AWS Certified Cloud Practitioner CLF-C01 – Question280

A company needs an AWS service that will continuously monitor the company's AWS account for suspicious activity. The service must have the ability to initiate automated actions against threats that are identified in the security findings.
Which service will meet these requirements?

A.
AWS Trusted Advisor
B. Amazon Detective
C. Amazon Inspector
D. Amazon GuardDuty

Correct Answer: D

Explanation:

AWS Certified Cloud Practitioner CLF-C01 – Question279

A company stores configuration files in an Amazon S3 bucket. These configuration files must be accessed by applications that are running on Amazon EC2 instances.
According to AWS security best practices, how should the company grant permissions to allow the applications for access the S3 bucket?

A.
Use the AWS account root user access keys.
B. Use the AWS access key ID and the EC2 secret access key.
C. Use an IAM role with the necessary permissions.
D. Activate multi-factor authentication (MFA) and versioning on the S3 bucket.

AWS Certified Cloud Practitioner CLF-C01 – Question278

Which of the following are advantages of moving to the AWS Cloud? (Choose two.)

A.
Users can implement all AWS services in seconds.
B. AWS assumes all responsibility for the security of infrastructure and applications.
C. Users experience increased speed and agility.
D. Users benefit from massive economies of scale.
E. Users can move hardware from their data center to the AWS Cloud.

AWS Certified Cloud Practitioner CLF-C01 – Question276

How does consolidated billing help reduce costs for a company that has multiple AWS accounts?

A.
It aggregates usage across accounts so that the company can reach volume discount thresholds sooner.
B. It offers an additional 5% discount on purchases of All Upfront Reserved Instances.
C. It provides a simplified billing invoice that the company can process more quickly than a standard invoice.
D. It gives AWS resellers the ability to bill their customers for usage.

AWS Certified Cloud Practitioner CLF-C01 – Question275

Which of the following describes some of the core functionality of Amazon S3?

A.
Amazon S3 is a high-performance block storage service that is designed for use with Amazon EC2.
B. Amazon S3 is an object storage service that provides high-level performance, security, scalability, and data availability.
C. Amazon S3 is a fully managed, highly reliable, and scalable file storage system that is accessible over the industry-standard SMB protocol.
D. Amazon S3 is a scalable, fully managed elastic NFS for use with AWS Cloud services and on-premises resources.

Correct Answer: A

AWS Certified Cloud Practitioner CLF-C01 – Question274

Which AWS service enables the decoupling and scaling of applications?

A.
Amazon Simple Queue Service (Amazon SQS)
B. AWS Outposts
C. Amazon S3
D. Amazon Simple Email Service (Amazon SES)

AWS Certified Cloud Practitioner CLF-C01 – Question273

Which tasks require use of the AWS account root user? (Choose two.)

A.
Changing an AWS Support plan
B. Modifying an Amazon EC2 instance type
C. Grouping resources in AWS Systems Manager
D. Running applications in Amazon Elastic Kubernetes Service (Amazon EKS)
E. Closing an AWS account

Correct Answer: AE

Explanation:

AWS Certified Cloud Practitioner CLF-C01 – Question272

A developer wants to deploy an application on a container-based service. The service must automatically provision and manage the backend instances. The service must provision only the necessary resources.
Which AWS service will meet these requirements?

A.
Amazon EC2
B. Amazon Lightsail
C. Amazon Elastic Kubernetes Service (Amazon EKS)
D. AWS Fargate

Correct Answer: D

Explanation:

AWS Certified Cloud Practitioner CLF-C01 – Question271

A company wants to migrate its on-premises Microsoft SQL Server database server to the AWS Cloud. The company has decided to use Amazon EC2 instances to run this database.
Which of the following is the company responsible for managing, according to the AWS shared responsibility model?

A.
EC2 hypervisor
B. Security patching of the guest operating system
C. Network connectivity of the host server
D. Uptime service level agreement (SLA) for the EC2 instances

Correct Answer: B

Explanation: