Skip to content
IT - Engineering - Cloud - Finance

IT – Engineering – Cloud – Finance

IT, Engineering, Entrepreneurship, Sports, Finances, Life, Success, Failure

  • Main
  • About
  • Online Store
  • Books
  • Contact
  • Top 100 AWS Certified Cloud Practitioner Exam Preparation Questions and Answers Dumps
  • Show All Posts
  • Privacy Policy
  • Disclaimer

Tag: Which recommendations are included in the AWS Trusted Advisor checks?

Posted on October 2, 2018May 16, 2022

Top 100 AWS Certified Cloud Practitioner Exam Preparation Questions and Answers Dumps

AWS Cloud Practitioner CCP CLF-C01 Certification Exam Prep

Welcome to the Top 100 AWS Certified Cloud Practitioner Exam Preparation Questions and Answers Dumps :

Definition and Objectives,  

Top 100 Questions and Answers Dumps, 

2022 AWS Cloud Practitioner Exam Preparation

White papers,  

Courses, Labs and Training Materials,  

Exam info and details,  

References,  

Jobs,

 Others

AWS Certificates, 

AWS Cloud Support Engineer Job Interview Prep,  


Save 65% on select product(s) with promo code 65ZDS44X on Amazon.com

Top 20 AWS Training Q&A , 


AWS Web Services Cheat Sheet,  

Latest Products & Services at AWS RE:INVENT

AWS Cloud Practitioner CCP CLF-C01 Certification Exam Prep
AWS Cloud Practitioner CCP CLF-C01 Certification Exam Prep

The AWS Certified Cloud Practitioner average salary is — $131,465/year

What is the AWS Certified Cloud Practitioner Exam?

The AWS Certified Cloud Practitioner Exam (CLF-C01) is an introduction to AWS services and the intention is to examine the candidates ability to define what the AWS cloud is and its global infrastructure. It provides an overview of AWS core services security aspects, pricing and support services. The main objective is to provide an overall understanding about the Amazon Web Services Cloud platform. The course helps you get the conceptual understanding of the AWS and can help you know about the basics of AWS and cloud computing, including the services, cases and benefits [Get AWS CCP Practice Exam PDF Dumps here]

2022 AWS CCP CLF-C01 Practice Exam Course on   – Top 250+ Questions and Detailed Answers – Success Guaranteed – Save 50% with this link

AWS Certified Cloud Practitioner Exam Preparation
AWS CCP Certified Cloud Practitioner Exam Preparation

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

AWS Cloud Practitioner Exam Prep - CCP CLF-C01
AWS Cloud Practitioner Exam Prep – CCP CLF-C01

 
AWS CCP CLF-C01 on Android 
 
This image has an empty alt attribute; its file name is image.png

 
AWS CCP CLF-C01 on iOS
 
AWS Certified Cloud Practitioner Mock Exams Pro Windows10/11
AWS Certified Cloud Practitioner Mock Exams Pro Windows10/11

AWS CCP CLF-C01 on Windows 10/11

To succeed with the real exam, do not memorize the answers below. It is very important that you understand why a question is right or wrong and the concepts behind it by carefully reading the reference documents in the answers.

Top

AWS Certified Cloud Practitioner Exam Prep (CLF-C01) Questions and Answers 

AWS Certified Cloud Practitioner Exam Certification Prep Quiz App

Download AWS Cloud Practitioner Exam Prep Pro App (No Ads, Full Version with Answers) for:

AWS Certified Cloud Practitioner Exam Preparation
AWS CCP Certified Cloud Practitioner Exam Preparation

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

Below we are providing you with:

  • aws cloud practitioner exam questions
  • aws cloud practitioner sample questions
  • aws cloud practitioner exam dumps
  • aws cloud practitioner practice questions and answers
  • aws cloud practitioner practice exam questions and references

Q1: For auditing purposes, your company now wants to monitor all API activity for all regions in your AWS environment. What can you use to fulfill this new requirement?

  • A. For each region, enable CloudTrail and send all logs to a bucket in each region.
  • B. Enable CloudTrail for all regions.
  • C. Ensure one CloudTrail is enabled for all regions.
  • D. Use AWS Config to enable the trail for all regions.

Answer:

Answer: (C) [Get AWS CCP Practice Exam PDF Dumps here] AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

Ensure one CloudTrail is enabled for all regions.
Turn on CloudTrail for all regions in your environment and CloudTrail will deliver log files from all regions to one S3 bucket.
AWS CloudTrail is a service that enables governance, compliance, operational auditing, and risk auditing of your AWS account. With CloudTrail, you can log, continuously monitor, and retain account activity related to actions across your AWS infrastructure. CloudTrail provides event history of your AWS account activity, including actions taken through the AWS Management Console, AWS SDKs, command line tools, and other AWS services. This event history simplifies security analysis, resource change tracking, and troubleshooting.

Reference:
AWS CloudTrail


Top


Q2: What is the best solution to provide secure access to an S3 bucket not using the internet?

  • A. Use a VPN connection.
  • B. Use an Internet Gateway.
  • C. Use a VPC Endpoint to access S3.
  • D. Use a NAT Gateway.

Answer:

Answer: iOS – Android (C) AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

[Get AWS CCP Practice Exam PDF Dumps here]

Use a VPC Endpoint to access S3.
A VPC endpoint enables you to privately connect your VPC to supported AWS services and VPC endpoint services powered by PrivateLink without requiring an internet gateway, NAT device, VPN connection, or AWS Direct Connect connection. Instances in your VPC do not require public IP addresses to communicate with resources in the service. Traffic between your VPC and the other service does not leave the Amazon network.

AWS PrivateLink simplifies the security of data shared with cloud-based applications by eliminating the exposure of data to the public Internet.

Reference:
VPC Endpoint


Top

Q3: In the AWS Shared Responsibility Model, which of the following are the responsibility of AWS?

  • A. Securing Edge Locations
  • B. Encrypting data
  • C. Password policies
  • D. Decomissioning data

Answer:

Answer: iOS – Android (A and D) AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

[Get AWS CCP Practice Exam PDF Dumps here]
It is AWS responsibility to secure Edge locations and decommission the data.
AWS responsibility “Security of the Cloud” – AWS is responsible for protecting the infrastructure that runs all of the services offered in the AWS Cloud. This infrastructure is composed of the hardware, software, networking, and facilities that run AWS Cloud services.

Reference:
AWS Shared Responsibility Model


Top

Q4: You have EC2 instances running at 90% utilization and you expect this to continue for at least a year. What type of EC2 instance would you choose to ensure your cost stay at a minimum?

  • A. Dedicated host instances
  • B. On-demand instances
  • C. Spot instances
  • D. Reserved instances

Answer:

Answer: iOS – Android AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

[Get AWS CCP Practice Exam PDF Dumps here]
Reserved instances are the best choice for instances with continuous usage and offer a reduced cost because you purchase the instance for the entire year.
Amazon EC2 Reserved Instances (RI) provide a significant discount (up to 75%) compared to On-Demand pricing and provide a capacity reservation when used in a specific Availability Zone.

Reference:
AWS Reserved instances.


Top

Q5: What tool would you use to get an estimated monthly cost for your environment?

  • A. TCO Calculator
  • B. Simply Monthly Calculator
  • C. Cost Explorer
  • D. Consolidated Billing

Answer:

Answer: iOS – Android (B) [Get AWS CCP Practice Exam PDF Dumps here]

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

The AWS Simple Monthly Calculator helps customers and prospects estimate their monthly AWS bill more efficiently. Using this tool, they can add, modify and remove services from their ‘bill’ and it will recalculate their estimated monthly charges automatically.

Reference:
AWS Simply Monthly Calculator


Top

Q6: How do you make sure your organization does not exceed its monthly budget?

AWS Certified Cloud Practitioner Exam Prep App
AWS Certified Cloud Practitioner Exam Prep PWA App

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11 [Get AWS CCP Practice Exam PDF Dumps here]

  • A. Sign up for the free alert under filing preferences in the AWS Management Console.
  • B. Set a schedule to regularly review the Billing an Cost Management dashboard each month.
  • C. Create an email alert in AWS Budget
  • D. In CloudWatch, create an alarm that triggers each time the limit is exceeded.

Answer:

Answer: iOS – Android (C) [Get AWS CCP Practice Exam PDF Dumps here]
AWS Budgets gives you the ability to set custom budgets that alert you when your costs or usage exceed (or are forecasted to exceed) your budgeted amount.
You can also use AWS Budgets to set reservation utilization or coverage targets and receive alerts when your utilization drops below the threshold you define. Reservation alerts are supported for Amazon EC2, Amazon RDS, Amazon Redshift, Amazon ElastiCache, and Amazon Elasticsearch reservations.

Reference:
AWS Budget.


Top

Q7: An Edge Location is a specialization AWS data centre that works with which services?

