ExamGecko
Home / Amazon / CLF-C02 / List of questions
Ask Question

Amazon CLF-C02 Practice Test - Questions Answers, Page 39

List of questions

Question 381

Report
Export
Collapse

Which option is an AWS Cloud Adoption Framework (AWS CAF) foundational capability for the operations perspective?

Performance and capacity management
Performance and capacity management
Most voted
(1)
Most voted
Application portfolio management
Application portfolio management
Identity and access management
Identity and access management
Product management
Product management
Suggested answer: C

Explanation:

Identity and access management is one of the foundational capabilities for the operations perspective of the AWS Cloud Adoption Framework (AWS CAF). It involves managing the identities, roles, permissions, and credentials of users and systems that interact with AWS resources.

Performance and capacity management is a capability for the platform perspective. Application portfolio management is a capability for the business perspective. Product management is a capability for the governance perspective.

asked 16/09/2024
Chan Sai Yu
43 questions

Question 382

Report
Export
Collapse

A company needs to implement identity management for a fleet of mobile apps that are running in the AWS Cloud.

Which AWS service will meet this requirement?

Amazon Cognito
Amazon Cognito
AWS Security Hub
AWS Security Hub
AWS Shield
AWS Shield
AWS WAF
AWS WAF
Suggested answer: A

Explanation:

Amazon Cognito is a service that provides identity management for mobile and web applications, allowing users to sign up, sign in, and access AWS resources with different identity providers. AWS Security Hub is a service that provides a comprehensive view of the security posture of AWS accounts and resources. AWS Shield is a service that provides protection against distributed denial of service (DDoS) attacks. AWS WAF is a web application firewall that helps protect web applications from common web exploits.

asked 16/09/2024
Rebekah Midkiff
34 questions

Question 383

Report
Export
Collapse

Which AWS service or feature offers security for a VPC by acting as a firewall to control traffic in and out of subnets?

AWS Security Hub
AWS Security Hub
Security groups
Security groups
Network ACL
Network ACL
AWSWAF
AWSWAF
Suggested answer: C

Explanation:

A network access control list (network ACL) is a feature that acts as a firewall for controlling traffic in and out of one or more subnets in a virtual private cloud (VPC). AWS Security Hub is a service that provides a comprehensive view of the security posture of AWS accounts and resources. Security groups are features that act as firewalls for controlling traffic at the instance level. AWS WAF is a web application firewall that helps protect web applications from common web exploits.

asked 16/09/2024
Eric Jones
43 questions

Question 384

Report
Export
Collapse

An ecommerce company wants to provide relevant product recommendations to its customers. The recommendations will include products that are frequently purchased with other products that the customer already purchased. The recommendations also will include products of a specific color and products from the customer's favorite brand.

Which AWS service or feature should the company use to meet these requirements with the LEAST development effort?

Amazon Comprehend
Amazon Comprehend
Amazon Forecast
Amazon Forecast
Amazon Personalize
Amazon Personalize
Amazon SageMaker Studio
Amazon SageMaker Studio
Suggested answer: C

Explanation:

Amazon Personalize is a service that provides real-time personalized recommendations based on the user's behavior, preferences, and context. It can also incorporate metadata such as product color and brand to generate more relevant recommendations. Amazon Comprehend is a natural language processing (NLP) service that can analyze text for entities, sentiments, topics, and more. Amazon Forecast is a service that provides accurate time-series forecasting based on machine learning.

Amazon SageMaker Studio is a web-based integrated development environment (IDE) for machine learning.

asked 16/09/2024
Geoffrey Vd Molen
41 questions

Question 385

Report
Export
Collapse

Which AWS service or storage class provides low-cost, long-term data storage?

Amazon S3 Glacier Deep Archive
Amazon S3 Glacier Deep Archive
AWS Snowball
AWS Snowball
Amazon MQ
Amazon MQ
AWS Storage Gateway
AWS Storage Gateway
Suggested answer: A

Explanation:

Amazon S3 Glacier Deep Archive is a storage class within Amazon S3 that provides the lowest-cost, long-term data storage for data that is rarely accessed. AWS Snowball is a service that provides a physical device for transferring large amounts of data into and out of AWS. Amazon MQ is a service that provides managed message broker service for Apache ActiveMQ. AWS Storage Gateway is a service that provides hybrid cloud storage for on-premises applications.

asked 16/09/2024
Dirk Lamberts
40 questions

Question 386

Report
Export
Collapse

Which AWS service or feature offers security for a VPC by acting as a firewall to control traffic in and out of subnets?

