ExamGecko
Home Home / Amazon / CLF-C01

Amazon CLF-C01 Practice Test - Questions Answers, Page 68

Question list
Search
Search

Related questions











Which combination of steps will enable multi-factor authentication (MFA) on an AWS account?

(Select TWO.)

A.
Contact AWS Support to initiate MFA activation.
A.
Contact AWS Support to initiate MFA activation.
Answers
B.
Activate AWS Shield on an MFA-compatible device.
B.
Activate AWS Shield on an MFA-compatible device.
Answers
C.
Acquire an MFA-compatible device.
C.
Acquire an MFA-compatible device.
Answers
D.
Activate the MFA device by using Amazon GuardDuty.
D.
Activate the MFA device by using Amazon GuardDuty.
Answers
E.
Activate the MFA device in the IAM console or by using the AWS CLI.
E.
Activate the MFA device in the IAM console or by using the AWS CLI.
Answers
Suggested answer: B, C

Explanation:

AWS Multi-Factor Authentication (MFA) is a simple best practice that adds an extra layer of protection on top of your user name and password. With MFA enabled, when a user signs in to an AWS website, they will be prompted for their user name and password (the first factorówhat they know), as well as for an authentication response from their AWS MFA device (the second factoró what they have). Taken together, these multiple factors provide increased security for your AWS account settings and resources.

Which of the following is an AWS Well-Architected Framework design principle for operational excellence in the AWS Cloud?

A.
Go global in minutes.
A.
Go global in minutes.
Answers
B.
Make frequent, small, reversible changes.
B.
Make frequent, small, reversible changes.
Answers
C.
Implement a strong foundation of identity and access management.
C.
Implement a strong foundation of identity and access management.
Answers
D.
Stop spending money on hardware infrastructure for data center operations.
D.
Stop spending money on hardware infrastructure for data center operations.
Answers
Suggested answer: D

Explanation:

What is a benefit of using AWS serverless computing?

A.
Application deployment and management are not required.
A.
Application deployment and management are not required.
Answers
B.
Application security will be fully managed by AWS.
B.
Application security will be fully managed by AWS.
Answers
C.
Monitoring and logging are not needed.
C.
Monitoring and logging are not needed.
Answers
D.
Management of infrastructure is offloaded to AWS.
D.
Management of infrastructure is offloaded to AWS.
Answers
Suggested answer: D

Explanation:

Explanation:

Serverless computing allows you to build and run applications and services without thinking about servers. With serverless computing, your application still runs on servers, but all the server management is done by AWS.

A company runs applications that process credit card information. Auditors have asked if the AWS environment has changed since the previous audit. If the AWS environment has changed, the auditors want to know how it has changed.

Which AWS services can provide this information? (Select TWO.)

A.
AWS Artifact
A.
AWS Artifact
Answers
B.
AWS Trusted Advisor
B.
AWS Trusted Advisor
Answers
C.
AWS Config
C.
AWS Config
Answers
D.
AWS Cloud Trail
D.
AWS Cloud Trail
Answers
E.
AWS Identity and Access Management (IAM)
E.
AWS Identity and Access Management (IAM)
Answers
Suggested answer: C, D

Explanation:

Explanation:

AWS Artifact is your go-to, central resource for compliance-related information that matters to you. It provides on-demand access to AWS' security and compliance reports and select online agreements.

AWS Trusted Advisor provides recommendations that help you follow AWS best practices. Trusted Advisor evaluates your account by using checks. These checks identify ways to optimize your AWS infrastructure, improve security and performance, reduce costs, and monitor service quotas.

AWS Config is a service that enables you to assess, audit, and evaluate the configurations of your AWS resources. Config continuously monitors and records your AWS resource configurations and allows you to automate the evaluation of recorded configurations against desired configurations.

AWS CloudTrail enables auditing, security monitoring, and operational troubleshooting by tracking user activity and API usage. CloudTrail logs, continuously monitors, and retains account activity related to actions across your AWS infrastructure, giving you control over storage, analysis, and remediation actions.

AWS Identity and Access Management (IAM) provides fine-grained access control across all of AWS.

With IAM, you can specify who can access which services and resources, and under which conditions.

With IAM policies, you manage permissions to your workforce and systems to ensure least-privilege permissions.

A developer is working on enhancing applications at AWS. The developer needs a service that can securely host GitHub-based code, repositories, and version controls. Which AWS service should the developer use?

