New Year Sale Special - Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: sntaclus

Which AWS service provides access to AWS security and compliance reports for audits?

A.

Amazon Inspector

B.

Amazon GuardDuty

C.

AWS Artifact

D.

Amazon Detective

A company wants to secure its consumer web application by using SSL/TLS to encrypt traffic.

Which AWS service can the company use to meet this goal?

A.

AWS WAF

B.

AWS Shield

C.

Amazon VPC

D.

AWS Certificate Manager (ACM)

Which AWS service provides a scalable data warehouse solution?

A.

Amazon S3

B.

Amazon DynamoDB

C.

Amazon Kinesis Data Streams

D.

Amazon Redshift

A company needs to organize its resources and track AWS costs on a detailed level. The company needs to categorize costs by business department, environment, and application. Which solution will meet these requirements'?

A.

Access the AWS Cost Management console to organize resources set an AWS budget, and receive notifications of unintentional usage.

B.

Use tags to organize the resources. Activate cost allocation tags to track AWS costs on a detailed level.

C.

Create Amazon CloudWatch dashboards to visually organize and track costs individually.

D.

Access the AWS Billing and Cost Management dashboard to organize and track resource consumption on a detailed level.

Which AWS service or feature can a company use to create a private, secured, and scalable network environment in the AWS Cloud?

A.

Amazon Elastic Container Service (Amazon ECS)

B.

Amazon S3

C.

Amazon VPC

D.

Route tables

A company wants to migrate its applications from its on-premises data center to a VPC in the AWS Cloud. These applications will need to access on-premises resources. Which actions will meet these requirements? (Select TWO.)

A.

Use AWS Service Catalog to identify a list of on-premises resources that can be migrated.

B.

Create a VPN connection between an on-premises device and a virtual private gateway in the VPC.

C.

Use an Amazon CloudFront distribution and configure it to accelerate content delivery close to the on-premises resources

D.

Set up an AWS Direct Connect connection between the on-premises data center and AWS.

E.

Use Amazon CloudFront to restrict access to static web content provided through the on-premises web servers.

Which AWS service allows users to model and provision AWS resources using common programming languages?

A.

AWS CloudFormation

B.

AWS CodePipeline

C.

AWS Cloud Development Kit (AWS CDK)

D.

AWS Systems Manager

Which task is the shared responsibility of the customer and AWS under the AWS shared responsibility model?

A.

Installing hardware infrastructure

B.

Managing security

C.

Managing guest operating systems

D.

Protecting the physical infrastructure that runs all services

A company needs access to checks and recommendations that help the company follow AWS best practices for cost optimization, security, fault tolerance, performance, and service quotas.

Which combination of an AWS service and AWS Support plan on the AWS account will meet these requirements?

A.

AWS Trusted Advisor with AWS Developer Support

B.

AWS Health Dashboard with AWS Enterprise Support

C.

AWS Trusted Advisor with AWS Business Support

D.

AWS Health Dashboard with AWS Enterprise On-Ramp Support

A company is moving Us development and test environments to AWS to increase agility and reduce cost. Because these are not production workloads and the servers are not fully utilized, occasional unavailability is acceptable.

What is the MOST cost-effective Amazon EC2 pricing model that will meet these requirements?

A.

Reserved instances

B.

On-Demand Instances

C.

Spot Instances

D.

Dedicated Hosts

A company wants to use AWS. The company has stringent requirements about low-latency access to on-premises systems and data residency.

Which AWS service should the company use to design a solution that meets these requirements?

A.

AWS Wavelength

B.

AWS Transit Gateway

C.

AWS Ground Station

D.

AWS Outposts

A company needs to create a portfolio that provides central management of approved IT services. Which AWS service offers this functionality?

A.

AWS Service Catalog

B.

AWS Control Tower

C.

AWS Cloud Map

D.

AWS Clean Rooms

A company is connecting multiple VPCs and on-premises networks. The company needs to use an AWS service as a cloud router to simplify peering relationships.

Which AWS service can the company use to meet this requirement?

A.

AWS Direct Connect

B.

AWS Transit Gateway

C.

Amazon Connect

D.

Amazon Route 53

Which AWS service provides machine learning capability to detect and analyze content in images and videos?

A.

Amazon Connect

B.

Amazon Lightsail

C.

Amazon Personalize

D.

Amazon Rekognition

A company wants to visualize and manage AWS Cloud costs and usage for a specific period of time.

Which AWS service or feature will meet these requirements?

A.

Cost Explorer

B.

Consolidated billing

C.

AWS Organizations

D.

AWS Budgets

A company needs to automatically protect its Amazon EC2 instances from distributed denial of service (DDoS) attacks.

A.

Network access control list (ACL)

B.

AWS Shield

C.

Security group

D.

Amazon GuardDuty

A company wants to track tags, buckets, and prefixes for its Amazon S3 objects.

Which S3 feature will meet this requirement?

A.

S3 Inventory report

B.

S3 Lifecycle

C.

S3 Versioning

D.

S3 ACLs

A company's information security manager is supervising a move to AWS and wants to ensure that AWS best practices are followed. The manager has concerns about the potential misuse of AWS account root user credentials.

Which of the following is an AWS best practice for using the AWS account root user credentials?

A.

Allow only the manager to use the account root user credentials for normal activities.

B.

Use the account root user credentials only for Amazon EC2 instances from the AWS Free Tier.

C.

Use the account root user credentials only when they alone must be used to perform a requiredfunction.

D.

Use the account root user credentials only for the creation of private VPC subnets.

Which task can a company perform by using security groups in the AWS Cloud?

A.

Allow access to an Amazon EC2 instance through only a specific port.

B.

Deny access to malicious IP addresses at a subnet level.

C.

Protect data that is cached by Amazon CloudFront.

D.

Apply a stateless firewall to an Amazon EC2 instance.

Which of the following is the customer's responsibility, according to the AWS shared responsibility model?

A.

Identity and access management

B.

Hard drive initialization

C.

Protection of data center hardware

D.

Security of Availability Zones