wayground logo

Free Printable Worksheets

Font size

S
M
L
XL
Worksheets

AWS Cloud Practitioner - Simulador #7

Total questions: 65

Worksheet time: 35mins

Name
Class
Date
1.

Which features and benefits does the AWS Organizations service provide? (Choose two.)

a)

Establishing real-time communications between members of an internal team

b)

Facilitating the use of NoSQL databases

c)

Providing automated security checks

d)

Implementing consolidated billing

e)

Enforcing the governance of AWS accounts

2.

Which AWS service is used to automate configuration management using Chef and Puppet?

a)

AWS Config

b)

AWS OpsWorks

c)

AWS CloudFormation

d)

AWS Systems Manager

3.

Which tool is best suited for combining the billing of AWS accounts that were previously independent from one another?

a)

Detailed billing report

b)

Consolidated billing

c)

AWS Cost and Usage report

d)

Cost allocation report

4.

The AWS Total Cost of Ownership (TCO) Calculator is used to:

a)

receive reports that break down AWS Cloud compute costs by duration, resource, or tags

b)

estimate savings when comparing the AWS Cloud to an on-premises environment

c)

estimate a monthly bill for the AWS Cloud resources that will be used

d)

enable billing alerts to monitor actual AWS costs compared to estimated costs

5.

Which AWS services can be used to provide network connectivity between an on-premises network and a VPC? (Choose two.)

a)

Amazon Route 53

b)

AWS Direct Connect

c)

AWS Data Pipeline

d)

AWS VPN

e)

Amazon Connect

6.

Under the AWS shared responsibility model, which of the following are customer responsibilities? (Choose two.)

a)

Setting up server-side encryption on an Amazon S3 bucket

b)

Amazon RDS instance patching

c)

Network and firewall configurations

d)

Physical security of data center facilities

e)

Compute capacity availability

7.

What is the MINIMUM AWS Support plan level that will provide users with access to the AWS Support API?

a)

Developer

b)

Enterprise

c)

Business

d)

Basic

8.

A company has deployed several relational databases on Amazon EC2 instances. Every month, the database software vendor releases new security patches that need to be applied to the databases. What is the MOST efficient way to apply the security patches?

a)

Connect to each database instance on a monthly basis, and download and apply the necessary security patches from the vendor.

b)

Enable automatic patching for the instances using the Amazon RDS console.

c)

In AWS Config, configure a rule for the instances and the required patch level.

d)

Use AWS Systems Manager to automate database patching according to a schedule.

9.

A company wants to use Amazon Elastic Compute Cloud (Amazon EC2) to deploy a global commercial application. The deployment solution should be built with the highest redundancy and fault tolerance. Based on this situation, the Amazon EC2 instances should be deployed:

a)

in a single Availability Zone in one AWS Region

b)

with multiple Elastic Network Interfaces belonging to different subnets

c)

across multiple Availability Zones in one AWS Region

d)

across multiple Availability Zones in two AWS Regions

10.

A company has an application with users in both Australia and Brazil. All the company infrastructure is currently provisioned in the Asia Pacific (Sydney) Region in Australia, and Brazilian users are experiencing high latency. What should the company do to reduce latency?

a)

Implement AWS Direct Connect for users in Brazil

b)

Provision resources in the South America (S◌ֳ £o Paulo) Region in Brazil

c)

Use AWS Transit Gateway to quickly route users from Brazil to the application

d)

Launch additional Amazon EC2 instances in Sydney to handle the demand

11.

An Amazon EC2 instance runs only when needed yet must remain active for the duration of the process. What is the most appropriate purchasing option?

a)

Dedicated Instances

b)

Spot Instances

c)

On-Demand Instances

d)

Reserved Instances

12.

Which AWS dashboard displays relevant and timely information to help users manage events in progress, and provides proactive notifications to help plan for scheduled activities?

a)

AWS Service Health Dashboard

b)

AWS Personal Health Dashboard

c)

AWS Trusted Advisor dashboard

d)

Amazon CloudWatch dashboard

13.

Which AWS hybrid storage service enables a userגTM€s on-premises applications to seamlessly use AWS Cloud storage?

a)

AWS Backup

b)

Amazon Connect

c)

AWS Direct Connect

d)

AWS Storage Gateway

14.

Which of the following acts as a virtual firewall at the Amazon EC2 instance level to control traffic for one or more instances?

a)

Access keys

b)

Virtual private gateways

c)

Security groups

d)

Access Control Lists (ACL)

15.

What is the most efficient way to establish network connectivity from on-premises to multiple VPCs in different AWS Regions?

a)

Use AWS Direct Connect

b)

Use AWS VPN

c)

Use AWS Client VPN

d)

Use an AWS Transit Gateway

16.

Which AWS Support plan provides access to architectural and operational reviews, as well as 24/7 access to Senior Cloud Support Engineers through email, online chat, and phone?

a)

Basic

b)

Business

c)

Developer

d)

Enterprise

17.

Which AWS service or feature helps restrict the AWS services, resources, and individual API actions the users and roles in each member account can access?

a)

Amazon Cognito

b)

AWS Organizations

c)

AWS Shield

d)

AWS Firewall Manager

18.

What is the best resource for a user to find compliance-related information and reports about AWS?

a)

AWS Artifact

b)

AWS Marketplace

c)

Amazon Inspector

d)

AWS Support

19.

Which Amazon S3 storage class is optimized to provide access to data with lower resiliency requirements, but rapid access when needed such as duplicate backups?

a)

Amazon S3 Standard

b)

Amazon S3 Glacier Deep Archive

c)

Amazon S3 One Zone-Infrequent Access

d)

Amazon S3 Glacier

20.

What is an Availability Zone in AWS?

a)

One or more physical data centers

b)

A completely isolated geographic location

c)

One or more edge locations based around the world

d)

A data center location with a single source of power and networking

21.

Which AWS services can be used as infrastructure automation tools? (Choose two.)

a)

AWS CloudFormation

b)

Amazon CloudFront

c)

AWS Batch

d)

AWS OpsWorks

e)

Amazon QuickSight

22.

Which AWS service enables users to create copies of resources across AWS Regions?

a)

Amazon ElastiCache

b)

AWS CloudFormation

c)

AWS CloudTrail

d)

AWS Systems Manager

23.

A user would like to encrypt data that is received, stored, and managed by AWS CloudTrail. Which AWS service will provide this capability?

a)

AWS Secrets Manager

b)

AWS Systems Manager

c)

AWS Key Management Service (AWS KMS)

d)

AWS Certificate Manager

24.

Which AWS Cloud benefit eliminates the need for users to try estimating future infrastructure usage?

a)

Easy and fast deployment of applications in multiple Regions around the world

b)

Security of the AWS Cloud

c)

Elasticity of the AWS Cloud

d)

Lower variable costs due to massive economies of scale

25.

What credential components are required to gain programmatic access to an AWS account? (Choose two.)

a)

An access key ID

b)

A primary key

c)

A secret access key

d)

A user ID

e)

A secondary key

26.

Which of the following are AWS compute services? (Choose two.)

a)

Amazon Lightsail

b)

AWS Systems Manager

c)

AWS CloudFormation

d)

AWS Batch

e)

Amazon Inspector

27.

How can a company separate costs for network traffic, Amazon EC2, Amazon S3, and other AWS services by department?

a)

Add department-specific tags to each resource

b)

Create a separate VPC for each department

c)

Create a separate AWS account for each department

d)

Use AWS Organizations

28.

What is a benefit of consolidated billing for AWS accounts?

a)

Access to AWS Personal Health Dashboard

b)

Combined usage volume discounts

c)

Improved account security

d)

Centralized AWS IAM

29.

Which AWS service will allow a user to set custom cost and usage limits, and will alert when the thresholds are exceeded?

a)

AWS Organizations

b)

AWS Budgets

c)

Cost Explorer

d)

AWS Trusted Advisor

30.

Which AWS service provides the ability to detect inadvertent data leaks of personally identifiable information (PII) and user credential data?

a)

Amazon GuardDuty

b)

Amazon Inspector

c)

Amazon Macie

d)

AWS Shield

31.

Which tool can be used to monitor AWS service limits?

a)

AWS Total Cost of Ownership (TCO) Calculator

b)

AWS Trusted Advisor

c)

AWS Personal Health Dashboard

d)

AWS Cost and Usage report

32.

A company has distributed its workload on both the AWS Cloud and some on-premises servers. What type of architecture is this?

a)

Virtual private network

b)

Virtual private cloud

c)

Hybrid cloud

d)

Private cloud

33.

Which of the following describes a security best practice that can be implemented using AWS IAM?

a)

Disable AWS Management Console access for all users

b)

Generate secret keys for every IAM user

c)

Grant permissions to users who are required to perform a given task only

d)

Store AWS credentials within Amazon EC2 instances

34.

What can be used to automate and manage secure, well-architected, multi-account AWS environments?

a)

AWS shared responsibility model

b)

AWS Control Tower

c)

AWS Security Hub

d)

AWS Well-Architected Too

35.

Which AWS service or feature allows a user to easily scale connectivity among thousands of VPCs?

a)

VPC peering

b)

AWS Transit Gateway

c)

AWS Direct Connect

d)

AWS Global Accelerator

36.

A company needs protection from expanded distributed denial of service (DDoS) attacks on its website and assistance from AWS experts during such events. Which AWS managed service will meet these requirements?

a)

AWS Shield Advanced

b)

AWS Firewall Manager

c)

AWS WAF

d)

Amazon GuardDuty

37.

A companyגTM€s application has flexible start and end times. Which Amazon EC2 pricing model will be the MOST cost-effective?

a)

On-Demand Instances

b)

Spot Instances

c)

Reserved Instances

d)

Dedicated Hosts

38.

Under the AWS shared responsibility model, what are the customerגTM€s responsibilities? (Choose two.)

a)

Physical and environmental security

b)

Physical network devices including firewalls

c)

Storage device decommissioning

d)

Security of data in transit

e)

Data integrity authentication

39.

A cloud practitioner has a data analysis workload that is infrequently executed and can be interrupted without harm. To optimize for cost, which Amazon EC2 purchasing option should be used?

a)

On-Demand Instances

b)

Reserved Instances

c)

Spot Instances

d)

Dedicated Hosts

40.

Which AWS container service will help a user install, operate, and scale the cluster management infrastructure?

a)

Amazon Elastic Container Registry (Amazon ECR)

b)

AWS Elastic Beanstalk

c)

Amazon Elastic Container Service (Amazon ECS)

d)

Amazon Elastic Block Store (Amazon EBS)

41.

Which of the following allows an application running on an Amazon EC2 instance to securely write data to an Amazon S3 bucket without using long term credentials?

a)

Amazon Cognito

b)

AWS Shield

c)

AWS IAM role

d)

AWS IAM user access key

42.

A company with a Developer-level AWS Support plan provisioned an Amazon RDS database and cannot connect to it. Who should the developer contact for this level of support?

a)

AWS Support using a support case

b)

AWS Professional Services

c)

AWS technical account manager

d)

AWS consulting partners

43.

What is the purpose of having an internet gateway within a VPC?

a)

To create a VPN connection to the VPC

b)

To allow communication between the VPC and the Internet

c)

To impose bandwidth constraints on internet traffic

d)

To load balance traffic from the Internet across Amazon EC2 instances

44.

A company must ensure that its endpoint for a database instance remains the same after a single Availability Zone service interruption. The application needs to resume database operations without the need for manual administrative intervention. How can these requirements be met?

a)

Use multiple Amazon Route 53 routes to the standby database instance endpoint hosted on AWS Storage Gateway.

b)

Configure Amazon RDS Multi-Availability Zone deployments with automatic failover to the standby.

c)

Add multiple Application Load Balancers and deploy the database instance with AWS Elastic Beanstalk.

d)

Deploy a single Network Load Balancer to distribute incoming traffic across multiple Amazon CloudFront origins.

45.

Which AWS managed service can be used to distribute traffic between one or more Amazon EC2 instances?

a)

NAT gateway

b)

Elastic Load Balancing

c)

Amazon Athena

d)

AWS PrivateLink

46.

AWS Trusted Advisor provides recommendations on which of the following? (Choose two.)

a)

Cost optimization

b)

Auditing

c)

Serverless architecture

d)

Performance

e)

Scalability

47.

Which of the following tasks can only be performed after signing in with AWS account root user credentials? (Choose two.)

a)

Closing an AWS account

b)

Creating a new IAM policy

c)

Changing AWS Support plans

d)

Attaching a role to an Amazon EC2 instance

e)

Generating access keys for IAM users

48.

Fault tolerance refers to:

a)

the ability of an application to accommodate growth without changing design

b)

how well and how quickly an applicationגTM€s environment can have lost data restored

c)

how secure your application is

d)

the built-in redundancy of an applicationגTM€s components

49.