  • A. Lambda
  • B. CloudWatch
  • C. CloudFront
  • D. Route 53

Answer:

Answer: iOS – Android [Get AWS CCP Practice Exam PDF Dumps here]
Lambda@Edge lets you run Lambda functions to customize the content that CloudFront delivers, executing the functions in AWS locations closer to the viewer.
Amazon CloudFront is a web service that speeds up distribution of your static and dynamic web content, such as .html, .css, .js, and image files, to your users. CloudFront delivers your content through a worldwide network of data centers called edge locations. When a user requests content that you’re serving with CloudFront, the user is routed to the edge location that provides the lowest latency (time delay), so that content is delivered with the best possible performance.

CloudFront speeds up the distribution of your content by routing each user request through the AWS backbone network to the edge location that can best serve your content. Typically, this is a CloudFront edge server that provides the fastest delivery to the viewer. Using the AWS network dramatically reduces the number of networks that your users’ requests must pass through, which improves performance. Users get lower latency—the time it takes to load the first byte of the file—and higher data transfer rates.

You also get increased reliability and availability because copies of your files (also known as objects) are now held (or cached) in multiple edge locations around the world.

Reference:
AWS Edge Locations


Top

Q8: What is the preferred method of linking 2 AWS accounts?

  • A. AWS Organizations
  • B. Cost Explorer
  • C. VPC Peering
  • D. Consolidated billing

Answer:

Answer: iOS – Android (A) AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11 [Get AWS CCP Practice Exam PDF Dumps here]
AWS Organizations is an account management service that enables you to consolidate multiple AWS accounts into an organization that you create and centrally manage. AWSOrganizations includes account management and consolidated billing capabilities that enable you to better meet the budgetary, security, and compliance needs of your business.

Reference:
AWS Organizations.


Top

Q9: Which of the following service is most useful when a Disaster Recovery method is triggered in AWS.

  • A. Amazon Route 53
  • B. Amazon SNS
  • C. Amazon SQS
  • D. Amazon Inspector

Answer:

Anser: A.
Route 53 is a domain name system service by AWS. When a Disaster does occur , it can be easy to switch to secondary sites using the Route53 service.
Amazon Route 53 is a highly available and scalable cloud Domain Name System (DNS) web service. It is designed to give developers and businesses an extremely reliable and cost effective way to route end users to Internet applications by translating names like www.example.com into the numeric IP addresses like 192.0.2.1 that
computers use to connect to each other. Amazon Route 53 is fully compliant with IPv6 as well.

Reference: AWS Route 53/

Top

Q10: Which of the following disaster recovery deployment mechanisms that has the highest downtime

  • A. Pilot light
  • B. Warm standby
  • C. Multi Site
  • D. Backup and Restore

Answer: iOS – Android [Get AWS CCP Practice Exam PDF Dumps here]

Answer: D.
The below snapshot from the AWS Documentation shows the spectrum of the Disaster recovery methods. If you go to the further end of the spectrum you have the least time for downtime for the users.

AWS Certified Cloud Practitioner Exam: AWS Disaster Recovery Techniques

AWS Disaster Recovery Techniques

Reference: AWS Route 53/

Top

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11 [Get AWS CCP Practice Exam PDF Dumps here]

Q11: Your company is planning to host resources in the AWS Cloud. They want to use services which can be used to decouple resources hosted on the cloud. Which of the following services can help fulfil this requirement?

  • A. AWS EBS Volumes
  • B. AWS EBS Snapshots
  • C. AWS Glacier
  • D. AWS SQS

Answer:


D. AWS SQS: Amazon Simple Queue Service (Amazon SQS) offers a reliable, highly-scalable hosted queue for storing messages as they travel between applications or microservices. It moves data between distributed application components and helps you decouple these components.

Reference: AWS Simple Queue Service Developer Guive

Top

Q12: If you have a set of frequently accessed files that are used on a daily basis, what S3 storage class should you store them in?

  • A. Infrequent Access
  • B. Fast Access
  • C. Reduced Redundancy
  • D. Standard

Answer:


D. Standard: The Standard storage class should be used for files that you access on a daily or very frequent basis.

Reference: AWS storage-classes/

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11 [Get AWS CCP Practice Exam PDF Dumps here]

AWS Cloud Practitioner CCP CLF-C01 Certification Exam Prep
AWS Cloud Practitioner CCP CLF-C01 Certification Exam Prep

Q13: What is the availability and durability rating of S3 Standard Storage Class?

Choose the correct answer:

  • A. 99.999999999% Durability and 99.99% Availability
  • B. 99.999999999% Availability and 99.90% Durability
  • C. 99.999999999% Durability and 99.00% Availability
  • D. 99.999999999% Availability and 99.99% Durability

Answer:


A. 99.999999999% Durability and 99.99% Availability
S3 Standard Storage class has a rating of 99.999999999% durability (referred to as 11 nines) and 99.99% availability.

Reference: AWS storage classes/

Top

Q14: What AWS database is primarily used to analyze data using standard SQL formatting with compatibility for your existing business intelligence tools

  • A. Redshift
  • B. RDS
  • C. DynamoDB
  • D. ElastiCache

Answer:


A. Redshift is a database offering that is fully-managed and used for data warehousing and analytics, including compatibility with existing business intelligence tools.

Reference: AWS redshift/

Top

Q15: What are the benefits of DynamoDB?

Choose the 3 correct answers:

  • A. Single-digit millisecond latency.
  • B. Supports multiple known NoSQL database engines like MariaDB and Oracle NoSQL.
  • C. Supports both document and key-value store data models.
  • D. Automatic scaling of throughput capacity.

Answer:


A. C. D. DynamoDB does not use/support other NoSQL database engines. You only have access to use DynamoDB’s built-in engine.

Reference: AWS DynamoDB

Top


AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

[Get AWS CCP Practice Exam PDF Dumps here]

Q16: Which of the following are the benefits of AWS Organizations?

Choose the 2 correct answers:

  • A. Analyze cost before migrating to AWS.
  • B. Centrally manage access polices across multiple AWS accounts.
  • C. Automate AWS account creation and management.
  • D. Provide technical help (by AWS) for issues in your AWS account.

Answer: iOS – Android [Get AWS CCP Practice Exam PDF Dumps here]


B. and C.
CENTRALLY MANAGE POLICIES ACROSS MULTIPLE AWS ACCOUNTS
AUTOMATE AWS ACCOUNT CREATION AND MANAGEMENT
CONTROL ACCESS TO AWS SERVICES
CONSOLIDATE BILLING ACROSS MULTIPLE AWS ACCOUNTS

Reference: AWS organizations/

Q17: There is a requirement hosting a set of servers in the Cloud for a short period of 3 months. Which of the following types of instances should be chosen to be cost effective.

  • A. Spot Instances
  • B. On-Demand
  • C. No Upfront costs Reserved
  • D. Partial Upfront costs Reserved

Answer:


B. Since the requirement is just for 3 months, then the best cost effective option is to use On-Demand Instances.

Reference: AWS pricing on-demand/

Top

Q18: Which of the following is not a disaster recovery deployment technique.

  • A. Pilot light
  • B. Warm standby
  • C. Single Site
  • D. Multi-Site

Answer:

Answer: iOS – Android [Get AWS CCP Practice Exam PDF Dumps here]

The following figure shows a spectrum for the four scenarios, arranged by how quickly a system can be available to users after a DR event.

AWS Disaster Recovery Techniques
AWS Disaster Recovery Techniques

Reference: Disaster Recovery


Top

Q19: Which of the following are attributes to the costing for using the Simple Storage Service. Choose 2 answers from the options given below

  • A. The storage class used for the objects stored.
  • B. Number of S3 buckets.
  • C. The total size in gigabytes of all objects stored.
  • D. Using encryption in S3

Answer:


Answer: iOS – Android ( A and C)

Below is a snapshot of the costing calculator for AWS S3.

AWS Certified Cloud Practitioner Exam: S3 storage cost estimator
Amazon S3 is storage for the Internet. It is designed to make web-scale computing easier for developers.

Reference: Calculator ; S3 storage classes

Q20: What endpoints are possible to send messages to with Simple Notification Service?

Choose the 3 correct answers:

  • A. SQS
  • B. SMS
  • C. FTP
  • D. Lambda

Answer:

Answer: iOS – Android
Reference: Using Amazon SNS for System-to-System Messaging with an HTTP/S Endpoint as a Subscriber

Top
AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

Q21: What service helps you to aggregate logs from your EC2 instance? Choose one answer from the options below:

  • A. SQS
  • B. S3
  • C. Cloudtrail
  • D. Cloudwatch Logs

Answer:


Answer: iOS – Android (D)

You can use Amazon CloudWatch Logs to monitor, store, and access your log files from Amazon Elastic Compute Cloud (Amazon EC2) instances, AWS CloudTrail, and other sources. You can then retrieve the associated log data from CloudWatch Log.

Reference: AWS CloudWatch Logs

Top

Q22: A company is deploying a new two-tier web application in AWS. The company wants to store their most frequently used data so that the response time for the application is improved. Which AWS service provides the solution for the company’s requirements?

  • A. MySQL Installed on two Amazon EC2 Instances in a single Availability Zone
  • B. Amazon RDS for MySQL with Multi-AZ
  • C. Amazon ElastiCache
  • D. Amazon DynamoDB

Answer:


Answer: iOS – Android

Amazon ElastiCache is a web service that makes it easy to deploy, operate, and scale an in-memory data store or cache in the cloud. The service improves the performance of web applications by allowing you to retrieve information from fast, managed, in-memory data stores, instead of relying entirely on slower disk-based databases.

