Amazon CLF-C01 Practice Test - Questions Answers, Page 68
List of questions
Question 671
![Export Export](https://examgecko.com/assets/images/icon-download-24.png)
Which combination of steps will enable multi-factor authentication (MFA) on an AWS account?
(Select TWO.)
Explanation:
AWS Multi-Factor Authentication (MFA) is a simple best practice that adds an extra layer of protection on top of your user name and password. With MFA enabled, when a user signs in to an AWS website, they will be prompted for their user name and password (the first factorówhat they know), as well as for an authentication response from their AWS MFA device (the second factoró what they have). Taken together, these multiple factors provide increased security for your AWS account settings and resources.
Question 672
![Export Export](https://examgecko.com/assets/images/icon-download-24.png)
Which of the following is an AWS Well-Architected Framework design principle for operational excellence in the AWS Cloud?
Explanation:
Question 673
![Export Export](https://examgecko.com/assets/images/icon-download-24.png)
What is a benefit of using AWS serverless computing?
Explanation:
Explanation:
Serverless computing allows you to build and run applications and services without thinking about servers. With serverless computing, your application still runs on servers, but all the server management is done by AWS.
Question 674
![Export Export](https://examgecko.com/assets/images/icon-download-24.png)
A company runs applications that process credit card information. Auditors have asked if the AWS environment has changed since the previous audit. If the AWS environment has changed, the auditors want to know how it has changed.
Which AWS services can provide this information? (Select TWO.)
Explanation:
Explanation:
AWS Artifact is your go-to, central resource for compliance-related information that matters to you. It provides on-demand access to AWS' security and compliance reports and select online agreements.
AWS Trusted Advisor provides recommendations that help you follow AWS best practices. Trusted Advisor evaluates your account by using checks. These checks identify ways to optimize your AWS infrastructure, improve security and performance, reduce costs, and monitor service quotas.
AWS Config is a service that enables you to assess, audit, and evaluate the configurations of your AWS resources. Config continuously monitors and records your AWS resource configurations and allows you to automate the evaluation of recorded configurations against desired configurations.
AWS CloudTrail enables auditing, security monitoring, and operational troubleshooting by tracking user activity and API usage. CloudTrail logs, continuously monitors, and retains account activity related to actions across your AWS infrastructure, giving you control over storage, analysis, and remediation actions.
AWS Identity and Access Management (IAM) provides fine-grained access control across all of AWS.
With IAM, you can specify who can access which services and resources, and under which conditions.
With IAM policies, you manage permissions to your workforce and systems to ensure least-privilege permissions.
Question 675
![Export Export](https://examgecko.com/assets/images/icon-download-24.png)
A developer is working on enhancing applications at AWS. The developer needs a service that can securely host GitHub-based code, repositories, and version controls. Which AWS service should the developer use?
Question 676
![Export Export](https://examgecko.com/assets/images/icon-download-24.png)
Which AWS service provides an isolated virtual network to connect AWS services and resources?
Explanation:
Explanation:
Explanation:
Amazon Virtual Private Cloud (Amazon VPC) enables you to launch AWS resources into a virtual network that you've defined. This virtual network closely resembles a traditional network that you'd operate in your own data center, with the benefits of using the scalable infrastructure of AWS.
Question 677
![Export Export](https://examgecko.com/assets/images/icon-download-24.png)
A company needs to process data from satellite communications without managing any infrastructure. Which AWS service should the company use to meet these requirements?
Explanation:
Explanation:
AWS Ground Station is a fully managed service that lets you control satellite communications, process data, and scale your operations without having to worry about building or managing your own ground station infrastructure. Satellites are used for a wide variety of use cases, including weather forecasting, surface imaging, communications, and video broadcasts. Ground stations form the core of global satellite networks. With AWS Ground Station, you have direct access to AWS services and the AWS Global Infrastructure including a low-latency global fiber network. For example, you can use Amazon S3 to store the downloaded data, Amazon Kinesis Data Streams for managing data ingestion from satellites, and Amazon SageMaker for building custom machine learning applications that apply to your data sets. You can save up to 80% on the cost of your ground station operations by paying only for the actual antenna time used, and relying on the global footprint of ground stations to download data when and where you need it. There are no long-term commitments, and you gain the ability to rapidly scale your satellite communications on-demand when your business needs it.
Question 678
![Export Export](https://examgecko.com/assets/images/icon-download-24.png)
Which AWS service decouples application components so that the components run independently?
Explanation:
Explanation:
Amazon SQS is a fully managed message queuing service that makes it easy to decouple and scale microservices, distributed systems, and serverless applications. Amazon SQS lets you decouple application components so that they run and fail independently, increasing the overall fault tolerance of the system.
Question 679
![Export Export](https://examgecko.com/assets/images/icon-download-24.png)
A company needs real-time guidance to follow AWS best practices to save money, improve system performance, and close security gaps. Which AWS service should the company use?
Explanation:
AWS Trusted Advisor provides recommendations that help you follow AWS best practices. Trusted Advisor evaluates your account by using checks.
Question 680
![Export Export](https://examgecko.com/assets/images/icon-download-24.png)
Which service enables customers to audit API calls in their AWS accounts?
Explanation:
Explanation:
AWS Audit Manager is integrated with AWS CloudTrail, a service that provides a record of actions taken by a user, role, or an AWS service in Audit Manager. CloudTrail captures all API calls for Audit Manager as events.
Question