IT systems should be designed to reduce interdependencies so that a change or failure in one component does not cascade to other components.
This is an example of which principle of cloud architecture design?

A. Scalability
B. Loose coupling
C. Automation
D. Automatic scaling


Compared with costs in traditional and virtualized data centers, AWS has:

A. greater variable costs and greater upfront costs.
B. fixed usage costs and lower upfront costs.
C. lower variable costs and greater upfront costs.
D. lower variable costs and lower upfront costs.


When architecting cloud applications, which of the following are a key design principle?

A. Use the largest instance possible
B. Provision capacity for peak load
C. Use the Scrum development process
D. Implement elasticity


Which AWS services or features enable a user to establish a network connection from on-premises to the AWS Cloud? (Select TWO.)

A. AWS Direct Connect
B. AWS Snowball
C. Amazon S3
D. VPN connection E. Amazon Connect


The AWS global infrastructure consists of Regions, Availability Zones, and what else?

B. Datacenters
C. Dark fiber network links
D. Edge locations


How does AWS charge for AWS Lambda?

A. Users bid on the maximum price they are willing to pay per hour.
B. Users choose a 1-, 3- or 5-year upfront payment term.
C. Users pay for the required permanent storage on a file system or in a database.
D. Users pay based on the number of requests and consumed computing resources.


Which of the following allows an application running on an Amazon EC2 instance to securely write data to an Amazon S3 bucket without using long-term credentials?

A. Amazon Cognito
B. AWS Shield
C. AWS IAM role
D. AWS IAM user access key


A company plans to store sensitive data in an Amazon S3 bucket. Which task is the responsibility of AWS?

A. Activate encryption at rest for the data
B. Provide security for the physical infrastructure
C. Train the company\\’s employees about cloud security
D. Remove personally identifiable information (PII) from the data


What can AWS edge locations be used for? (Choose two.)

A. Hosting applications
B. Delivering content closer to users
C. Running NoSQL database caching services
D. Reducing traffic on the server by caching responses
E. Sending notification messages to end-users


A company plans to create a data lake that uses Amazon S3. Which factor will have the MOST effect on cost?

A. The selection of S3 storage tiers
B. Charges to transfer existing data into Amazon S3
C. The addition of S3 bucket policies
D. S3 ingest fees for each request


A company that does business online needs to quickly deliver new functionality in an iterative manner, minimizing the time to market.
Which AWS Cloud feature can provide this?

A. Elasticity
B. High availability
C. Agility
D. Reliability


A customer needs to run a MySQL database that easily scales. Which AWS service should they use?

A. Amazon Aurora
B. Amazon Redshift
C. Amazon DynamoDB
D. Amazon ElastiCache


What costs are included when comparing AWS’s Total Cost of Ownership (TCO) with on-premises TCO?

A. Project management
B. Antivirus software licensing
C. Data center security
D. Software development

Correct Answer: B
Reference: (20)


Correct Answer: D
Reference: (10)


Correct Answer: B

Cloud service’s main proposition is to provide elasticity through horizontal scaling. It\’s already there. As for using the largest instance possible, it is not a design principle that helps cloud applications in any way.

The Scrum development process is not related to architecting. Therefore, a key principle is to provision your application for on-demand capacity.

Peak loads are something that cloud applications experience every day. Peak load management should be a necessary part of the cloud application design principle.


Correct Answer: AD


Correct Answer: B


Correct Answer: D
AWS Lambda is charging its users by the number of requests for their functions and by the duration, which is the time the code needs to execute. When code starts running in response to an event, AWS Lambda counts a request.

It will charge the total number of requests across all of the functions used. Duration is calculated by the time when your code started executing until it returns or until it is terminated, rounded up near to 100ms.

The AWS Lambda pricing depends on the amount of memory that the user used to allocate to the function.


Correct Answer: C


Correct Answer: B


Correct Answer: BD

CloudFront delivers your content through a worldwide network of data centers called edge locations. When a user requests content that you\\’re serving with CloudFront, the user is routed to the edge location that provides the lowest latency (time delay), so that content is delivered with the best possible performance.



Correct Answer: B


Correct Answer: C


Correct Answer: A


Correct Answer: A


According to the AWS shared responsibility model, who is responsible for configuration management?

