Inspirational journeys

Follow the stories of academics and their research expeditions

AWS Certified Cloud Practitioner Certification - Part 33

Mary Smith

Wed, 18 Jun 2025

AWS Certified Cloud Practitioner Certification - Part 33

1. Which managed AWS service provides real-time guidance on AWS security best practices?

A) A. AWS X-Ray
B) B. AWS Trusted Advisor
C) C. Amazon CloudWatch
D) D. AWS Systems Manager



2. Which feature adds elasticity to Amazon EC2 instances to handle the changing demand for workloads?

A) A. Resource groups
B) B. Lifecycle policies
C) C. Application Load Balancer
D) D. Amazon EC2 Auto Scaling



3. Under the AWS shared responsibility model, customers are responsible for which aspects of security in the cloud? (Choose two.)(Select 2answers)

A) A. Virtualization Management
B) B. Hardware management
C) C. Encryption management
D) D. Facilities management
E) E. Firewall management


4. Which AWS hybrid storage service enables your on-premises applications to seamlessly use AWS Cloud storage through standard file-storage protocols?

A) A. AWS Direct Connect
B) B. AWS Snowball
C) C. AWS Storage Gateway
D) D. AWS Snowball Edge



5. What is a responsibility of AWS in the shared responsibility model?

A) A. Updating the network ACLs to block traffic to vulnerable ports.
B) B. Patching operating systems running on Amazon EC2 instances.
C) C. Updating the firmware on the underlying EC2 hosts.
D) D. Updating the security group rules to block traffic to the vulnerable ports.



1. Right Answer: B
Explanation: AWS offers premium services such as AWS Trusted Advisor, which provides real-time guidance to help you reduce cost, increase performance, and improve security.https://www.ibm.com/downloads/cas/2N40X4PQ

2. Right Answer: D
Explanation: Support for monitoring the health of each service independently, as health checks are defined at the target group level and many CloudWatch metrics are reported at the target group level. Attaching a target group to an Auto Scaling group enables you to scale each service dynamically based on demand.https://docs.aws.amazon.com/elasticloadbalancing/latest/application/introduction.html

3. Right Answer: C,E
Explanation: With the basic Cloud infrastructure secured and maintained by AWS, the responsibility for what goes into the cloud falls on you. This covers both client and server side encryption and network traffic protection, security of the operating system, network, and firewall configuration, followed by application security and identity and access management. Firewall configuration remains the responsibility of the end user, which integrates at the platform and application management level. For example, RDS utilizes security groups, which you would be responsible for configuring and implementing.https://cloudacademy.com/blog/aws-shared-responsibility-model-security/

4. Right Answer: C
Explanation: The AWS Storage Gateway service enables hybrid cloud storage between on-premises environments and the AWS Cloud. It seamlessly integrates on-premises enterprise applications and workflows with Amazon's block and object cloud storage services through industry standard storage protocols. It provides low-latency performance by caching frequently accessed data on premises, while storing data securely and durably in Amazon cloud storage services. It provides an optimized data transfer mechanism and bandwidth management, which tolerates unreliable networks and minimizes the amount of data being transferred. It brings the security, manageability, durability, and scalability of AWS to existing enterprise environments through native integration with AWS encryption, identity management, monitoring, and storage services. Typical use cases include backup and archiving, disaster recovery, moving data to S3 for in-cloud workloads, and tiered storage.https://aws.amazon.com/storagegateway/faqs/

5. Right Answer: C
Explanation: https://cloudacademy.com/blog/aws-shared-responsibility-model-security/

0 Comments

Leave a comment