ExamGecko
Home Home / Amazon / CLF-C02

Amazon CLF-C02 Practice Test - Questions Answers, Page 59

Question list
Search
Search

Related questions











Which AWS service can run a managed PostgreSQL database that provides online transaction processing (OLTP)?

A.
Amazon DynamoDB
A.
Amazon DynamoDB
Answers
B.
Amazon Athena
B.
Amazon Athena
Answers
C.
Amazon RDS
C.
Amazon RDS
Answers
D.
Amazon EMR
D.
Amazon EMR
Answers
Suggested answer: C

Explanation:

Amazon RDS is a fully managed relational database service that supports several database engines, including PostgreSQL. Amazon RDS can run a managed PostgreSQL database that provides online transaction processing (OLTP), which is a type of database workload that handles frequent read and write operations on small amounts of data. Amazon RDS for PostgreSQL offers high performance, availability, scalability, security, and compatibility with the PostgreSQL community edition. Amazon RDS also provides automated backups, point-in-time recovery, encryption, monitoring, and maintenance for PostgreSQL databases.Reference:

Hosted PostgreSQL - Amazon RDS for PostgreSQL

OLTP Database, MySQL And PostgreSQL Managed Database - Amazon Aurora

PostgreSQL options on AWS: Self- managed, managed, and serverless

Which complimentary AWS service or tool creates data-driven business cases for cloud planning?

A.
Migration Evaluator
A.
Migration Evaluator
Answers
B.
AWS Billing Conductor
B.
AWS Billing Conductor
Answers
C.
AWS Billing Console
C.
AWS Billing Console
Answers
D.
Amazon Forecast
D.
Amazon Forecast
Answers
Suggested answer: A

Explanation:

Migration Evaluator is a cloud-based service that provides organizations with a comprehensive assessment of their current IT environment and estimates the cost savings and performance improvements that can be achieved by migrating to AWS.Migration Evaluator helps users build a data-driven business case for AWS by discovering over-provisioned on-premises instances, providing recommendations for cost-effective AWS alternatives, and analyzing existing licenses and cost comparisons of Bring Your Own License (BYOL) and License Included (LI) options

Which option is a customer responsibility when using Amazon DynamoDB under the AWS Shared Responsibility Model?

A.
Physical security of DynamoDB
A.
Physical security of DynamoDB
Answers
B.
Patching of DynamoDB
B.
Patching of DynamoDB
Answers
C.
Access to DynamoDB tables
C.
Access to DynamoDB tables
Answers
D.
Encryption of data at rest in DynamoDB
D.
Encryption of data at rest in DynamoDB
Answers
Suggested answer: C

Explanation:

According to the AWS Shared Responsibility Model, AWS is responsible for the security of the cloud, while the customer is responsible for the security in the cloud. This means that AWS is responsible for protecting the infrastructure that runs AWS services, such as DynamoDB, while the customer is responsible for properly configuring the security of the provided service.For abstracted services, such as DynamoDB, the customer is primarily responsible for managing their data, classifying their assets, and using IAM tools to apply the appropriate permissions12.Therefore, the customer is responsible for controlling the access to DynamoDB tables, such as by creating IAM policies, roles, and users, and using encryption and authentication mechanisms3.Reference:

Shared Responsibility Model - Amazon Web Services (AWS)

Security and compliance in Amazon DynamoDB - Amazon DynamoDB

What is Shared Responsibility Model? - Check Point Software

Using AWS Identity and Access Management (IAM) to grant access only to the resources needed to perform a task is a concept known as:

A.
restricted access.
A.
restricted access.
Answers
B.
as-needed access.
B.
as-needed access.
Answers
C.
least privilege access.
C.
least privilege access.
Answers
D.
token access.
D.
token access.
Answers
Suggested answer: C

Explanation:

The concept of granting access only to the resources needed to perform a task is known asleast privilege access. This is a security best practice in IAM that helps to reduce the risk of unauthorized or malicious actions. By applying least privilege access, you can limit the permissions of your IAM users, groups, and roles to the minimum required for their specific tasks. You can also use conditions, permissions boundaries, and IAM Access Analyzer to further restrict and verify access.Reference:Security best practices in IAM,Policies and permissions in IAM,Use IAM policies to grant the least privileges required to access Amazon RDS resources,How to Design a Least Privilege Architecture in AWS,12 Azure & AWS IAM Security Best Practices

Which AWS feature provides a no-cost platform for AWS users to join community groups, ask questions, find answers, and read community-generated articles about best practices?

A.
AWS Knowledge Center
A.
AWS Knowledge Center
Answers
B.
AWS re:Post
B.
AWS re:Post
Answers
C.
AWS 10
C.
AWS 10
Answers
D.
AWS Enterprise Support
D.
AWS Enterprise Support
Answers
Suggested answer: B

Explanation:

AWS re:Post is a no-cost platform for AWS users to join community groups, ask questions, find answers, and read community-generated articles about best practices. AWS re:Post is a social media platform that connects AWS users with each other and with AWS experts. Users can create posts, comment on posts, follow topics, and join groups related to AWS services, solutions, and use cases. AWS re:Post also features live event feeds, community stories, and AWS Hero profiles. AWS re:Post is a great way to learn from the AWS community, share your knowledge, and get inspired.Reference:

AWS re:Post

Join the Conversation

Which of the following is a managed AWS service that is used specifically for extract, transform, and load (ETL) data?