Reference: AWS elasticache/


Top

Q23: You have a distributed application that periodically processes large volumes of data across multiple Amazon EC2 Instances. The application is designed to recover gracefully from Amazon EC2 instance failures. You are required to accomplish this task in the most cost-effective way. Which of the following will meet your requirements?

  • A. Spot Instances
  • B. Reserved Instances
  • C. Dedicated Instances

On-Demand Instances

Answer:


Answer: iOS – Android

When you think of cost effectiveness, you can either have to choose Spot or Reserved instances. Now when you have a regular processing job, the best is to use spot instances and since your application is designed recover gracefully from Amazon EC2 instance failures, then even if you lose the Spot instance , there is no issue because your application can recover.

Reference: AWS EC2 spot instances


Top

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

Q24: Which of the following features is associated with a Subnet in a VPC to protect against Incoming traffic requests?

  • A. AWS Inspector
  • B. Subnet Groups
  • C. Security Groups
  • D. NACL

Answer:


Answer: iOS – Android (D) AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

A network access control list (ACL) is an optional layer of security for your VPC that acts as a firewall for controlling traffic in and out of one or more subnets. You might set up network ACLs with rules similar to your security groups in order to add an additional layer of security to your VPC.

Reference: AWS VPC ACLs


Top

Q25: A company is deploying a two-tier, highly available web application to AWS. Which service provides durable storage for static content while utilizing Overall CPU resources for the web tier?

  • A. Amazon EBC volume.
  • B. Amazon S3
  • C. Amazon EC2 instance store
  • D. Amazon RDS instance

Answer:


B. Amazon S3 is the default storage service that should be considered for companies. It provides durable storage for all static content.

Reference: S3 faqs


Top

Q26: What are characteristics of Amazon S3?
Choose 2 answers from the options given below.

  • A. S3 allows you to store objects of virtually unlimited size.
  • B. S3 allows you to store unlimited amounts of data.
  • C. S3 should be used to host relational database.
  • D. Objects are directly accessible via a URL.

Answer:


Answer: iOS – Android AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

Each object does have a limitation in S3, but you can store virtually unlimited amounts of data. Also each object gets a directly accessible URL

Reference: AWS s3 faqs

Top

Q26: When working on the costing for on-demand EC2 instances , which are the following are attributes which determine the costing of the EC2 Instance. Choose 3 answers from the options given below

  • A. Instance Type
  • B. AMI Type
  • C. Region
  • D. Edge location

Answer:


Answer: iOS – Android (A. B. C. ) AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

See components making up the pricing below.

AWS AMI Pricing
AWS AMI Pricing

Reference: AWS ec2 pricing on-demand/

Top

Q27: You have a mission-critical application which must be globally available at all times. If this is the case, which of the below deployment mechanisms would you employ

  • A. Deployment to multiple edge locations
  • B. Deployment to multiple Availability Zones
  • D. Deployment to multiple Data Centers
  • D. Deployment to multiple Regions

Answer:


Answer: iOS – Android (D) AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

Regions represent different geographic locations and it is best to host your application across multiple regions for disaster recovery.

Reference: AWS regions availability zones

Top

Q28: Which of the following are right principles when designing cloud based systems. Choose 2 answers from the options below

  • A. Build Tightly-coupled components
  • B. Build loosely-coupled components
  • C. Assume everything will fail
  • D. Use as many services as possible

Answer:


Answer: iOS – Android B. and C. AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

Always build components which are loosely coupled. This is so that even if one component does fail, the entire system does not fail. Also if you build with the assumption that everything will fail, then you will ensure that the right measures are taken to build a highly available and fault tolerant system.

Reference: AWS Well architected networks

Top

Q29: You have 2 accounts in your AWS account. One for the Dev and the other for QA. All are part of consolidated billing. The master account has purchase 3 reserved instances. The Dev department is currently using 2 reserved instances. The QA team is planning on using 3 instances which of the same instance type. What is the pricing tier of the instances that can be used by the QA Team?

  • A. No Reserved and 3 on-demand
  • B. One Reserved and 2 on-demand
  • C. Two Reserved and 1 on-demand
  • D. Three Reserved and no on-demand

Answer:


Answer: iOS – Android

Since all are a part of consolidating billing, the pricing of reserved instances can be shared by All. And since 2 are already used by the Dev team , another one can be used by the QA team. The rest of the instances can be on-demand instances.

Reference: AWS ec2 pricing reserved instances/

Top

Q30: Which one of the following features is normally present in all of AWS Support plans

  • A. 24/7 access to Customer Service
  • B. Access to all features in the Trusted Advisor
  • C. A technical Account Manager
  • D. A dedicated support person

Answer:


Answer: iOS – Android (A)

AWS Support plans
AWS Support plans

Reference: AWS premium support compare plans

Top

Q31: Which of the following storage mechanisms can be used to store messages effectively which can be used across distributed systems?

  • A. Amazon Glacier
  • B. Amazon EBS Volumes
  • C. Amazon EBS Snapshots
  • D. Amazon SQS

Answer:


Answer: iOS – Android (D)

Amazon Simple Queue Service (Amazon SQS) offers a reliable, highly-scalable hosted queue for storing messages as they travel between applications or microservices. It moves data between distributed application components and helps you decouple these components.

Reference: AWS Simple Queue Service

Top

Q32: You are exploring what services AWS has off-hand. You have a large number of data sets that need to be processed. Which of the following services can help fulfil this requirement.

  • A. EMR
  • B. S3
  • C. Glacier
  • D. Storage Gateway

Answer:


A. Amazon EMR helps you analyze and process vast amounts of data by distributing the computational work across a cluster of virtual servers running in the AWS Cloud. The cluster is managed using an open-source framework called Hadoop. Amazon EMR lets you focus on crunching or analyzing your data without having to worry about time-consuming setup, management, and tuning of Hadoop clusters or the compute capacity they rely on.

Reference: AWS Emr

Top

Q33: Which of the following services allows you to analyze EC2 Instances against pre-defined security templates to check for vulnerabilities

  • A. AWS Trusted Advisor
  • B. AWS Inspector
  • C. AWS WAF
  • D. AWS Shield

Answer:


Answer: iOS – Android (B)

Amazon Inspector enables you to analyze the behaviour of your AWS resources and helps you to identify potential security issues. Using Amazon Inspector, you can define a collection of AWS resources that you want to include in an assessment target. You can then create an assessment template and launch a security
assessment run of this target.

Reference: AWS inspector introduction


Top

Q34: Your company is planning to offload some of the batch processing workloads on to AWS. These jobs can be interrupted and resumed at any time. Which of the following instance types would be the most cost effective to use for this purpose.

  • A. On-Demand
  • B. Spot
  • C. Full Upfront Reserved
  • D. Partial Upfront Reserved

Answer:


B. Spot Instances are a cost-effective choice if you can be flexible about when your applications run and if your applications can be interrupted. For example, Spot Instances are well-suited for data analysis, batch jobs, background processing, and optional tasks

Reference: AWS Spot Instances

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

Top

Q35: Which of the following is not a category recommendation given by the AWS Trusted Advisor?

  • A. Security
  • B. High Availability
  • C. Performance
  • D. Fault tolerance

Answer:


Answer: iOS – Android (B)

AWS Trusted advisor

Reference: AWS Trust Advisor

Top

Q36: Which of the below cannot be used to get data onto Amazon Glacier.

  • A. AWS Glacier API
  • B. AWS Console
  • C. AWS Glacier SDK
  • D. AWS S3 Lifecycle policies

Answer:


Answer: iOS – Android (B)

Note that the AWS Console cannot be used to upload data onto Glacier. The console can only be used to create a Glacier vault which can be used to upload the data.

Reference: Uploading an archive in AWS

Top

Q37: Which of the following from AWS can be used to transfer petabytes of data from on-premise locations to the AWS Cloud.

  • A. AWS Import/Export
  • B. AWS EC2
  • C. AWS Snowball
  • D. AWS Transfer

Answer:


Answer: iOS – Android (C)

Snowball is a petabyte-scale data transport solution that uses secure appliances to transfer large amounts of data& into and out of the AWS cloud. Using Snowball addresses common challenges with large-scale data transfers including high network costs, long transfer times, and security concerns. Transferring data with Snowball is simple, fast, secure, and can be as little as one-fifth the cost of high-speed Internet.

Reference: AWS snowball

Top

Q38: Which of the following services allows you to analyze EC2 Instances against pre-defined security templates to check for vulnerabilities

  • A. AWS Trusted Advisor
  • B. AWS Inspector
  • C. AWS WAF
  • D. AWS Shield

Answer:


Answer: iOS – Android

Amazon Inspector enables you to analyze the behavior of your AWS resources and helps you to identify potential security issues. Using Amazon Inspector, you can define a collection of AWS resources that you want to include in an assessment target. You can then create an assessment template and launch a security
assessment run of this target.

