What is the BEST way to grant the developers privileges in the development account while still complying with corporate policies?

A company has created a separate AWS account for all development work to protect the production environment. In this development account, developers have permission to manipulate IAM policies and roles. Corporate policies require that developers are blocked from accessing some services. What is the BEST way to grant the developers...

January 19, 2021 No Comments READ MORE +

How can the Administrator achieve this requirement?

A SysOps Administrator must find a way to set up alerts when Amazon EC2 service limits are close to being reached. How can the Administrator achieve this requirement?A . Use Amazon Inspector and Amazon CloudWatch Events.B . Use AWS Trusted Advisor and Amazon CloudWatch Events.C . Use the Personal Health...

January 19, 2021 No Comments READ MORE +

What cost-effective configuration change should the Administrator make to migrate the risk of SQL injection attacks?

A SysOps Administrator is deploying a legacy web application on AWS. The application has four Amazon EC2 instances behind Classic Load Balancer and stores data in an Amazon RDS instance. The legacy application has known vulnerabilities to SQL injection attacks, but the application code is no longer available to update....

January 19, 2021 No Comments READ MORE +

What is likely to be the problem?

An organization is running multiple applications for their customers. Each application is deployed by running a base AWS CloudFormation template that configures a new VPC. All applications are run in the same AWS account and AWS Region A sysops administrator has noticed that when trying to deploy the same AWS...

January 19, 2021 No Comments READ MORE +

Why did the alerts fail?

A SysOpsAdministrator is managing a large organization with multiple accounts on the Business Support plan all linked to a single payer account. The Administrator wants to be notified automatically of AWS Personal Health Dashboard events. In the main payer account, the Administrator configures Amazon CloudWatch Events triggered by AWS Health...

January 18, 2021 No Comments READ MORE +

Which of the following storage options will be the MOST cost efficient for the company's use case?

A company stores thousands of non-critical log files in an Amazon S3 bucket A set of reporting scripts retrieve these log files daily. Which of the following storage options will be the MOST cost efficient for the company's use case?A . Amazon GlacierB . Amazon S3 Standard IA (infrequent access)...

January 18, 2021 No Comments READ MORE +

How can the Administrator achieve this requirement?

A SysOps Administrator must find a way to set up alerts when Amazon EC2 service limits are close to being reached. How can the Administrator achieve this requirement?A . Use Amazon Inspector and Amazon CloudWatch Events.B . Use AWS Trusted Advisor and Amazon CloudWatch Events.C . Use the Personal Health...

January 18, 2021 No Comments READ MORE +

A company has an AWS account for each department and wants to consolidate billing and reduce overhead. The company wants to make sure that the finance team is denied from accessing services other than Amazon EC2: the security team is denied from accessing services other than AWS CloudTrail. and IT can access any resource.

A company has an AWS account for each department and wants to consolidate billing and reduce overhead. The company wants to make sure that the finance team is denied from accessing services other than Amazon EC2: the security team is denied from accessing services other than AWS CloudTrail. and IT...

January 18, 2021 No Comments READ MORE +

What would be the command line necessary to deploy one of the sites’ certificates to the load balancer?

A SysOps Administrator has been able to consolidate multiple, secure websites onto a single server, and each site is running on a different port. The Administrator now wants to start a duplicate server in a second Availability Zone and put both behind a load balancer for high availability. What would...

January 18, 2021 No Comments READ MORE +

Which action should the company take?

A company has discovered an operating system security vulnerability that is impacting its production Amazon EC2 instances. Which action should the company take?A . Patch the instances with AWS Systems Manager.B . Patch the vulnerability with Amazon Inspector.C . Redeploy the Amazon EC2 instances with AWS CloudFormation.D . Stop the...

January 18, 2021 No Comments READ MORE +