A.
Amazon Athena
A.
Amazon Athena
Answers
B.
AWS Glue
B.
AWS Glue
Answers
C.
Amazon S3
C.
Amazon S3
Answers
D.
AWS Snowball Edge
D.
AWS Snowball Edge
Answers
Suggested answer: B

Explanation:

AWS Glue is a serverless data integration service that makes it easy to discover, prepare, move, and integrate data from multiple sources for analytics, machine learning, and application development. You can use various data integration engines, such as ETL, ELT, batch, and streaming, and manage your data in a centralized data catalog.AWS Glue is designed specifically for extract, transform, and load (ETL) data, whereas the other options are not.

Which AWS service or feature can be used to create a private connection between an on-premises workload and an AWS Cloud workload?

A.
Amazon Route 53
A.
Amazon Route 53
Answers
B.
Amazon Macie
B.
Amazon Macie
Answers
C.
AWS Direct Connect
C.
AWS Direct Connect
Answers
D.
AWS PrivaleLink
D.
AWS PrivaleLink
Answers
Suggested answer: C

Explanation:

AWS Direct Connect is a service that establishes a dedicated network connection between your on-premises network and one or more AWS Regions. AWS Direct Connect can be used to create a private connection between an on-premises workload and an AWS Cloud workload, bypassing the public internet and reducing network costs, latency, and bandwidth issues. AWS Direct Connect can also provide increased security and reliability for your hybrid cloud applications and data transfers.Reference:

AWS Direct Connect

What is AWS Direct Connect?

AWS Direct Connect User Guide

What is the best resource for a user to find compliance-related information and reports about AWS?

A.
AWS Artifact
A.
AWS Artifact
Answers
B.
AWS Marketplace
B.
AWS Marketplace
Answers
C.
Amazon Inspector
C.
Amazon Inspector
Answers
D.
Increase operational costs across data centers.
D.
Increase operational costs across data centers.
Answers
Suggested answer: A

Explanation:

AWS Artifact is a self-service portal that provides on-demand access to AWS security and compliance reports and select online agreements. Users can download reports such as AWS ISO certifications, PCI reports, SOC reports, and GDPR DPA, and review and accept agreements such as BAA and NDA. AWS Artifact helps users to understand and meet compliance requirements for various standards and regulations that apply to AWS services and infrastructure.AWS Artifact is the best resource for a user to find compliance-related information and reports about AWS, whereas the other options are not

Which option is a benefit of the economies of scale based on the advantages of cloud computing?

A.
The ability to trade variable expense for fixed expense
A.
The ability to trade variable expense for fixed expense
Answers
B.
Increased speed and agility
B.
Increased speed and agility
Answers
C.
Lower variable costs over fixed costs
C.
Lower variable costs over fixed costs
Answers
D.
Increased operational costs across data centers
D.
Increased operational costs across data centers
Answers
Suggested answer: B

Explanation:

Economies of scale are the cost advantages that result from increasing the scale of production or operation. In cloud computing, economies of scale are achieved by pooling resources and sharing them among multiple users, which reduces the unit cost of computing and storage. One of the benefits of economies of scale in cloud computing is increased speed and agility, which means the ability to deploy applications faster and respond to changing business needs more quickly. Cloud computing allows users to access computing resources on demand, without having to invest in expensive infrastructure or wait for lengthy provisioning processes.This enables users to scale up or down as needed, experiment with new ideas, and deliver value to customers faster123.Reference:

Economics of Cloud Computing - GeeksforGeeks

What is Cloud Economics? | VMware Glossary

ECONOMIES OF SCALE WITH CLOUD COMPUTING & SERVICES PRACTICE - IDC-Online

Which AWS service or feature improves network performance by sending traffic through the AWS worldwide network infrastructure?

A.
Route table
A.
Route table
Answers
B.
AWS Transit Gateway
B.
AWS Transit Gateway
Answers
C.
AWS Global Accelerator
C.
AWS Global Accelerator
Answers
D.
Amazon VPC
D.
Amazon VPC
Answers
Suggested answer: C

Explanation:

AWS Global Accelerator is a service that improves network performance by sending traffic through the AWS worldwide network infrastructure. It uses the AWS global network to direct TCP or UDP traffic to a healthy application endpoint in the closest AWS Region to the client. This provides improvements in terms of latency, throughput, and jitter.Global Accelerator also introduces features such as TCP termination at the edge, jumbo frame support, and large receive side window and TCP buffers to optimize data transfer12. Route table, AWS Transit Gateway, and Amazon VPC are not services or features that improve network performance by sending traffic through the AWS worldwide network infrastructure.Route table is a resource that defines how traffic is routed within a VPC3.AWS Transit Gateway is a service that enables you to connect your VPCs and on-premises networks to a single gateway4.Amazon VPC is a service that lets you provision a logically isolated section of the AWS Cloud where you can launch AWS resources in a virtual network that you define5.Reference:Achieve up to 60% better performance for internet traffic with AWS Global Accelerator,Improving Performance on AWS and Hybrid Networks,Route tables,AWS Transit Gateway,Amazon Virtual Private Cloud (VPC)

Total 789 questions
Go to page: of 79