1. A user needs an automated security assessment report that will identify unintended network access to AmazonEC2 instances and vulnerabilities on those instances.Which AWS service will provide this assessment report?
A) A. EC2 security groups B) B. AWS Config C) C. Amazon Macie D) D. Amazon Inspector
2. How can a company isolate the costs of production and non-production workloads on AWS?
A) A. Create Identity and Access Management (IAM) roles for production and non-production workloads. B) B. Use different accounts for production and non-production expenses. C) C. Use Amazon EC2 for non-production workloads and other services for production workloads. D) D. Use Amazon CloudWatch to monitor the use of services.
3. Where can users find a catalog of AWS-recognized providers of third-party security solutions?
A) A. AWS Service Catalog B) B. AWS Marketplace C) C. AWS Quick Start D) D. AWS CodeDeploy
4. A Cloud Practitioner needs to store data for 7 years to meet regulatory requirements.Which AWS service will meet this requirement at the LOWEST cost?
A) A. Amazon S3 B) B. AWS Snowball C) C. Amazon Redshift D) D. Amazon S3 Glacier
5. What are the immediate benefits of using the AWS Cloud? (Choose two.)(Select 2answers)
A) A. Increased IT staff. B) B. Capital expenses are replaced with variable expenses. C) C. User control of infrastructure. D) D. Increased agility. E) E. AWS holds responsibility for security in the cloud.
1. Right Answer: D Explanation: Amazon Inspector is an automated security assessment service that helps improve the security andcompliance of applications deployed on AWS. Amazon Inspector automatically assesses applications forexposure, vulnerabilities, and deviations from best practices. After performing an assessment, AmazonInspector produces a detailed list of security findings prioritized by level of severity. These findings can bereviewed directly or as part of detailed assessment reports which are available via the Amazon Inspectorconsole or API.https://aws.amazon.com/inspector/
2. Right Answer: B Explanation: https://aws.amazon.com/answers/account-management/aws-multi-account-billing-strategy/
3. Right Answer: A Explanation: AWS Service Catalog Delivery Partners are APN Consulting Partners who help create catalogs of IT servicesthat are approved by the customer's organization for use on AWS. With AWS Service Catalog, customers andpartners can centrally manage commonly deployed IT services to help achieve consistent governance andmeet compliance requirements while enabling users to self-provision approved services.https://aws.amazon.com/servicecatalog/partners/
4. Right Answer: D Explanation: S3 Glacier Deep Archive is Amazon S3's lowest-cost storage class and supports long-term retention and digitalpreservation for data that may be accessed once or twice in a year. It is designed for customers ' particularlythose in highly-regulated industries, such as the Financial Services, Healthcare, and Public Sectors ' thatretain data sets for 7-10 years or longer to meet regulatory compliance requirements. S3 Glacier Deep Archivecan also be used for backup and disaster recovery use cases, and is a cost-effective and easy-to-managealternative to magnetic tape systems, whether they are on-premises libraries or off-premises services.https://aws.amazon.com/s3/storage-classes/
Leave a comment