wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

AWS Certified Cloud Practitioner - Quiz

Total questions: 15

Worksheet time: 30mins

Name
Class
Date
1.

Why is AWS more economical than traditional data centers for applications with varying compute workloads?

a)

Amazon EC2 costs are billed on a monthly basis.

b)

Users retain full administrative access to their Amazon EC2 instances.

c)

Amazon EC2 instances can be launched on demand when needed.

d)

Users can permanently run enough instances to handle peak workloads.

2.

Which AWS service would simplify the migration of a database to AWS?

a)

AWS Storage Gateway

b)

AWS Database Migration Service (AWS DMS)

c)

Amazon EC2

d)

Amazon AppStream 2.0

3.

Which AWS offering enables users to find, buy, and immediately start using software solutions in their

AWS environment?

a)

AWS Config

b)

AWS OpsWorks

c)

AWS SDK

d)

AWS Marketplace

4.

Which AWS networking service enables a company to create a virtual network within AWS?

a)

AWS Config

b)

Amazon Route 53

c)

AWS Direct Connect

d)

Amazon Virtual Private Cloud (Amazon VPC)

5.

Which of the following is an AWS responsibility under the AWS shared responsibility model?

a)

Configuring third-party applications

b)

Maintaining physical hardware

c)

Securing application access and data

d)

Managing guest operating systems

6.

Which component of the AWS global infrastructure does Amazon CloudFront use to ensure low-latency

delivery

a)

AWS Regions

b)

Edge locations

c)

Availability Zones

d)

Virtual Private Cloud (VPC)

7.

How would a system administrator add an additional layer of login security to a user's AWS

Management Console?

a)

Use Amazon Cloud Directory

b)

Audit AWS Identity and Access Management (IAM) roles

c)

Enable multi-factor authentication

d)

Enable AWS CloudTrail

8.

Which service can identify the user that made the API call when an Amazon EC2 instance is

terminated?

a)

AWS Trusted Advisor

b)

AWS CloudTrail

c)

AWS X-Ray

d)

AWS Identity and Access Management (AWS IAM)

9.

Which service would be used to send alerts based on Amazon CloudWatch alarms?

a)

Amazon Simple Notification Service (Amazon SNS)

b)

AWS CloudTrail

c)

AWS Trusted Advisor

d)

Amazon Route 53

10.

Where can a user find information about prohibited actions on the AWS infrastructure?

a)

AWS Trusted Advisor

b)

AWS Identity and Access Management (IAM)

c)

AWS Billing Console

d)

AWS Acceptable Use Policy

11.

Which of the following is true of a new security group?

a)

It contains an inbound rule denying access from public IP addresses.

b)

It contains an inbound rule denying access from any IP address.

c)

It contains an outbound rule allowing access to any IP address.

d)

It contains an inbound rule allowing access from any IP address.

e)

It contains an outbound rule denying access to public IP addresses.

12.

What’s the difference between a security group and a network access control list (NACL)? (Select TWO.)

a)

A security group operates at the instance level

b)

A network access control list operates at the subnet level.

c)

A network access control list operates at the instance level.

d)

A security group operates at the subnet level.

13.

Which of the following features of S3 improve the security of data you store in an S3 bucket? (Select TWO.)

a)

By default, S3 removes ACLs that allow public read access to objects.

b)

All objects are readable by all AWS users by default.

c)

Objects in S3 are not public by default

d)

S3 removes public objects by default.

14.

What’s the most cost-effective way to view and search only the last 60 days of management API events on your AWS account?

a)

Use CloudWatch Events.

b)

Use CloudTrail event history.

c)

Stream CloudTrail logs to CloudWatch.

d)

Create a trail.

15.

Which of the following describes an EC2 dedicated instance?

a)

An EC2 instance optimized for a particular compute role

b)

An EC2 instance running on a physical host reserved for the exclusive use of a single AWS account

c)

An EC2 instance running on a physical host reserved for and controlled by a single AWS account

d)

An EC2 AMI that can be launched only on an instance within a single AWS account