Reference: AWS Inspector


Top

Q39: Your company wants to move an existing Oracle database to the AWS Cloud. Which of the following services can help facilitate this move.

  • A. AWS Database Migration Service
  • B. AWS VM Migration Service
  • C. AWS Inspector
  • D. AWS Trusted Advisor

Answer:


Answer: iOS – Android (A)

AWS Database Migration Service helps you migrate databases to AWS quickly and securely. The source database remains fully operational during the migration, minimizing downtime to applications that rely on the database. The AWS Database Migration Service can migrate your data to and from most widely used commercial and open source databases.

Reference: AWS dms


Top


AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

Q40: Which of the following features of AWS RDS allows for offloading reads of the database.

  • A. Cross region replication
  • B. Creating Read Replica’s
  • C. Using snapshots
  • D. Using Multi-AZ feature

Answer:


Answer: iOS – Android (B)

You can reduce the load on your source DB Instance by routing read queries from your applications to the read replica. Read replicas allow you to elastically scale out beyond the capacity constraints of a single DB instance for read-heavy database workloads.

Reference: AWS read replicas


Top

Q41: Which of the following does AWS perform on its behalf for EBS volumes to make it less prone to failure?

  • A. Replication of the volume across Availability Zones
  • B. Replication of the volume in the same Availability Zone
  • C. Replication of the volume across Regions
  • D. Replication of the volume across Edge locations

Answer:


Answer: iOS – Android

When you create an EBS volume in an Availability Zone, it is automatically replicated within that zone to prevent data loss due to failure of any single hardware component

Reference: AWS EBS Volumes

Top

Q42: Your company is planning to host a large e-commerce application on the AWS Cloud. One of their major concerns is Internet attacks such as DDos attacks.

Which of the following services can help mitigate this concern. Choose 2 answers from the options given below

  • A. A. Cloudfront
  • B. AWS Shield
  • C. C. AWS EC2
  • D. AWS Config

Answer:


Answer: iOS – Android (A. and B. )

One of the first techniques to mitigate DDoS attacks is to minimize the surface area that can be attacked thereby limiting the options for attackers and allowing you to build protections in a single place. We want to ensure that we do not expose our application or resources to ports, protocols or applications from where they do not expect any communication. Thus, minimizing the possible points of attack and letting us concentrate our mitigation efforts. In some cases, you can do this by placing your computation resources behind Content Distribution
Networks (CDNs), Load Balancers and restricting direct Internet traffic to certain parts of your infrastructure
like your database servers. In other cases, you can use firewalls or Access Control Lists (ACLs) to control what traffic reaches your applications.

Reference: ddos attack protection/

Top

Q43: Which of the following are 2 ways that AWS allows to link accounts

  • A. Consolidating billing
  • B. AWS Organizations
  • C. Cost Explorer
  • D. IAM

Answer:


Answer: iOS – Android

You can use the consolidated billing feature in AWS Organizations to consolidate payment for multiple AWS accounts or multiple AISPL accounts. With consolidated billing, you can see a combined view of AWS charges incurred by all of your accounts. You also can get a cost report for each member account that is associated with your master account. Consolidated billing is offered at no additional charge.

Reference: AWS Consolidated billing

Top


Q44: Which of the following helps in DDos protection. Choose 2 answers from the options given below

  • A. Cloudfront
  • B. AWS Shield
  • C. AWS EC2
  • D. AWS Config

Answer:


Answer: iOS – Android ( A. and B. )

One of the first techniques to mitigate DDoS attacks is to minimize the surface area that can be attacked thereby limiting the options for attackers and allowing you to build protections in a single place. We want to ensure that we do not expose our application or resources to ports, protocols or applications from where they do not expect any communication. Thus, minimizing the possible points of attack and letting us concentrate our mitigation efforts. In some cases, you can do this by placing your computation resources behind; Content Distribution Networks (CDNs), Load Balancers and restricting direct Internet traffic to certain parts of your infrastructure like your database servers. In other cases, you can use firewalls or Access Control Lists (ACLs) to control what traffic reaches your applications.

Reference: AWS shield – ddos attack protection/

Top

Q45: Which of the following can be used to call AWS services from programming languages

  • A. AWS SDK
  • B. AWS Console
  • C. AWS CLI
  • D. AWS IAM

Answer:

Answer: iOS – Android (A)
AWS SDK can be plugged in for various programming languages. Using the SDK you can then call the required AWS services.

Reference: AWS tools

Q46: A company wants to host a self-managed database in AWS. How would you ideally implement this solution?

  • A. Using the AWS DynamoDB service
  • B. Using the AWS RDS service
  • C. Hosting a database on an EC2 Instance
  • D. Using the Amazon Aurora service

Answer:


Answer: iOS – Android (C)

If you want a self-managed database, that means you want complete control over the database engine and the underlying infrastructure. In such a case you need to host the database on an EC2 Instance

Reference: AWS ec2

Top

Q47: When creating security groups, which of the following is a responsibility of the customer. Choose 2 answers from the options given below.

  • A. Giving a name and description for the security group
  • B. Defining the rules as per the customer requirements.
  • C. Ensure the rules are applied immediately
  • D. Ensure the security groups are linked to the Elastic Network interface

Answer:


Answer: iOS – Android (A. and B.)

When you define security rules for EC2 Instances, you give a name, description and write the rules for the security group

Reference: AWS using Network Security Groups

Top

Q48: There is a requirement to host a database server for a minimum period of one year. Which of the following would result in the least cost?

  • A. Spot Instances
  • B. On-Demand
  • C. No Upfront costs Reserved
  • D. Partial Upfront costs Reserved

Answer:


Answer: iOS – Android (D.)

If the database is going to be used for a minimum of one year at least , then it is better to get Reserved Instances. You can save on costs , and if you use a partial upfront options , you can get a better discount

Reference: AWS Reserved Instances

Top

Q49: Which of the below can be used to import data into Amazon Glacier?
Choose 3 answers from the options given below:

  • A. AWS Glacier API
  • B. AWS Console
  • C. AWS Glacier SDK
  • D. AWS S3 Lifecycle policies

Answer:


Answer: iOS – Android (A. C. and D. )

The AWS Console cannot be used to upload data onto Glacier. The console can only be used to create a Glacier vault which can be used to upload the data.

Reference: Uploading an archive in AWS

Top

Q50: Which of the following can be used to secure EC2 Instances hosted in AWS. Choose 2 answers

  • A. Usage of Security Groups
  • B. Usage of AMI’s
  • C. Usage of Network Access Control Lists
  • D. Usage of the Internet gateway

Answer:


Answer: iOS – Android

Security groups acts as a virtual firewall for your instance to control inbound and outbound traffic. Network access control list (ACL) is an optional layer of security for your VPC that acts as a firewall for
controlling traffic in and out of one or more subnets.

Reference: VPC Security Groups and Network Access Control List

Top

Q51: Which of the following can be used to host virtual servers on AWS

  • A. AWS IAM
  • B. AWS Server
  • C. AWS EC2
  • D. AWS Regions

Answer:


Answer: iOS – Android (C.)

AWS EC2

Reference: AWS ec2

Top

Q52: You plan to deploy an application on AWS. This application needs to be PCI Compliant. Which of the below steps are needed to ensure the compliance? Choose 2 answers from the below list:

  • A. Choose AWS services which are PCI Compliant
  • B. Ensure the right steps are taken during application development for PCI Compliance
  • C. Encure the AWS Services are made PCI Compliant
  • D. Do an audit after the deployment of the application for PCI Compliance.

Answer:


Answer: iOS – Android

Q53: Which tool can you use to forecast your AWS spending?

  • A. AWS organizations
  • B. Amazon Dev pay
  • C. AWS Trusted Advisor
  • D. AWS Cost explorer

Answer:


Answer: iOS – Android (D)

AWS Cost Explorer lets you dive deeper into your cost and usage data to identify trends, pinpoint cost drivers, and detect anomalies.

Reference: AWS Cost Explorer Docs

Q54: The Trusted Advisor service provides insight regarding which four categories of an AWS account?

  • A. Security, fault tolerance, high availability, performance and Service Limits
  • B. Security, access control, high availability, performance and Service Limits
  • C. Performance, cost optimization, Security, fault tolerance and Service Limits
  • D. Performance, cost optimization, Access Control, Connectivity, and Service Limits

Answer:


C. Performance, cost optimization, Security, fault tolerance and Service Limits

Reference: AWS trusted advisor


Top

Q55: As per the AWS Acceptable Use Policy, penetration testing of EC2 instances

  • A. May be performed by AWS, and will be performed by AWS upon customer request
  • B. May be performed by AWS, and is periodically performed by AWS
  • C. Are expressly prohibited under all circumtances
  • D. May be performed by the customer on their own instances with prior authorization from AWS
  • E. May be performed by the customer on their own instances, only if performed from EC2 instances

Answer:


D. You need to take authorization from AWS before doing a penetration test on EC2 instances.

Reference: AWS pen testing


Top

Q56: What is the AWS feature that enables fast, easy, and secure transfers of files over long distances between your client and your Amazon S3 bucket

  • A. File Transfer
  • B. HTTP Transfer
  • C. Transfer Acceleration
  • D. S3 Acceleration

Answer:


C. Transfer Acceleration

Reference: AWS transfer acceleration examples


Top

Q56: What best describes an AWS region?