AWS Security Hub
AWS Security Hub
Security groups
Security groups
Network ACL
Network ACL
AWSWAF
AWSWAF
Suggested answer: C

Explanation:

A network access control list (network ACL) is a feature that acts as a firewall for controlling traffic in and out of one or more subnets in a virtual private cloud (VPC). Network ACLs can be configured with rules that allow or deny traffic based on the source and destination IP addresses, ports, and protocols1. AWS Security Hub is a service that provides a comprehensive view of the security posture of AWS accounts and resources2. Security groups are features that act as firewalls for controlling traffic at the instance level3. AWS WAF is a web application firewall that helps protect web applications from common web exploits4.

asked 16/09/2024
Chaston Williams
33 questions

Question 387

Report
Export
Collapse

A company wants to create a set of custom dashboards to collect metrics to monitor its applications.

Which AWS service will meet these requirements?

Amazon CloudWatch
Amazon CloudWatch
AWS X-Ray
AWS X-Ray
AWS Systems Manager
AWS Systems Manager
AWS CloudTrail
AWS CloudTrail
Suggested answer: A

Explanation:

Amazon CloudWatch is a service that provides monitoring and observability for AWS resources and applications. Users can create custom dashboards to collect and visualize metrics, logs, alarms, and events from different sources5. AWS X-Ray is a service that provides distributed tracing and analysis for applications. AWS Systems Manager is a service that provides operational management for AWS resources and applications. AWS CloudTrail is a service that provides governance, compliance, and auditing for AWS account activity.

asked 16/09/2024
Tim Pass
38 questions

Question 388

Report
Export
Collapse

A company wants to migrate its workloads to AWS, but it lacks expertise in AWS Cloud computing.

Which AWS service or feature will help the company with its migration?

AWS Trusted Advisor
AWS Trusted Advisor
AWS Consulting Partners
AWS Consulting Partners
AWS Artifacts
AWS Artifacts
AWS Managed Services
AWS Managed Services
Suggested answer: D

Explanation:

AWS Managed Services is a service that provides operational management for AWS infrastructure and applications. It helps users migrate their workloads to AWS and provides ongoing support, security, compliance, and automation. AWS Trusted Advisor is a service that provides best practices and recommendations for cost optimization, performance, security, and fault tolerance. AWS Consulting Partners are professional services firms that help customers design, architect, build, migrate, and manage their workloads and applications on AWS. AWS Artifacts is a service that provides on-demand access to AWS compliance reports and select online agreements.

asked 16/09/2024
Jumar Antonia
34 questions

Question 389

Report
Export
Collapse

A company deployed an application on an Amazon EC2 instance. The application ran as expected for 6 months. In the past week, users have reported latency issues. A system administrator found that the CPU utilization was at 100%during business hours. The company wants a scalable solution to meet demand.

Which AWS service or feature should the company use to handle the load for its application during periods of high demand?

Auto Scaling groups
Auto Scaling groups
AWS Global Accelerator
AWS Global Accelerator
Amazon Route 53
Amazon Route 53
An Elastic IP address
An Elastic IP address
Suggested answer: A

Explanation:

Auto Scaling groups are a feature that allows users to automatically scale the number of Amazon EC2 instances up or down based on demand or a predefined schedule. Auto Scaling groups can help improve the performance and availability of applications by adjusting the capacity in response to traffic fluctuations1. AWS Global Accelerator is a service that improves the availability and performance of applications by routing traffic through AWS edge locations2. Amazon Route 53 is a service that provides scalable and reliable domain name system (DNS) service3. An Elastic IP address is a static IPv4 address that can be associated with an Amazon EC2 instance4.

asked 16/09/2024
Henry Hendricks
26 questions

Question 390

Report
Export
Collapse

Which VPC component provides a layer of security at the subnet level?

Security groups
Security groups
Network ACLs
Network ACLs
NAT gateways
NAT gateways
Route tables
Route tables
Suggested answer: B

Explanation:

Network ACLs are a feature that provide a layer of security at the subnet level by acting as a firewall to control traffic in and out of one or more subnets. Network ACLs can be configured with rules that allow or deny traffic based on the source and destination IP addresses, ports, and protocols5.

Security groups are a feature that provide a layer of security at the instance level by acting as a firewall to control traffic to and from one or more instances. Security groups can be configured with rules that allow or deny traffic based on the source and destination IP addresses, ports, protocols, and security groups. NAT gateways are a feature that enable instances in a private subnet to connect to the internet or other AWS services, but prevent the internet from initiating a connection with those instances. Route tables are a feature that determine where network traffic from a subnet or gateway is directed.

asked 16/09/2024
Farshin Golpad
38 questions
Total 798 questions
Go to page: of 80
Search

Related questions