Exam: AWS Certified Cloud Practitioner

Total 690 question
Page of

To install a PCI-compliant workload on AWS, which of the following tasks is required?

A. Use any AWS service and implement PCI controls at the application layer
B. Use an AWS service that is in-scope for PCI compliance and raise an AWS support ticket
to enable PCI compliance at the application layer
C. Use any AWS service and raise an AWS support ticket to enable PCI compliance on that
service
D. Use an AWS service that is in scope for PCI compliance and apply PCI controls at the
application layer
Correct: Answer: D

Which security-related duty is AWS accountable for under the AWS shared responsibility
model?
A. Lifecycle management of IAM credentials
B. Physical security of global infrastructure
C. Encryption of Amazon EBS volumes
D. Firewall configuration
Correct: Answer: B

Which cloud architecture design concept is supported by distributing workloads across various
Availability Zones?
A. Implement automation.
B. Design for agility.
C. Design for failure.
D. Implement elasticity.
Correct: Answer: C

What is one technique to provide unified billing if each department within a firm has its own AWS
account?
A. Use AWS Budgets on each account to pay only to budget.
B. Contact AWS Support for a monthly bill.
C. Create an AWS Organization from the payer account and invite the other accounts to join.
D. Put all invoices into one Amazon Simple Storage Service (Amazon S3) bucket, load data
into Amazon Redshift, and then run a billing report.
Correct: Answer: C

Who is responsible for configuration management under the AWS shared responsibility model?
A. It is solely the responsibility of the customer.
B. It is solely the responsibility of AWS.
C. It is shared between AWS and the customer.
D. It is not part of the AWS shared responsibility model.
Correct: Answer: C

Who is the main point of contact for billing or account questions if a user has an AWS account
with an Enterprise-level AWS Support plan?
A. Solutions architect
B. AWS Concierge Support team
C. An AWS Marketplace seller
D. AWS Partner Network (APN) partner
Correct: Answer: B

Which compute hosting model should be accounted for in the Total Cost of Ownership (TCO)
when undertaking a cost analysis that allows physical isolation of a customer workload?
A. Dedicated Hosts
B. Reserved Instances
C. On-Demand Instances
D. No Upfront Reserved Instances
Correct: Answer: A

Which of the following is a suggestion made by an AWS Trusted Advisor? (Select two.)
A. Cost optimization
B. Auditing
C. Serverless architecture
D. Performance
E. Scalability
Correct: Answer: AD

Who is accountable for security and compliance under the AWS shared responsibility model?
A. The customer is responsible.
B. AWS is responsible.
C. AWS and the customer share responsibility.
D. AWS shares responsibility with the relevant governing body.
Correct: Answer: C

Which of the following is a critical design concept for architecting cloud applications?
A. Use the largest instance possible
B. Provision capacity for peak load
C. Use the Scrum development process
D. Implement elasticity
Correct: Answer: D