Choose the correct answer:

  • A. The physical networking connections between Availability Zones.
  • B. A specific location where an AWS data center is located.
  • C. A collection of DNS servers.
  • D. An isolated collection of AWS Availability Zones, of which there are many placed all around the world.

Answer:


D: An AWS region is an isolated geographical area that is is comprised of three or more AWS Availability Zones.

Reference:Concepts Regions And AvailabilityZones


Top

Q57: Which of the following is a factor when calculating Total Cost of Ownership (TCO) for the AWS Cloud?

  • A. The number of servers migrated to AWS
  • B. The number of users migrated to AWS
  • C. The number of passwords migrated to AWS
  • D. The number of keys migrated to AWS

Answer:

A. Running servers will incur costs. The number of running servers is one factor of Server Costs; a key component of AWS’s Total Cost of Ownership (TCO). Reference: AWS cost calculator

Top

Q58: Which AWS Services can be used to store files? Choose 2 answers from the options given below:

  • A. Amazon CloudWatch
  • B. Amazon Simple Storage Service (Amazon S3)
  • C. Amazon Elastic Block Store (Amazon EBS)
  • D. AWS COnfig
  • D. AWS Amazon Athena

B. and C. Amazon S3 is a Object storage built to store and retrieve any amount of data from anywhere. Amazon Elastic Block Store is a Persistent block storage for Amazon EC2.

Reference: AWS s3 and AWS EBS

Q59: What best describes Amazon Web Services (AWS)?

Choose the correct answer:

  • A. AWS is the cloud.
  • B. AWS only provides compute and storage services.
  • C. AWS is a cloud services provider.
  • D. None of the above.

Answer:


C: AWS is defined as a cloud services provider. They provide hundreds of services of which compute and storage are included (not not limited to).
Reference: AWS

Q60: Which AWS service can be used as a global content delivery network (CDN) service?

  • A. Amazon SES
  • B. Amazon CouldTrail
  • C. Amazon CloudFront
  • D. Amazon S3

Answer:

C: Amazon CloudFront is a web service that gives businesses and web application developers an easy
and cost effective way to distribute content with low latency and high data transfer speeds. Like other AWS services, Amazon CloudFront is a self-service, pay-per-use offering, requiring no long term commitments or minimum fees. With CloudFront, your files are delivered to end-users using a global network of edge locations.Reference: AWS cloudfront

Top

Q61: What best describes the concept of fault tolerance?

Choose the correct answer:

  • A. The ability for a system to withstand a certain amount of failure and still remain functional.
  • B. The ability for a system to grow in size, capacity, and/or scope.
  • C. The ability for a system to be accessible when you attempt to access it.
  • D. The ability for a system to grow and shrink based on demand.

Answer:


A: Fault tolerance describes the concept of a system (in our case a web application) to have failure in some of its components and still remain accessible (highly available). Fault tolerant web applications will have at least two web servers (in case one fails).

Reference:Designing fault tolerant applications/

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

Q62: The firm you work for is considering migrating to AWS. They are concerned about cost and the initial investment needed. Which of the following features of AWS pricing helps lower the initial investment amount needed?

Choose 2 answers from the options given below:

  • A. The ability to choose the lowest cost vendor.
  • B. The ability to pay as you go
  • C. No upfront costs
  • D. Discounts for upfront payments

Answer:
B and C: The best features of moving to the AWS Cloud is: No upfront cost and The ability to pay as you go where the customer only pays for the resources needed. Reference: AWS pricing

Top

Q63: What best describes the concept of elasticity?

Choose the correct answer:

  • A. The ability for a system to grow in size, capacity, and/or scope.
  • B. The ability for a system to grow and shrink based on demand.
  • C. The ability for a system to withstand a certain amount of failure and still remain functional.
  • D. ability for a system to be accessible when you attempt to access it.

Answer:


Answer: iOS – Android B:

Elasticity (think of a rubber band) defines a system that can easily (and cost-effectively) grow and shrink based on required demand.

Reference:Cost optimization automating elasticity

Q64: Your company has started using AWS. Your IT Security team is concerned with the security of hosting resources in the Cloud. Which AWS service provides security optimization recommendations that could help the IT Security team secure resources using AWS?

  • A. AWS API Gateway
  • B. Reserved Instances
  • C. AWS Trusted Advisor
  • D. AWS Spot Instances

Answer:

Answer: iOS – Android C:

An online resource to help you reduce cost, increase performance, and improve security by optimizing your AWS environment, Trusted Advisor provides real time guidance to help you provision your resources following AWS best practices. Reference: AWS trusted advisor

Q65: What is the relationship between AWS global infrastructure and the concept of high availability?

Choose the correct answer:

  • A. AWS is centrally located in one location and is subject to widespread outages if something happens at that one location.
  • B. AWS regions and Availability Zones allow for redundant architecture to be placed in isolated parts of the world.
  • C. Each AWS region handles a different AWS services, and you must use all regions to fully use AWS.
  • D. None of the above

Answer


Answer: iOS – Android

As an AWS user, you can create your applications infrastructure and duplicate it. By placing duplicate infrastructure in multiple regions, high availability is created because if one region fails you have a backup (in a another region) to use.

Reference:RDS Concepts MultiAZ

Q66: You are hosting a number of EC2 Instances on AWS. You are looking to monitor CPU Utilization on the Instance. Which service would you use to collect and track performance metrics for AWS services?

  • A. Amazon CloudFront
  • B. Amazon CloudSearch
  • C. Amazon CloudWatch
  • D. AWS Managed Services

Top

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

Answer:

Answer: iOS – Android C: Amazon CloudWatch is a monitoring service for AWS cloud resources and the applications you run on AWS. You can use Amazon CloudWatch to collect and track metrics, collect and monitor log files, set alarms, and automatically react to changes in your AWS resources. Reference: AWS cloudwatch

Q67: Which of the following support plans give access to all the checks in the Trusted Advisor service.

Choose 2 answers from the options given below:

  • A. Basic
  • B. Business
  • C. Enterprise
  • D. None

Answer:
Answer: iOS – Android B and C: Reference: AWS Premium support compare plans

Q68: Which of the following in AWS maps to a separate geographic location?

A. AWS Region
B. AWS Data Centers
C. AWS Availability Zone

Answer:


Answer: iOS – Android A: Amazon cloud computing resources are hosted in multiple locations world-wide. These locations are composed of AWS Regions and Availability Zones. Each AWS Region is a separate geographic area. Reference: AWS Regions And Availability Zone

Top

Q69: What best describes the concept of scalability?

Choose the correct answer:

  • A. The ability for a system to grow and shrink based on demand.
  • B. The ability for a system to grow in size, capacity, and/or scope.
  • C. The ability for a system be be accessible when you attempt to access it.
  • D. The ability for a system to withstand a certain amount of failure and still remain functional.

Answer

Answer: iOS – Android B: Scalability refers to the concept of a system being able to easily (and cost-effectively) scale UP. For web applications, this means the ability to easily add server capacity when demand requires.

Reference:AWS autoscaling

Q70: If you wanted to monitor all events in your AWS account, which of the below services would you use?

  • A. AWS CloudWatch
  • B. AWS CloudWatch logs
  • C. AWS Config
  • D. AWS CloudTrail

Answer:

D: AWS CloudTrail is a service that enables governance, compliance, operational auditing, and risk
auditing of your AWS account. With CloudTrail, you can log, continuously monitor, and retain account activity related to actions across your AWS infrastructure. CloudTrail provides event history of your AWS account activity, including actions taken through the AWS Management Console, AWS SDKs, command line tools, and other AWS services. This event history simplifies security analysis, resource change tracking, and troubleshooting. Reference: Cloudtrail

Top

Q71: What are the four primary benefits of using the cloud/AWS?

Choose the correct answer:

  • A. Fault tolerance, scalability, elasticity, and high availability.
  • B. Elasticity, scalability, easy access, limited storage.
  • C. Fault tolerance, scalability, sometimes available, unlimited storage
  • D. Unlimited storage, limited compute capacity, fault tolerance, and high availability.

Answer:

Answer: iOS – Android Fault tolerance, scalability, elasticity, and high availability are the four primary benefits of AWS/the cloud.

Q72: What best describes a simplified definition of the “cloud”?

Choose the correct answer:

  • A. All the computers in your local home network.
  • B. Your internet service provider
  • C. A computer located somewhere else that you are utilizing in some capacity.
  • D. An on-premise data center that your company owns.

Answer


Answer: iOS – Android (D) The simplest definition of the cloud is a computer that is located somewhere else that you are utilizing in some capacity. AWS is a cloud services provider, as the provide access to computers they own (located at AWS data centers), that you use for various purposes.

Top

Q73: Your development team is planning to host a development environment on the cloud. This consists of EC2 and RDS instances. This environment will probably only be required for 2 months.

Which types of instances would you use for this purpose?

