Which of the following is the best method to quickly and temporarily deny access from the specified IP addresses?

A company hosts multiple applications in their VPC. While monitoring the system, they noticed that multiple port scans are coming in from a specific IP address block that is trying to connect to several AWS resources inside their VPC. The internal security team has requested that all offending IP addresses...

September 4, 2022 No Comments READ MORE +

Which of the following is a custom metric in CloudWatch which you have to manually set up?

The company that you are working for has a highly available architecture consisting of an elastic load balancer and several EC2 instances configured with auto-scaling in three Availability Zones. You want to monitor your EC2 instances based on a particular metric, which is not readily available in CloudWatch . Which...

September 3, 2022 No Comments READ MORE +

In this scenario, which AWS services are suitable for storing session state data?

An IT consultant is working for a large financial company. The role of the consultant is to help the development team build a highly available web application using stateless web servers. In this scenario, which AWS services are suitable for storing session state data? (Select TWO.)A . ElastiCacheB . Redshift...

September 3, 2022 No Comments READ MORE +

Which of the following methods can achieve this requirement?

A company is generating confidential data that is saved on their on-premises data center. As a backup solution, the company wants to upload their data to an Amazon S3 bucket. In compliance with its internal security mandate, the encryption of the data must be done before sending it to Amazon...

September 3, 2022 No Comments READ MORE +

Which of the following statements are true regarding Amazon VPC subnets?

An aerospace engineering company recently adopted a hybrid cloud infrastructure with AWS. One of the Solutions Architect’s tasks is to launch a VPC with both public and private subnets for their EC2 instances as well as their database instances. Which of the following statements are true regarding Amazon VPC subnets?...

September 3, 2022 No Comments READ MORE +

Which of the following can be done to ensure that the application works properly at the beginning of the day?

A tech company has a CRM application hosted on an Auto Scaling group of On-Demand EC2 instances. The application is extensively used during office hours from 9 in the morning till 5 in the afternoon. Their users are complaining that the performance of the application is slow during the start...

September 3, 2022 No Comments READ MORE +

Which of the following is the most cost-effective option to implement this solution?

An organization is currently using a tape backup solution to store its application data on-premises. They plan to use a cloud storage service to preserve the backup data for up to 10 years that may be accessed about once or twice a year. Which of the following is the most...

September 3, 2022 No Comments READ MORE +

What could be the reason for this?

A company installed sensors to track the number of people who visit the park. The data is sent every day to an Amazon Kinesis stream with default settings for processing, in which a consumer is configured to process the data every other day. You noticed that the S3 bucket is...

September 2, 2022 No Comments READ MORE +

Which EC2 instance will be the first one to be terminated by your Auto Scaling group?

A suite of web applications is hosted in an Auto Scaling group of EC2 instances across three Availability Zones and is configured with default settings. There is an Application Load Balancer that forwards the request to the respective target group on the URL path. The scale-in policy has been triggered...

September 2, 2022 No Comments READ MORE +

Which S3 encryption technique should the Architect use?

An online medical system hosted in AWS stores sensitive Personally Identifiable Information (PII) of the users in an Amazon S3 bucket. Both the master keys and the unencrypted data should never be sent to AWS to comply with the strict compliance and regulatory requirements of the company . Which S3...

September 2, 2022 No Comments READ MORE +