ExamGecko
Home / Amazon / CLF-C02 / List of questions
Ask Question

Amazon CLF-C02 Practice Test - Questions Answers, Page 8

List of questions

Question 71

Report
Export
Collapse

A company is designing an identity access management solution for an application. The company wants users to be able to use their social media, email, or online shopping accounts to access the application.

Which AWS service provides this functionality?

AWS 1AM Identity Center (AWS Single Sign-On)
AWS 1AM Identity Center (AWS Single Sign-On)
AWS Config
AWS Config
Amazon Cognito
Amazon Cognito
AWS Identity and Access Management (1AM)
AWS Identity and Access Management (1AM)
Suggested answer: C

Explanation:

The correct answer is C because Amazon Cognito provides identity federation and user authentication for web and mobile applications. Amazon Cognito allows users to sign in with their social media, email, or online shopping accounts. The other options are incorrect because they do not provide identity federation or user authentication. AWS 1AM Identity Center (AWS Single Sign-On) is a service that enables users to access multiple AWS accounts and applications with a single sign-on experience. AWS Config is a service that enables users to assess, audit, and evaluate the configurations of their AWS resources. AWS Identity and Access Management (1AM) is a service that enables users to manage access to AWS resources using users, groups, roles, and policies.

Reference: Amazon Cognito FAQs

asked 16/09/2024
Faizan Ahmed
39 questions

Question 72

Report
Export
Collapse

Which AWS service aggregates, organizes, and prioritizes security alerts and findings from multiple AWS services?

Amazon Detective
Amazon Detective
Amazon Inspector
Amazon Inspector
Amazon Macie
Amazon Macie
AWS Security Hub
AWS Security Hub
Suggested answer: D

Explanation:

The correct answer is D because AWS Security Hub is a service that aggregates, organizes, and prioritizes security alerts and findings from multiple AWS services, such as Amazon GuardDuty, Amazon Inspector, Amazon Macie, AWS Firewall Manager, and AWS IAM Access Analyzer. The other options are incorrect because they are not services that aggregate security alerts and findings from multiple AWS services. Amazon Detective is a service that helps users analyze and visualize security data to investigate and remediate potential issues. Amazon Inspector is a service that helps users find security vulnerabilities and deviations from best practices in their Amazon EC2 instances.

Amazon Macie is a service that helps users discover, classify, and protect sensitive data stored in Amazon S3. Reference: AWS Security Hub FAQs

asked 16/09/2024
Peter Unterasinger
42 questions

Question 73

Report
Export
Collapse

Which of the following are advantages of the AWS Cloud? (Select TWO.)

Trade variable expenses for capital expenses
Trade variable expenses for capital expenses
High economies of scale
High economies of scale
Launch globally in minutes
Launch globally in minutes
Focus on managing hardware infrastructure
Focus on managing hardware infrastructure
Overprovision to ensure capacity
Overprovision to ensure capacity
Suggested answer: B, C

Explanation:

The correct answers are B and C because they are advantages of the AWS Cloud. High economies of scale means that AWS can achieve lower variable costs than customers can get on their own. Launch globally in minutes means that AWS has a global infrastructure that allows customers to deploy their applications and data across multiple regions and availability zones. The other options are incorrect because they are not advantages of the AWS Cloud. Trade variable expenses for capital expenses means that customers have to invest heavily in data centers and servers before they know how they will use them. Focus on managing hardware infrastructure means that customers have to spend time and money on maintaining and upgrading their physical resources. Overprovision to ensure capacity means that customers have to pay for more resources than they actually need to avoid performance issues. Reference: What is Cloud Computing?

asked 16/09/2024
Mikalai Yurouski
27 questions

Question 74

Report
Export
Collapse

Which AWS service is a key-value database that provides sub-millisecond latency on a large scale?