  • A. On-Demand
  • B. Spot
  • C. Reserved
  • D. Dedicated

Answer:

Answer: iOS – Android (A) The best and cost effective option would be to use On-Demand Instances. The AWS documentation gives the following additional information on On-Demand EC2 Instances. With On-Demand instances you only pay for EC2 instances you use. The use of On-Demand instances frees you from the costs and complexities of planning, purchasing, and maintaining hardware and transforms what are commonly large fixed costs into much smaller variable costs. Reference: AWS ec2 pricing on-demand

Q74: Which of the following can be used to secure EC2 Instances?

  • A. Security Groups
  • B. EC2 Lists
  • C. AWS Configs
  • D. AWS CloudWatch

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

Answer:

Answer: iOS – Android security groups acts as a virtual firewall for your instance to control inbound and outbound traffic. When you launch an instance in a VPC, you can assign up to five security groups to the instance. Security groups act at the instance level, not the subnet level. Therefore, each instance in a subnet in your VPC could be assigned to a different set of security groups. If you don’t specify a particular group at launch time, the instance is automatically assigned to the default security group for the VPC. Reference: VPC Security Groups

Q75: What is the purpose of a DNS server?

Choose the correct answer:

  • A. To act as an internet search engine.
  • B. To protect you from hacking attacks.
  • C. To convert common language domain names to IP addresses.
  • D. To serve web application content.

Answer:


Answer: iOS – Android (C)

Domain name system servers act as a “third party” that provides the service of converting common language domain names to IP addresses (which are required for a web browser to properly make a request for web content).

Top

Q76:What best describes the concept of high availability?

Choose the correct answer:

  • A. The ability for a system to grow in size, capacity, and/or scope.
  • B. The ability for a system to withstand a certain amount of failure and still remain functional.
  • C. The ability for a system to grow and shrink based on demand.
  • D. The ability for a system to be accessible when you attempt to access it.

Answer:


Answer: iOS – Android (D)

High availability refers to the concept that something will be accessible when you try to access it. An object or web application is “highly available” when it is accessible a vast majority of the time.


Top

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

Q77: What is the major difference between AWS’s RDS and DynamoDB database services?

Choose the correct answer:

  • A. RDS offers NoSQL database options, and DynamoDB offers SQL database options.
  • B. RDS offers one SQL database option, and DynamoDB offers many NoSQL database options.
  • C. RDS offers SQL database options, and DynamoDB offers a NoSQL database option.
  • D. None of the above

Answer:


Answer: iOS – Android (C.)

RDS is a SQL database service (that offers several database engine options), and DynamoDB is a NoSQL database option that only offers one NoSQL engine.

Reference:

Q78: What are two open source in-memory engines supported by ElastiCache?

Choose the 2 correct answers:

  • A. CacheIt
  • B. Aurora
  • C. MemcacheD
  • D. Redis

Answer:


Answer: iOS – Android (C. and D.)

Redis, MemcacheD

Reference: AWS Elasticache/

Top

Q79: What AWS database service is used for data warehousing of petabytes of data?

Choose the correct answer:

  • A. RDS
  • B. Elasticache
  • C. Redshift
  • D. DynamoDB

Answer:


Answer: iOS – Android (C.)

Redshift is a fully-managed data warehouse that is perfect for storing petabytes worth of data.

Reference: AWS Redshift

Q80: Which AWS service uses a combination of publishers and subscribers?

Choose the correct answer:

  • A. Lambda
  • B. RDS
  • C. EC2
  • D. SNS

Answer:


Answer: iOS – Android

In SNS, there are two types of clients: publishers and subscribers. Publishers send the message, and subscribers receive the message.

Reference: AWS SNS

Q81: What SQL database engine options are available in RDS?

Choose the 3 correct answers:

  • A. MySQL
  • B. MongoDB
  • C. PostgreSQL
  • D. MariaDB

Answer:


Answer: iOS – Android (A. C. and ….)

RDS offers the following SQL options: Aurora MySQL MariaDB PostgreSQL Oracle Microsoft SQLServer

Reference:

Q81: What is the name of AWS’s RDS SQL database engine?

Choose the correct answer:

  • A. Lightsail
  • B. Aurora
  • C. MySQL
  • D. SNS

Answer:


Answer: iOS – Android (B.) AWS created their own custom SQL database engine, which is called Aurora.

Reference: AWS Aurora

Q82: Under what circumstances would you choose to use the AWS service CloudTrail?

Choose the correct answer:

  • A. When you want to log what actions various IAM users are taking in your AWS account.
  • B. When you want a serverless compute platform.
  • C. When you want to collect and view resource metrics.
  • D. When you want to send SMS notifications based on events that occur in your account.

Answer:


AAnswer: iOS – Android (A). When you want to log what actions various IAM users are taking in your AWS account.

Reference: AWS Cloudtrail

Q83: If you want to monitor the average CPU usage of your EC2 instances, which AWS service should you use?

Choose the correct answer:

  • A. CloudMonitor
  • B. CloudTrail
  • C. CloudWatch
  • D. None of the above

Answer:


C. CloudWatch is used to collect, view, and track metrics for resources (such as EC2 instances) in your AWS account.

Reference: AWS CloudWatch

Q84: What is AWS’s relational database service?

Choose the correct answer:

  • A. ElastiCache
  • B. DymamoDB
  • C. RDS
  • D. Redshift

Answer:


Answer: iOS – Android (C)

RDS offers SQL database options – otherwise known as relational databases.

Reference: AWS RDS

Top

Q85: If you want to have SMS or email notifications sent to various members of your department with status updates on resources in your AWS account, what service should you choose?

Choose the correct answer:

  • A. SNS
  • B. GetSMS
  • C. RDS
  • D. STS

Answer:


Answer: iOS – Android (A) Simple Notification Service (SNS) is what publishes messages to SMS and/or email endpoints.

Reference: AWS SNS

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

Q86: Which AWS service can provide a Desktop as a Service (DaaS) solution?

A. EC2

B. AWS Systems Manager

C. Amazon WorkSpaces

D. Elastic Beanstalk

Answer: iOS – Android

Amazon WorkSpaces is a managed, secure Desktop-as-a-Service (DaaS) solution. You can use Amazon WorkSpaces to provision either Windows or Linux desktops in just a few minutes and quickly scale to provide thousands of desktops to workers across the globe

Q87: Your company has recently migrated large amounts of data to the AWS cloud in S3 buckets. But it is necessary to discover and protect the sensitive data in these buckets. Which AWS service can do that?

A. GuardDuty

B. Amazon Macie

C. CloudTrail

D. AWS Inspector

Answer: iOS – Android (B)

Notes: Amazon Macie is a fully managed data security and data privacy service that uses machine learning and pattern matching to discover and protect your sensitive data in AWS.

Q88: Your Finance Department has instructed you to save costs wherever possible when using the AWS Cloud. You notice that using reserved EC2 instances on a 1year contract will save money. What payment method will save the most money?

A: Deferred

B: Partial Upfront

C: All Upfront

D: No Upfront

Answer: C

Notes: With the All Upfront option, you pay for the entire Reserved Instance term with one upfront payment. This option provides you with the largest discount compared to On Demand Instance pricing.

Q89: A fantasy sports company needs to run an application for the length of a football season (5 months). They will run the application on an EC2 instance and there can be no interruption. Which purchasing option best suits this use case?

A. On-Demand

B. Reserved

C. Dedicated

D. Spot

Answer: iOS – Android (A)

Notes: This is not a long enough term to make reserved instances the better option. Plus, the application can’t be interrupted, which rules out spot instances. Dedicated instances provide the option to bring along existing software licenses. 

The scenario does not indicate a need to do this.

Q90: Your company is considering migrating its data center to the cloud. What are the advantages of the AWS cloud over an on-premises data center?

A. Replace upfront operational expenses with low variable operational expenses.

B. Maintain physical access to the new data center, but share responsibility with AWS.

C. Replace low variable costs with upfront capital expenses.

D. Replace upfront capital expenses with low variable costs.

Answer: iOS – Android

Notes: All the hardware purchased upfront for a data center will be replaced by resources which are variable in nature with low upfront costs.

Q91:  You are leading a pilot program to try the AWS Cloud for one of your applications. You have been instructed to provide an estimate of your AWS bill. Which service will allow you to do this by manually entering your planned resources by service?

A. AWS CloudTrail

B. AWS Cost and Usage Report

C. AWS Pricing Calculator

D. AWS Cost Explorer

Answer: iOS – Android (C)

Notes: With the AWS Pricing Calculator, you can input the services you will use, and the configuration of those services, and get an estimate of the costs these services will accrue. AWS Pricing Calculator lets you explore AWS services, and create an estimate for the cost of your use cases on AWS.

Q92: Which AWS service would enable you to view the spending distribution in one of your AWS accounts?

A. AWS Spending Explorer

B. Billing Advisor

C. AWS Organizations

D. AWS Cost Explorer

Answer: iOS – Android

Notes: AWS Cost Explorer is a free tool that you can use to view your costs and usage. You can view data up to the last 13 months, forecast how much you are likely to spend for the next three months, and get recommendations for what Reserved Instances to purchase. You can use AWS Cost Explorer to see patterns in how much you spend on AWS resources over time, identify areas that need further inquiry, and see trends that you can use to understand your costs. You can also specify time ranges for the data, and view time data by day or by month.

