resource.
Define an AWS Shield Advanced policy in AWS Firewall Manager to block cross-site scripting and SQL injection attacks.
Deploy AWS Firewall Manager on the EC2 instances. Create conditions and rules that block cross-site scripting and SQL injection attacks.
Set up AWS WAF on the CloudFront distribution. Use conditions and rules that block cross-site scripting and SQL injection attacks.
2.
MULTIPLE CHOICE QUESTION
1 min • 1 pt
A company needs to maintain data records for a minimum of 5 years. The data is rarely accessed after it is stored. The data must be accessible within 2 hours. Which solution will meet these requirements MOST cost-effectively?
Store the data in an Amazon Elastic File System (Amazon EFS) file system. Access the data by using AWS Direct Connect.
Store the data in an Amazon Elastic Block Store (Amazon EBS) volume. Create snapshots. Store the snapshots in an Amazon S3 bucket.
Store the data in an Amazon S3 bucket. Use an S3 Lifecycle policy to move the data to S3 Standard-Infrequent Access (S3 Standard-IA).
Store the data in an Amazon S3 bucket. Use an S3 Lifecycle policy to move the data to S3 Glacier Instant Retrieval
3.
MULTIPLE CHOICE QUESTION
1 min • 1 pt
A company is investigating services to manage vulnerability scans in Amazon EC2 instances and container images that the company stores in Amazon Elastic Container Registry (Amazon ECR). The service should identify potential software vulnerabilities and categorize the severity of the vulnerabilities. Which AWS service will meet these requirements?
Amazon GuardDuty
Patch Manager, a capability of AWS Systems Manager
Amazon Inspector
AWS Config
4.
MULTIPLE CHOICE QUESTION
1 min • 1 pt
A company is deploying a new application that will consist of an application layer and an online transaction processing (OLTP) relational database. The application must be available at all times. However, the application will have unpredictable traffic patterns. The company wants to pay the minimum for compute costs during these idle periods. Which solution will meet these requirements MOST cost effectively?
Run the application on Amazon EC2 instances by using a burstable instance type. Use Amazon Redshift for the database
Deploy the application and a MySQL database to Amazon EC2 instances by using AWS CloudFormation. Delete the instances at the beginning of the idle periods
Deploy the application on Amazon EC2 instances in an Auto Scaling group behind an Application Load Balancer. Use Amazon RDS for MySQL for the database
Run the application in containers with Amazon Elastic Container Service (Amazon ECS) on AWS Fargate. Use Amazon Aurora Serverless for the database
5.
MULTIPLE SELECT QUESTION
1 min • 1 pt
Which components are required to build a site-to-site VPN connection to AWS? Select TWO
An internet gateway
A NAT Gateway
A Customer Gateway
Amazon API Gateway
A virtual private gateway
6.
MULTIPLE CHOICE QUESTION
1 min • 1 pt
A company is developing a new mobile version of its popular web application in the AWS Cloud. The mobile app must be accessible to internal and external users. The mobile app must handle authorization, authentication, and user management from one central source. Which solution meets these requirements?
IAM Roles
IAM Users and Groups
Amazon Cognito User Pools
AWS Security Token Service (STS)
7.
MULTIPLE CHOICE QUESTION
1 min • 1 pt
A company is designing a disaster recovery (DR) architecture for an important application on AWS. The company has determined that the recovery time objective (RTO) is 5 minutes with a minimal running instance capacity to support the application in the AWS DR site. The company needs to minimize costs for the DR architecture. Which DR strategy will meet these requirements?
Warm Standby
Pilot Light
Multi-Site Active-Active
Backup and Restore
Create a free account and access millions of resources
Similar Resources on Quizizz
15 questions
komputasi awan

Quiz
•
University
15 questions
Cloud Computing Quiz

Quiz
•
University
15 questions
Cloud Computing

Quiz
•
University
15 questions
NLP TI

Quiz
•
University
19 questions
SAA-C03 (200-219)

Quiz
•
University
16 questions
SAA-C03 (183-)

Quiz
•
University
20 questions
SAA-C03 (140-160)

Quiz
•
University
20 questions
Cloud Deployment and Service Models Quiz

Quiz
•
University
Popular Resources on Quizizz
15 questions
Character Analysis

Quiz
•
4th Grade
17 questions
Chapter 12 - Doing the Right Thing

Quiz
•
9th - 12th Grade
10 questions
American Flag

Quiz
•
1st - 2nd Grade
20 questions
Reading Comprehension

Quiz
•
5th Grade
30 questions
Linear Inequalities

Quiz
•
9th - 12th Grade
20 questions
Types of Credit

Quiz
•
9th - 12th Grade
18 questions
Full S.T.E.A.M. Ahead Summer Academy Pre-Test 24-25

Quiz
•
5th Grade
14 questions
Misplaced and Dangling Modifiers

Quiz
•
6th - 8th Grade