Amazon DynamoDB
Amazon DynamoDB
Amazon Aurora
Amazon Aurora
Amazon DocumentDB (with MongoDB compatibility)
Amazon DocumentDB (with MongoDB compatibility)
Amazon Neptune
Amazon Neptune
Suggested answer: A

Explanation:

The correct answer is A because Amazon DynamoDB is a key-value database that provides submillisecond latency on a large scale. Amazon DynamoDB is a fully managed, serverless, and scalable NoSQL database service that supports both key-value and document data models. The other options are incorrect because they are not key-value databases. Amazon Aurora is a relational database that is compatible with MySQL and PostgreSQL. Amazon DocumentDB (with MongoDB compatibility) is a document database that is compatible with MongoDB. Amazon Neptune is a graph database that supports property graph and RDF models. Reference: Amazon DynamoDB FAQs

asked 16/09/2024
Christopher Castillo
35 questions

Question 75

Report
Export
Collapse

Which AWS service or tool provides users with the ability to monitor AWS service quotas?

AWS CloudTrail
AWS CloudTrail
AWS Cost and Usage Reports
AWS Cost and Usage Reports
AWS Trusted Advisor
AWS Trusted Advisor
AWS Budgets
AWS Budgets
Suggested answer: C

Explanation:

The correct answer is C because AWS Trusted Advisor is an AWS service or tool that provides users with the ability to monitor AWS service quotas. AWS Trusted Advisor is an online tool that provides users with real-time guidance to help them provision their resources following AWS best practices.

One of the categories of checks that AWS Trusted Advisor performs is service limits, which monitors the usage of each AWS service and alerts users when they are close to reaching the default limit. The other options are incorrect because they are not AWS services or tools that provide users with the ability to monitor AWS service quotas. AWS CloudTrail is a service that enables users to track user activity and API usage across their AWS account. AWS Cost and Usage Reports is a tool that enables users to access comprehensive information about their AWS costs and usage. AWS Budgets is a tool that enables users to plan their service usage, costs, and reservations. Reference: [AWS Trusted Advisor FAQs]

asked 16/09/2024
Deepak PSK
46 questions

Question 76

Report
Export
Collapse

Which of the following is an advantage of AWS Cloud computing?

Trade security for elasticity.
Trade security for elasticity.
Trade operational excellence for agility.
Trade operational excellence for agility.
Trade fixed expenses for variable expenses.
Trade fixed expenses for variable expenses.
Trade elasticity for performance.
Trade elasticity for performance.
Suggested answer: C

Explanation:

The correct answer is C because AWS Cloud computing allows customers to trade fixed expenses for variable expenses. This means that customers only pay for the resources they use, and can scale up or down as needed. The other options are incorrect because they are not advantages of AWS Cloud computing. Trade security for elasticity means that customers have to compromise on the protection of their data and applications in order to adjust their capacity quickly. Trade operational excellence for agility means that customers have to sacrifice the quality and reliability of their operations in order to respond to changing needs faster. Trade elasticity for performance means that customers have to limit their ability to scale up or down in order to achieve higher speed and efficiency.

Reference: What is Cloud Computing?

asked 16/09/2024
Chris OMalley
26 questions

Question 77

Report
Export
Collapse

A company is running applications on Amazon EC2 instances in the same AWS account for several different projects. The company wants to track the infrastructure costs for each of the projects separately. The company must conduct this tracking with the least possible impact to the existing infrastructure and with no additional cost.

What should the company do to meet these requirements?

Use a different EC2 instance type for each project.
Use a different EC2 instance type for each project.
Publish project-specific custom Amazon CloudWatch metrics for each application.
Publish project-specific custom Amazon CloudWatch metrics for each application.
Deploy EC2 instances for each project in a separate AWS account.
Deploy EC2 instances for each project in a separate AWS account.
Use cost allocation tags with values that are specific to each project.
Use cost allocation tags with values that are specific to each project.
Suggested answer: D

Explanation:

The correct answer is D because cost allocation tags are a way to track the infrastructure costs for each of the projects separately. Cost allocation tags are key-value pairs that can be attached to AWS resources, such as EC2 instances, and used to categorize and group them for billing purposes. The other options are incorrect because they do not meet the requirements of the question. Use a different EC2 instance type for each project does not help to track the costs for each project, and may impact the performance and compatibility of the applications. Publish project-specific custom Amazon CloudWatch metrics for each application does not help to track the costs for each project, and may incur additional charges for using CloudWatch. Deploy EC2 instances for each project in a separate AWS account does help to track the costs for each project, but it impacts the existing infrastructure and incurs additional charges for using multiple accounts. Reference: Using Cost Allocation Tags

asked 16/09/2024
Armindo Malafaia Neto
35 questions

Question 78

Report
Export
Collapse

A company has an online shopping website and wants to store customers' credit card dat a. The company must meet Payment Card Industry (PCI) standards.