Q93: You are managing the company’s AWS account. The current support plan is Basic, but you would like to begin using Infrastructure Event Management. What support plan (that already includes Infrastructure Event Management without an additional fee) should you upgrade to?

A. Upgrade to Enterprise plan.

B. Do nothing. It is included in the Basic plan.

C. Upgrade to Developer plan.

D. Upgrade to the Business plan. No other steps are necessary.

Answer: iOS – Android (A)

Notes: AWS Infrastructure Event Management is a structured program available to Enterprise support customers (and Business Support customers for an additional fee) that helps you plan for large-scale events, such as product or application launches, infrastructure migrations, and marketing events.

With Infrastructure Event Management, you get strategic planning assistance before your event, as well as real-time support during these moments that matter most for your business.

Q94: You have decided to use the AWS Cost and Usage Report to track your EC2 Reserved Instance costs. To where can these reports be published?

A. Trusted Advisor

B. An S3 Bucket that you own.

C. CloudWatch

D. An AWS owned S3 Bucket.

Answer: B

Notes: The AWS Cost and Usage Reports (AWS CUR) contains the most comprehensive set of cost and usage data available. You can use Cost and Usage Reports to publish your AWS billing reports to an Amazon Simple Storage Service (Amazon S3) bucket that you own. You can receive reports that break down your costs by the hour or day, by product or product resource, or by tags that you define yourself. AWS updates the report in your bucket once a day in comma-separated value (CSV) format. You can view the reports using spreadsheet software such as Microsoft Excel or Apache OpenOffice Calc, or access them from an application using the Amazon S3 API.

Q95: What can we do in AWS to receive the benefits of volume pricing for your multiple AWS accounts?

A. Use consolidated billing in AWS Organizations.

B. Purchase services in bulk from AWS Marketplace.

C. Use AWS Trusted Advisor

D. You will receive volume pricing by default.

Answer: iOS – Android (A)

Notes: You can use the consolidated billing feature in AWS Organizations to consolidate billing and payment for multiple AWS accounts or multiple Amazon Internet Services Pvt. Ltd (AISPL) accounts. You can combine the usage across all accounts in the organization to share the volume pricing discounts, Reserved Instance discounts, and Savings Plans. This can result in a lower charge for your project, department, or company than with individual standalone accounts.

Q96: A gaming company is using the AWS Developer Tool Suite to develop, build, and deploy their applications. Which AWS service can be used to trace user requests from end-to-end through the application?

A. AWS X-Ray

B. CloudWatch

C. AWS Inspector

D. CloudTrail

Answer: iOS – Android (A)

Notes: AWS X-Ray helps developers analyze and debug production, distributed applications, such as those built using a microservices architecture. With X-Ray, you can understand how your application and its underlying services are performing to identify and troubleshoot the root cause of performance issues and errors. X-Ray provides an end-to-end view of requests as they travel through your application, and shows a map of your application’s underlying components.

Q97: A company needs to use a Load Balancer which can serve traffic at the TCP, and UDP layers. Additionally, it needs to handle millions of requests per second at very low latencies. Which Load Balancer should they use?

A. TCP Load Balancer

B. Application Load Balancer

C. Classic Load Balancer

D. Network Load Balancer

Answer: iOS – Android

Notes: Network Load Balancer is best suited for load balancing of Transmission Control Protocol (TCP), User Datagram Protocol (UDP) and Transport Layer Security (TLS) traffic where extreme performance is required. Operating at the connection level (Layer 4), Network Load Balancer routes traffic to targets within Amazon Virtual Private Cloud (Amazon VPC) and is capable of handling millions of requests per second while maintaining ultra-low latencies.

Q98: Your company is migrating its services to the AWS cloud. The DevOps team has heard about infrastructure as code, and wants to investigate this concept. Which AWS service would they investigate?

A. AWS CloudFormation

B. AWS Lambda

C. CodeCommit

D. Elastic Beanstalk

Answer: iOS – Android (A)

Notes: AWS CloudFormation is a service that helps you model and set up your Amazon Web Services resources so that you can spend less time managing those resources and more time focusing on your applications that run in AWS.

Q99: You have a MySQL database that you want to migrate to the cloud, and you need it to be significantly faster there. You are looking for a speed increase up to 5 times the current performance. Which AWS offering could you use?

A. Elasticache

B. Amazon Aurora

C. DynamoDB

D. Amazon RDS MySQL

Answer: iOS – Android (B)

Notes: Amazon Aurora is a MySQL and PostgreSQL-compatible relational database built for the cloud, that combines the performance and availability of traditional enterprise databases with the simplicity and cost-effectiveness of open source databases. Amazon Aurora is up to five times faster than standard MySQL databases and three times faster than standard PostgreSQL databases.

Q100:A developer is trying to programmatically retrieve information from an EC2 instance such as public keys, ip address, and instance id. From where can this information be retrieved?

A. Instance metadata

B. Instance Snapshot

C. CloudWatch Logs

D. Instance userdata

Answer: iOS – Android (A)

Notes: This type of data is stored in Instance metadata. Instance userdata does not retrieve the information mentioned, but can be used to help configure a new instance.

Q101: Why is AWS more economical than traditional data centers for applications with varying compute workloads?

A) Amazon EC2 costs are billed on a monthly basis.
B) Users retain full administrative access to their Amazon EC2 instances.
C) Amazon EC2 instances can be launched on demand when needed.
D) Users can permanently run enough instances to handle peak workloads.


Answer: C
Notes: The ability to launch instances on demand when needed allows users to launch and terminate instances in response to a varying workload. This is a more economical practice than purchasing enough on-premises servers to handle the peak load.
Reference:  Advantage of cloud computing

Q102: Which AWS service would simplify the migration of a database to AWS?

A) AWS Storage Gateway
B) AWS Database Migration Service (AWS DMS)
C) Amazon EC2
D) Amazon AppStream 2.0


Answer: B
Notes: AWS DMS helps users migrate databases to AWS quickly and securely. The source database remains fully operational during the migration, minimizing downtime to applications that rely on the database. AWS DMS can migrate data to and from most widely used commercial and open-source databases.
Reference: AWS DMS 

Q103: Which AWS offering enables users to find, buy, and immediately start using software solutions in their AWS environment?

A) AWS Config
B) AWS OpsWorks
C) AWS SDK
D) AWS Marketplace


Answer: D
Notes: AWS Marketplace is a digital catalog with thousands of software listings from independent software vendors that makes it easy to find, test, buy, and deploy software that runs on AWS.
Reference: AWS Markerplace 

Q104: Which AWS networking service enables a company to create a virtual network within AWS?

A) AWS Config
B) Amazon Route 53
C) AWS Direct Connect
D) Amazon Virtual Private Cloud (Amazon VPC)


Answer: D
Notes: Amazon VPC lets users provision a logically isolated section of the AWS Cloud where users can launch AWS resources in a virtual network that they define.
Reference: VPC https://aws.amazon.com/vpc/

Q105: Which component of the AWS global infrastructure does Amazon CloudFront use to ensure low-latency delivery?

A) AWS Regions
B) Edge locations
C) Availability Zones
D) Virtual Private Cloud (VPC)


Answer: B
Notes: – To deliver content to users with lower latency, Amazon CloudFront uses a global network of points of presence (edge locations and regional edge caches) worldwide.
Reference: Cloudfront – https://aws.amazon.com/cloudfront/

Q106: How would a system administrator add an additional layer of login security to a user’s AWS Management Console?

A) Use Amazon Cloud Directory
B) Audit AWS Identity and Access Management (IAM) roles
C) Enable multi-factor authentication
D) Enable AWS CloudTrail


Answer: C
Notes: – Multi-factor authentication (MFA) is a simple best practice that adds an extra layer of protection on top of a username and password. With MFA enabled, when a user signs in to an AWS Management Console, they will be prompted for their username and password (the first factor—what they know), as well as for an authentication code from their MFA device (the second factor—what they have). Taken together, these multiple factors provide increased security for AWS account settings and resources.
Reference: MFA – https://aws.amazon.com/iam/features/mfa/

Q107: Which service can identify the user that made the API call when an Amazon EC2 instance is terminated?

A) AWS Trusted Advisor
B) AWS CloudTrail
C) AWS X-Ray
D) AWS Identity and Access Management (AWS IAM)


Answer: B
Notes: – AWS CloudTrail helps users enable governance, compliance, and operational and risk auditing of their AWS accounts. Actions taken by a user, role, or an AWS service are recorded as events in CloudTrail. Events include actions taken in the AWS Management Console, AWS Command Line Interface (CLI), and AWS SDKs and APIs.
Reference: AWS CloudTrail https://docs.aws.amazon.com/awscloudtrail/latest/userguide/cloudtrail-user-guide.html

Q108: Which service would be used to send alerts based on Amazon CloudWatch alarms?