A. It is solely the responsibility of the customer.
B. It is solely the responsibility of AWS.
C. It is shared between AWS and the customer.
D. It is not part of the AWS shared responsibility model.
Correct Answer: C

AWS maintains the configuration of its infrastructure devices, but a customer is responsible for configuring their own
guest operating systems, databases, and applications.


Which of the following provides the ability to share the cost benefits of Reserved Instances across AWS accounts?

A. AWS Cost Explorer between AWS accounts
B. Linked accounts and consolidated billing
C. Amazon Elastic Compute Cloud (Amazon EC2) Reserved Instance Utilization Report
D. Amazon EC2 Instance Usage Report between AWS accounts
Correct Answer: B

The way that Reserved Instance discounts apply to accounts in an organization\\’s consolidated billing family depends
on whether Reserved Instance sharing is turned on or off for the account. By default, Reserved Instance sharing for all
accounts in an organization is turned on. You can change this setting by Turning Off Reserved Instance Sharing for an
account. The capacity reservation for a Reserved Instance applies only to the account the Reserved Instance was
purchased on, regardless of whether Reserved Instance sharing is turned on or off.


A company is hosting a web application in a Docker container on Amazon EC2. AWS is responsible for which of the following tasks?

A. Scaling the web application and services developed with Docker
B. Provisioning or scheduling containers to run on clusters and maintain their availability
C. Performing hardware maintenance in the AWS facilities that run the AWS Cloud
D. Managing the guest operating system, including updates and security patches
Correct Answer: C


Which AWS service acts as a data extract, transform, and load (ETL) tool to make it easy to prepare data for analytics?

A. Amazon QuickSight
B. Amazon Athena
C. AWS Glue
D. AWS Elastic Beanstalk
Correct Answer: C


Which of the following acts as an instance-level firewall to control inbound and outbound access?
A. Network access control list
B. Security groups
C. AWS Trusted Advisor
D. Virtual private gateways
Correct Answer: B


Which design principles are enabled by the AWS Cloud to improve the operation of workloads? (Choose two.)

A. Minimize upfront design
B. Loose coupling
C. Disposable resources
D. Server design and concurrency
E. Minimal viable product
Correct Answer: BC


A company needs a data store for highly transactional workloads. Which AWS service would meet this requirement?

A. Amazon RDS
B. Amazon Redshift
C. Amazon S3
D. Amazon S3 Glacier
Correct Answer: A


Which service provides a virtually unlimited amount of online highly durable object storage?

A. Amazon Redshift
B. Amazon Elastic File System (Amazon EFS)
C. Amazon Elastic Container Service (Amazon ECS)
D. Amazon S3
Correct Answer: D


What time-savings advantage is offered with the use of Amazon Rekognition?

A. Amazon Rekognition provides automatic watermarking of images.
B. Amazon Rekognition provides automatic detection of objects appearing in pictures.
C. Amazon Rekognition provides the ability to resize millions of images automatically.
D. Amazon Rekognition uses Amazon Mechanical Turk to allow humans to bid on object detection jobs.
Correct Answer: B

Rekognition Image is an image recognition service that detects objects, scenes, and faces; extracts text; recognizes
celebrities; and identifies inappropriate content in images. It also allows you to search and
compare faces. Rekognition Image is based on the same proven, highly scalable, deep learning technology developed
by Amazon\\’s computer vision scientists to analyze billions of images daily for Prime Photos.


Management at a large company wants to avoid long-term contracts and is interested in AWS moving from fixed costs to variable costs.

What is the value proposition of AWS for this company?

A. Economy of scale
B. Pay-as-you-go pricing
C. Volume discounts
D. Cost optimization
Correct Answer: C


Which are the benefits of using Amazon RDS over Amazon EC2 when running relational databases on AWS? (Choose two.)

A. Automated backups
B. Schema management
C. Indexing of tables
D. Software patching
E. Extract, transform, and load (ETL) management
Correct Answer: AD


Which of the following can an AWS customer use to launch a new Amazon Relational Database Service (Amazon RDS) cluster?

A. AWS Concierge
B. AWS CloudFormation
C. Amazon Simple Storage Service (Amazon S3)
D. Amazon EC2 Auto Scaling E. AWS Management Console
Correct Answer: E

When should a company consider using Amazon EC2 Spot Instances? (Select TWO )
A. For non-production applications
B. For stateful workloads
C. For applications that cannot have interruptions
D. For fault-tolerant flexible applications
E. For sensitive database applications
Correct Answer: AD

A company is considering using AWS for a self-hosted database that requires a nightly shutdown for maintenance and
cost-saving purposes.
Which service should the company use?
A. Amazon Redshift
B. Amazon DynamoDB
C. Amazon Elastic Compute Cloud (Amazon EC2) with Amazon EC2 instance store
D. Amazon EC2 with Amazon Elastic Block Store (Amazon EBS)
Correct Answer: D

AnyCompany recently purchased Example Corp Both companies use AWS resources, and AnyCompany wants a single
aggregated bill Which option allows AnyCompany to receive a single bill?
A. Example Corp. must submit a request to its AWS solutions architect or AWS technical account manager to link the
accounts and consolidate billing
B. AnyCompany must create a new support case in the AWS Support Center requesting that both bills be combined
C. Send an invitation to join the organization from AnyCompany\\’s AWS Organizations master account to Example
D. Migrate the Example Corp VPCs, Amazon EC2 instances, and other resources into the AnyCompany AWS account
Correct Answer: D

An application is receiving SQL injection attacks from multiple external resources. Which AWS service or feature can
help automate mitigation against these attacks?
B. Security groups
C. Elastic Load Balancer
D. Network ACL
Correct Answer: A

Which of the following are advantages of the AWS Cloud? (Choose two.)
A. AWS manages the maintenance of the cloud infrastructure
B. AWS manages the security of applications built on AWS
C. AWS manages capacity planning for physical servers
D. AWS manages the development of applications on AWS
E. AWS manages cost planning for virtual servers
Correct Answer: AC

Which AWS service provides the ability to detect inadvertent data leaks of personally identifiable information (Pll) and
user credential data?
A. Amazon GuardDuty
B. Amazon Inspector
C. Amazon Macie
D. AWS Shield
Correct Answer: C

How can an AWS user with an AWS Basic Support plan obtain technical assistance from AWS?
A. AWS Senior Support Engineers
B. AWS Technical Account Managers
C. AWS Trusted Advisor
D. AWS Discussion Forums
Correct Answer: C

Within the AWS shared responsibility model, who is responsible for security and compliance?
A. The customer is responsible.
B. AWS is responsible.
C. AWS and the customer share responsibility.
D. AWS shares responsibility with the relevant governing body.
Correct Answer: C
Security and Compliance is a shared responsibility between AWS and the customer. This shared model can help relieve
the customer\\’s operational burden as AWS operates, manages and controls the components from the host operating
system and virtualization layer down to the physical security of the facilities in which the service operates.

Which AWS service will provide a way to generate encryption keys that can be used to encrypt data? (Choose two.)
A. Amazon Macie
B. AWS Certificate Manager
C. AWS Key Management Service (AWS KMS)
D. AWS Secrets Manager
Correct Answer: CE

What are the benefits of developing and running a new application in the AWS Cloud compared to on-premises?
(Choose two.)
A. AWS automatically distributes the data globally for higher durability.
B. AWS will take care of operating the application.
C. AWS makes it easy to architect for high availability.
D. AWS can easily accommodate application demand changes.
E. AWS takes care application security patching.
Correct Answer: CD

Which AWS service should be used to monitor Amazon EC2 instances for CPU and network utilization?
A. Amazon Inspector
B. AWS CloudTtail
C. Amazon CloudWatch
D. AWS Config
Correct Answer: C

According to the AWS shared responsibility model, the customer is responsible for maintaining:
A. physical access to the AWS network.
B. the patching of the host operating system.
C. data encryption in Amazon S3.
D. the operating system for Amazon DynamoDB
Correct Answer: C

An Amazon EC2 instance runs only when needed yet must remain active for the duration of the process.
What is the most appropriate purchasing option?
A. Dedicated Instances
B. Spot Instances
C. On-Demand Instances
D. Reserved Instances
Correct Answer: D

