Amazon CLF-C01 Practice Test - Questions Answers, Page 15

List of questions
Question 141

A company has an uninterruptible application that runs on Amazon EC2 instances. The application constantly processes a backlog of files in an Amazon Simple Queue Service (Amazon SQS) queue. This usage is expected to continue to grow for years.
What is the MOST cost-effective EC2 instance purchasing model to meet these requirements?
Question 142

A company wants to improve its security and audit posture by limiting Amazon EC2 inbound access.
What should the company use to access instances remotely instead of opening inbound SSH ports and managing SSH keys?
Question 143

Which AWS services and features are provided to all customers at no charge? (Select TWO.)
Question 144

Which AWS service should be used to monitor Amazon EC2 instances for CPU and network utilization?
Question 145

Which service enables risk auditing by continuously monitoring and logging account activity, including user actions in the AWS Management Console and AWS SDKs?
Question 146

A company's security team requires that all Amazon EC2 workloads use approved Amazon Machine Images (AMIs). Which AWS service should the company use to verify that the EC2 instances are using approved AMIs?
Question 147

Which AWS services can be used to gather information about AWS account activity? (Select TWO.)
Explanation:
AWS offers a solution that uses AWS CloudTrail to log account activity, Amazon Kinesis to compute and stream metrics in real-time, and Amazon DynamoDB to durably store the computed data.
Metrics are calculated for create, modify, and delete API calls for more than 60 supported AWS services. The solution also features a dashboard that visualizes your account activity in real-time.
AWS CloudTrail is a service that enables governance, compliance, operational auditing, and risk auditing of your AWS account. CloudTrail provides event history of your AWS account activity, including actions taken through the AWS Management Console, AWS SDKs, command line tools, and other AWS services.
AWS CloudHSM is a cloud-based hardware security module (HSM) that enables you to easily generate and use your own encryption keys on the AWS Cloud. With CloudHSM, you can manage your own encryption keys using FIPS 140-2 Level 3 validated HSMs.
Question 148

Users are reporting latency when connecting to an website with a global customer base.
Which AWS service will following can an AWS customer use to launch educing latency?
Question 149

Which of the following are advantages of AWS consolidated billing? (Select TWO.)
Explanation: https://aws.amazon.com/premiumsupport/knowledge-center/support-consolidated-billing/
Question 150

A company has a MySQL database running on a single Amazon EC2 instance. The company now requires higher availability in the event of an outage Which set of tasks would meet this requirement?
Question