A.
AWS CodeStar
A.
AWS CodeStar
Answers
B.
Amazon CodeGuru
B.
Amazon CodeGuru
Answers
C.
AWS CodeCommit
C.
AWS CodeCommit
Answers
D.
AWS CodePipeline
D.
AWS CodePipeline
Answers
Suggested answer: C

Which AWS service provides an isolated virtual network to connect AWS services and resources?

A.
Amazon EC2
A.
Amazon EC2
Answers
B.
Amazon DynamoDB
B.
Amazon DynamoDB
Answers
C.
Amazon Lightsail
C.
Amazon Lightsail
Answers
D.
D.
Answers
Suggested answer: A, D

Explanation:

Explanation:

Explanation:

Amazon Virtual Private Cloud (Amazon VPC) enables you to launch AWS resources into a virtual network that you've defined. This virtual network closely resembles a traditional network that you'd operate in your own data center, with the benefits of using the scalable infrastructure of AWS.

A company needs to process data from satellite communications without managing any infrastructure. Which AWS service should the company use to meet these requirements?

A.
Amazon CloudWatch
A.
Amazon CloudWatch
Answers
B.
Amazon Aurora
B.
Amazon Aurora
Answers
C.
Amazon Athena
C.
Amazon Athena
Answers
D.
AWS Ground Station
D.
AWS Ground Station
Answers
Suggested answer: D

Explanation:

Explanation:

AWS Ground Station is a fully managed service that lets you control satellite communications, process data, and scale your operations without having to worry about building or managing your own ground station infrastructure. Satellites are used for a wide variety of use cases, including weather forecasting, surface imaging, communications, and video broadcasts. Ground stations form the core of global satellite networks. With AWS Ground Station, you have direct access to AWS services and the AWS Global Infrastructure including a low-latency global fiber network. For example, you can use Amazon S3 to store the downloaded data, Amazon Kinesis Data Streams for managing data ingestion from satellites, and Amazon SageMaker for building custom machine learning applications that apply to your data sets. You can save up to 80% on the cost of your ground station operations by paying only for the actual antenna time used, and relying on the global footprint of ground stations to download data when and where you need it. There are no long-term commitments, and you gain the ability to rapidly scale your satellite communications on-demand when your business needs it.

Which AWS service decouples application components so that the components run independently?

A.
Amazon Simple Notification Service (Amazon SNS)
A.
Amazon Simple Notification Service (Amazon SNS)
Answers
B.
Amazon Simple Workflow Service (Amazon SWF)
B.
Amazon Simple Workflow Service (Amazon SWF)
Answers
C.
AWS Glue
C.
AWS Glue
Answers
D.
Amazon Simple Queue Service (Amazon SQS)
D.
Amazon Simple Queue Service (Amazon SQS)
Answers
Suggested answer: D

Explanation:

Explanation:

Amazon SQS is a fully managed message queuing service that makes it easy to decouple and scale microservices, distributed systems, and serverless applications. Amazon SQS lets you decouple application components so that they run and fail independently, increasing the overall fault tolerance of the system.

A company needs real-time guidance to follow AWS best practices to save money, improve system performance, and close security gaps. Which AWS service should the company use?

A.
Amazon GuardDuty
A.
Amazon GuardDuty
Answers
B.
AWS Trusted Advisor
B.
AWS Trusted Advisor
Answers
C.
AWS Management Console
C.
AWS Management Console
Answers
D.
AWS Systems Manager
D.
AWS Systems Manager
Answers
Suggested answer: B

Explanation:

AWS Trusted Advisor provides recommendations that help you follow AWS best practices. Trusted Advisor evaluates your account by using checks.

Which service enables customers to audit API calls in their AWS accounts?

A.
AWS CloudTrail
A.
AWS CloudTrail
Answers
B.
AWS Trusted Advisor
B.
AWS Trusted Advisor
Answers
C.
Amazon Inspector
C.
Amazon Inspector
Answers
D.
AWS X-Ray
D.
AWS X-Ray
Answers
Suggested answer: A

Explanation:

Explanation:

AWS Audit Manager is integrated with AWS CloudTrail, a service that provides a record of actions taken by a user, role, or an AWS service in Audit Manager. CloudTrail captures all API calls for Audit Manager as events.

Total 944 questions
Go to page: of 95