A company operating in the AWS Cloud requires separate invoices for specific environments, such as development, testing, and production. How can this be achieved?

a)

Use multiple AWS accounts

b)

Use resource tagging

c)

Use multiple VPCs

d)

Use Cost Explorer

50.

Which AWS service can be used in the application deployment process?

a)

AWS AppSync

b)

AWS Batch

c)

AWS CodePipeline

d)

AWS DataSync

51.

What can be used to reduce the cost of running Amazon EC2 instances? (Choose two.)

a)

Spot Instances for stateless and flexible workloads

b)

Memory optimized instances for high-compute workloads

c)

On-Demand Instances for high-cost and sustained workloads

d)

Reserved Instances for sustained workloads

e)

Spend limits set using AWS Budgets

52.

A company is launching an e-commerce site that will store and process credit card data. The company requires information about AWS compliance reports and AWS agreements. Which AWS service provides on-demand access to these items?

a)

AWS Certificate Manager

b)

AWS Config

c)

AWS Artifact

d)

AWS CloudTrail

53.

Which AWS service or feature allows the user to manager cross-region application traffic?

a)

Amazon AppStream 2.0

b)

Amazon VPC

c)

Elastic Load Balancer

d)

Amazon Route 53

54.

Which AWS service can be used to track unauthorized API calls?

a)

AWS Config

b)

AWS CloudTrail

c)

AWS Trusted Advisor

d)

Amazon Inspector

55.

A user needs to regularly audit and evaluate the setup of all AWS resources, identify non-compliant accounts, and be notified when a resource changes. Which AWS service can be used to meet these requirements?

a)

AWS Trusted Advisor

b)

AWS Config

c)

AWS Resource Access Manager

d)

AWS Systems Manager

56.

A user is planning to launch two additional Amazon EC2 instances to increase availability. Which action should the user take?

a)

Launch the instances across multiple Availability Zones in a single AWS Region.

b)

Launch the instances as EC2 Reserved Instances in the same AWS Region and the same Availability Zone.

c)

Launch the instances in multiple AWS Regions, but in the same Availability Zone.

d)

Launch the instances as EC2 Spot Instances in the same AWS Region, but in different Availability Zones.

57.

A company must store critical business data in Amazon S3 with a backup to another AWS Region. How can this be achieved?

a)

Use an Amazon CloudFront Content Delivery Network (CDN) to cache data globally

b)

Set up Amazon S3 cross-region replication to another AWS Region

c)

Configure the AWS Backup service to back up to the data to another AWS Region

d)

Take Amazon S3 bucket snapshots and copy that data to another AWS Region

58.

Which AWS Cloud service can send alerts to customers if custom spending thresholds are exceeded?

a)

AWS Budgets

b)

AWS Cost Explorer

c)

AWS Cost Allocation Tags

d)

AWS Organizations

59.

What is the recommended method to request penetration testing on AWS resources?

a)

Open a support case

b)

Fill out the Penetration Testing Request Form

c)

Request a penetration test from your technical account manager

d)

Contact your AWS sales representative

60.

A user needs to automatically discover, classify, and protect sensitive data stored in Amazon S3. Which AWS service can meet these requirements?

a)

Amazon Inspector

b)

Amazon Macie

c)

Amazon GuardDuty

d)

AWS Secrets Manager

61.

Which components are required to build a successful site-to-site VPN connection on AWS? (Choose two.)

a)

Internet gateway

b)

NAT gateway

c)

Customer gateway

d)

Transit gateway

e)

Virtual private gateway

62.

Which Amazon EC2 pricing option is best suited for applications with short-term, spiky, or unpredictable workloads that cannot be interrupted?

a)

Spot Instances

b)

Dedicated Hosts

c)

On-Demand Instances

d)

Reserved Instances

63.

Which AWS cloud architecture principle states that systems should reduce interdependencies?

a)

Scalability

b)

Services, not servers

c)

Removing single points of failure

d)

Loose coupling

64.

What is the MOST effective resource for staying up to date on AWS security announcements?

a)

AWS Personal Health Dashboard

b)

AWS Secrets Manager

c)

AWS Security Bulletins

d)

Amazon Inspector

65.

Which AWS service offers persistent storage for a file system?

a)

Amazon S3

b)

Amazon EC2 instance store

c)

Amazon Elastic Block Store (Amazon EBS)

d)

Amazon ElastiCache