wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

AWS Certified Cloud Practitioner

Total questions: 15

Worksheet time: 8mins

Name
Class
Date
1.

Which of the following can be attached to EC2 Instances to store data?

a)

Amazon Glacier

b)

Amazon EBS Volumes

c)

Amazon EBS Snapshots

d)

Amazon SQS

2.

Which of the following networking component can be used to host EC2 resources in the AWS Cloud?

a)

AWS Trusted Advisor

b)

AWS VPC

c)

AWS Elastic Load Balancer

d)

AWS Autoscaling

3.

Your company is planning to host resources in the AWS Cloud. They want to use services which can be used to decouple resources hosted on the cloud. Which of the following services can help fulfil this requirement

a)

AWS EBS Volumes

b)

AWS EBS Snapshots

c)

AWS Glacier

d)

AWS SQS

4.

Which of the following components of the Cloudfront service can be used to distribute contents to users across the globe.

a)

Amazon VPC

b)

Amazon Regions

c)

Amazon Availability Zones

d)

Amazon Edge locations

5.

Your company is planning to move to the AWS Cloud. You need to give a presentation on the cost perspective when moving existing resources to the AWS Cloud. When it comes to Amazon EC2, which of the following is an advantage when it comes to the cost perspective.

a)

Having the ability of automated backups of the EC2 instance, so that you don’t need to worry about the maintenance costs.

b)

The ability to choose low cost AMI’s to prepare the EC2 Instances

c)

The ability to only pay for what you use

d)

Ability to tag instances to reduce the overall cost

6.

Your company is planning on moving to the AWS Cloud. Once the movement to the Cloud is complete, they want to ensure that the right security settings are put in place. Which of the below tools can assist from a Security compliance. Choose 2 answers from the options given below.

a)

AWS Inspector

b)

AWS Trusted Advisor

c)

AWS Support

d)

AWS Kinesis

7.

There is a requirement to collect important metrics from AWS RDS and EC2 Instances. Which AWS service would be helpful to fulfill this requirement?

a)

Amazon CloudFront

b)

Amazon CloudSearch

c)

Amazon CloudWatch

d)

Amazon Config

8.

An administrator is looking to run their cloud infrastructure along best practice guidelines by leveraging on Amazon Inspector and AWS Trusted Advisor services.

Which of the following statements correctly describe how this can be done? (Select TWO)

a)

Running Amazon Inspector service to probe and protect cloud infrastructure from threats regularly

b)

Adhering to recommendations given in the main pillars of AWS Trusted Advisor, which are cost optimization, security, performance, fault-tolerance and service limits

c)

Regularly running Amazon Inspector service on EC2 instances to get a concise list of security vulnerabilities and exposures to attack.

d)

AWS Trusted Advisor will highlight pending tasks to be resolved in only performance and cost optimization best practices whilst Amazon Inspector will alert the administrator of security vulnerabilities.

e)

Amazon Inspector will highlight pending tasks to be resolved in only performance and cost optimization best practices whilst AWS Trusted Advisor will alert the administrator of security vulnerabilities.

9.

Which of the following service is most useful when a Disaster Recovery method is triggered in AWS.

a)

Amazon Route 53

b)

Amazon SNS

c)

Amazon SQS

d)

Amazon Inspector

10.

Which statement is accurate about AWS Budgets and Cost Explorer?

a)

AWS Budgets uses the cost visualizations provided by AWS Cost Explorer to show

the status of preset budgets and to provide forecasts of estimated costs.

b)

Both AWS Budgets and AWS Cost Explorer can be used to predict usage and to

give recommended cost-optimization measures.

c)

AWS Cost Explorer will lists the costs incurred over a period of time with a further

breakdown by region and linked account.

d)

Due to the sensitivity of billing and cost management information, with the AWS

Cost Explorer and AWS Budgets services, it is not possible to view the information

for multiple accounts.

11.

When designing a system, you use the principle of “design for failure and nothing will fail”.

Which of the following services/features of AWS can assist in supporting this design

principle. Choose 3 answers from the options given below

a)

Availability Zones

b)

Regions

c)

Elastic Load Balancer

d)

Pay as you go

12.

Currently your organization has an operational team that takes care of ID management in their on-premise data center. They now also need to manage users and groups created in AWS. Which of the following AWS tools would they need to use for performing this management function.

a)

AWS Config

b)

AWS Cloud Trail

c)

AWS Key Management Service (AWS KMS)

d)

AWS Identity and Access Management (IAM)

13.

You have a devops team in your current organization structure. They are keen to know if there is any service available in AWS which can be used to manage infrastructure as code.

Which of the following can be met with such a requirement

a)

Using AWS Cloudformation

b)

Using AWS Config

c)

Using AWS Inspector

d)

Using AWS Trusted Advisor

14.

Select TWO statements that describe the main roles of AWS Web Application Firewall (WAF) and AWS Shield?

a)

AWS Shield Standard is inherently available within the AWS WAF service at no

extra cost

b)

AWS WAF is inherently available within the AWS Shield Standard service at an

additional charge

c)

AWS Web Application Firewall (WAF) will provide expanded protection against SYN floods, DNS query oods and UDP reflection attacks at no additional cost

d)

AWS Web Application Firewall (WAF) and AWS Shield are fully-managed services

e)

AWS WAF is a web application rewall that includes AWS Shield - a service that prevents distributed denial of service (DDoS) attacks

15.

Which of the following is the responsibility of AWS according to the Shared Security Model?

Choose 3 answers from the options given below

a)

Managing AWS Identity and Access Management (IAM)

b)

Securing edge locations

c)

Monitoring physical device security

d)

Implementing service organization Control (SOC) standards