Which service can the company use to access AWS compliance documentation?

Amazon Cloud Directory
Amazon Cloud Directory
AWS Artifact
AWS Artifact
AWS Trusted Advisor
AWS Trusted Advisor
Amazon Inspector
Amazon Inspector
Suggested answer: B

Explanation:

The correct answer is B because AWS Artifact is a service that provides access to AWS compliance documentation, such as audit reports, security certifications, and agreements. AWS Artifact allows customers to download, review, and accept the documents that are relevant to their use of AWS services. The other options are incorrect because they are not services that provide access to AWS compliance documentation. Amazon Cloud Directory is a service that enables customers to create flexible cloud-native directories for organizing hierarchies of data. AWS Trusted Advisor is a service that provides real-time guidance to help customers follow AWS best practices for security, performance, cost optimization, and fault tolerance. Amazon Inspector is a service that helps customers find security vulnerabilities and deviations from best practices in their Amazon EC2 instances. Reference: [AWS Artifact FAQs]

asked 16/09/2024
Nelson Alvaro
49 questions

Question 79

Report
Export
Collapse

Which of the following are components of an AWS Site-to-Site VPN connection? (Select TWO.)

AWS Storage Gateway
AWS Storage Gateway
Virtual private gateway
Virtual private gateway
NAT gateway
NAT gateway
Customer gateway
Customer gateway
Internet gateway
Internet gateway
Suggested answer: B, D

Explanation:

The correct answers are B and D because a virtual private gateway and a customer gateway are components of an AWS Site-to-Site VPN connection. A virtual private gateway is the AWS side of the VPN connection that attaches to the customer's VPC. A customer gateway is the customer side of the VPN connection that resides in the customer's network. The other options are incorrect because they are not components of an AWS Site-to-Site VPN connection. AWS Storage Gateway is a service that connects on-premises software applications with cloud-based storage. NAT gateway is a service that enables instances in a private subnet to connect to the internet or other AWS services, but prevents the internet from initiating a connection with those instances. Internet gateway is a service that enables communication between instances in a VPC and the internet. Reference: [What is AWS Siteto-Site VPN?]

asked 16/09/2024
Chia Yung Hee
38 questions

Question 80

Report
Export
Collapse

A company runs thousands of simultaneous simulations using AWS Batch. Each simulation is stateless, is fault tolerant, and runs for up to 3 hours.

Which pricing model enables the company to optimize costs and meet these requirements?

Reserved Instances
Reserved Instances
Spot Instances
Spot Instances
On-Demand Instances
On-Demand Instances
Dedicated Instances
Dedicated Instances
Suggested answer: B

Explanation:

The correct answer is B because Spot Instances enable the company to optimize costs and meet the requirements. Spot Instances are spare EC2 instances that are available at up to 90% discount compared to On-Demand prices. Spot Instances are suitable for stateless, fault-tolerant, and flexible applications that can run for any duration. The other options are incorrect because they do not enable the company to optimize costs and meet the requirements. Reserved Instances are EC2 instances that are reserved for a specific period of time (one or three years) in exchange for a lower hourly rate. Reserved Instances are suitable for steady-state or predictable workloads that run for a long duration. On-Demand Instances are EC2 instances that are launched and billed at a fixed hourly rate. On-Demand Instances are suitable for short-term, irregular, or unpredictable workloads that cannot be interrupted. Dedicated Instances are EC2 instances that run on hardware that is dedicated to a single customer. Dedicated Instances are suitable for workloads that require regulatory compliance or data isolation. Reference: [Amazon EC2 Instance Purchasing Options]

asked 16/09/2024
Khaled Mohamed Abdraboh Metwalli
34 questions
Total 798 questions
Go to page: of 80

Related questions