A) Amazon Simple Notification Service (Amazon SNS)
B) AWS CloudTrail
C) AWS Trusted Advisor
D) Amazon Route 53


Answer: A
Notes: Amazon SNS and Amazon CloudWatch are integrated so users can collect, view, and analyze metrics for every active SNS. Once users have configured CloudWatch for Amazon SNS, they can gain better insight into the performance of their Amazon SNS topics, push notifications, and SMS deliveries.
Reference: CloudWatch for Amazon SNS https://docs.aws.amazon.com/sns/latest/dg/sns-monitoring-using-cloudwatch.html

Q109: Where can a user find information about prohibited actions on the AWS infrastructure?

A) AWS Trusted Advisor
B) AWS Identity and Access Management (IAM)
C) AWS Billing Console
D) AWS Acceptable Use Policy


Answer: D
Notes: – The AWS Acceptable Use Policy provides information regarding prohibited actions on the AWS infrastructure.
Reference: AWS Acceptable Use Policy – https://aws.amazon.com/aup/

Q110: Which of the following is an AWS responsibility under the AWS shared responsibility model?

A) Configuring third-party applications
B) Maintaining physical hardware
C) Securing application access and data
D) Managing guest operating systems


Answer: B
Notes: – Maintaining physical hardware is an AWS responsibility under the AWS shared responsibility model.
Reference: AWS shared responsibility model https://aws.amazon.com/compliance/shared-responsibility-model/

Q111: Which recommendations are included in the AWS Trusted Advisor checks? (Select TWO.)

A) Amazon S3 bucket permissions
B) AWS service outages for services
C) Multi-factor authentication (MFA) use on the AWS account root user
D) Available software patches for Amazon EC2 instances
Answer: A and C
Notes: Trusted Advisor checks for S3 bucket permissions in Amazon S3 with open access permissions. Bucket permissions that grant list access to everyone can result in higher than expected charges if objects in the bucket are listed by unintended users at a high frequency. Bucket permissions that grant upload and delete access to all users create potential security vulnerabilities by allowing anyone to add, modify, or remove items in a bucket. This Trusted Advisor check examines explicit bucket permissions and associated bucket policies that might override the bucket permissions. 
Trusted Advisor does not provide notifications for service outages. You can use the AWS Personal Health Dashboard to learn about AWS Health events that can affect your AWS services or account.
Trusted Advisor checks the root account and warns if MFA is not enabled.
 Trusted Advisor does not provide information about the number of users in an AWS account.
Reference:  AWS Trusted Advisor best practice checklist.

AWS CCP Exam Topics:

The AWS Cloud Practitioner exam is broken down into 4 domains

  • Cloud Concepts
  • Security and Compliance
  • Technology
  • Billing and Pricing.

AWS Certified Cloud Practitioner Exam Whitepapers:

AWS has provided whitepapers to help you understand the technical concepts. Below are the recommended whitepapers.

  • Overview of Amazon Web Services
  • Architecting for the Cloud: AWS Best Practices
  • How AWS Pricing works whitepaper.
  • The Total Cost of (Non) Ownership of Web Application in the Cloud
  • Compare AWS Support Plans

Top

Online Training and Labs for AWS Cloud Certified Practitioner Exam

  • A Cloud Guru
  • Linux Academy
  • Udemy

Top

AWS Cloud Practitioners Jobs

  • Jobs Now
  • Weworkremotely
  • StackOverflow AWS Jobs

Top

AWS Certified Cloud Practitioner Exam info and details, How To:

The AWS Certified Cloud Practitioner Exam is a multiple choice, multiple answer exam. Here is the Exam Overview:

  • Certification Name: AWS Certified Cloud Practitioner.
  • Prerequisites for the Exam: None.
  • Exam Pattern: Multiple Choice Questions
  • Number of Questions: 65
  • Duration: 90 mins
  • Exam fees: US $100
  • Exam Guide on AWS Website
  • Available languages for tests: English, Japanese, Korean, Simplified Chinese
  • Read AWS whitepapers
  • Register for certification account here.
  • Prepare for Certification Here

Top

Additional Information for reference

Below are some useful reference links that would help you to learn about AWS Practitioner Exam.

  • AWS certified cloud practitioner/
  • certification faqs
  • AWS Cloud Practitioner Certification Exam on Quora

Other Relevant and Recommended AWS Certifications

AWS Certification Exams Roadmap
AWS Certification Exams Roadmap

AWS Certified Cloud Practitioner

AWS Certified Solutions Architect – Associate

AWS Certified Solution Architect Exam Prep App: Free

AAWS Certified Developer – Associate

AWS Certified SysOps Administrator – Associate

AWS Certified Solutions Architect – Professional

AWS Certified DevOps Engineer – Professional

AWS Certified Big Data Specialty

AWS Certified Advanced Networking.

AWS Certified Security – Specialty

Other AWS Certification Exams Questions and Answers Dumps:

Top 200 AWS Certified Associate SysOps Administrator Practice Quiz – Questions and Answers Dumps

Big Data and Data Analytics 101 – Top 50 AWS Certified Data Analytics – Specialty Questions and Answers Dumps

CyberSecurity 101 and Top 25 AWS Certified Security Specialty Questions and Answers Dumps

Networking 101 and Top 20 AWS Certified Advanced Networking Specialty Questions and Answers Dumps

Top

Other AWS Facts and Summaries and Questions/Answers Dump

  • AWS S3 facts and summaries and Q&A Dump
  • AWS DynamoDB facts and summaries and Questions and Answers Dump
  • AWS EC2 facts and summaries and Questions and Answers Dump
  • AWS Serverless facts and summaries and Questions and Answers Dump
  • AWS Developer and Deployment Theory facts and summaries and Questions and Answers Dump
  • AWS IAM facts and summaries and Questions and Answers Dump
  • AWS Lambda facts and summaries and Questions and Answers Dump
  • AWS SQS facts and summaries and Questions and Answers Dump
  • AWS RDS facts and summaries and Questions and Answers Dump
  • AWS ECS facts and summaries and Questions and Answers Dump
  • AWS CloudWatch facts and summaries and Questions and Answers Dump
  • AWS SES facts and summaries and Questions and Answers Dump
  • AWS EBS facts and summaries and Questions and Answers Dump
  • AWS ELB facts and summaries and Questions and Answers Dump
  • AWS Autoscaling facts and summaries and Questions and Answers Dump
  • AWS VPC facts and summaries and Questions and Answers Dump
  • AWS KMS facts and summaries and Questions and Answers Dump
  • AWS Elastic Beanstalk facts and summaries and Questions and Answers Dump
  • AWS CodeBuild facts and summaries and Questions and Answers Dump
  • AWS CodeDeploy facts and summaries and Questions and Answers Dump
  • AWS CodePipeline facts and summaries and Questions and Answers Dump
  • Pros and Cons of Cloud Computing
  • Cloud Customer Insurance – Cloud Provider Insurance – Cyber Insurance

Below is a listing of AWS certification exam quiz apps for all platforms:

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

AWS Certified Cloud practitioner Exam Prep FREE version: CCP, CLF-C01

Online Training and Labs for AWS Certified Solution Architect Associate Exam

  • A Cloud Guru
  • Linux Academy
  • Udemy

Top

AWS Certified Solution Architect Associate Jobs

  • Jobs Now
  • Weworkremotely
  • StackOverflow AWS Jobs

AWS Certification and Training Apps for all platforms:

AWS Cloud practitioner FREE version:

AWS Certified Cloud practitioner for the web:pwa

AWS Certified Cloud practitioner Exam Prep App for iOS

AWS Certified Cloud practitioner Exam Prep App for Microsoft/Windows10

AWS Certified Cloud practitioner Exam Prep App for Android (Google Play Store)

AWS Certified Cloud practitioner Exam Prep App for Android (Amazon App Store)

AWS Certified Cloud practitioner Exam Prep App for Android (Huawei App Gallery)

AWS Solution Architect FREE version:

AWS Certified Solution Architect Associate Exam Prep App for iOS: 

Solution Architect Associate for Android Google Play

AWS Certified Solution Architect Associate Exam Prep App :Pwa

AWS Certified Solution Architect Associate Exam Prep App for Amazon android

AWS Certified Cloud practitioner Exam Prep App for Microsoft/Windows10

AWS Certified Cloud practitioner Exam Prep App for Huawei App Gallery

AWS Cloud Practitioner PRO Versions:

AWS Certified Cloud practitioner PRO Exam Prep App for iOS

AWS Certified Cloud Practitioner PRO Associate Exam Prep App for android google

AWS Certified Cloud practitioner Exam Prep App for Amazon android

AWS Certified Cloud practitioner Exam Prep App for Windows 10

AWS Certified Cloud practitioner Exam Prep PRO App for Android (Huawei App Gallery)

AWS Solution Architect PRO

AWS Certified Solution Architect Associate PRO versions for iOS

AWS Certified Solution Architect Associate PRO Exam Prep App for Android google

AWS Certified Solution Architect Associate PRO Exam Prep App for Windows10

AWS Certified Solution Architect Associate PRO Exam Prep App for Amazon android

Huawei App Gallery: Coming soon

AWS Certified Developer Associates Free version:

AWS Certified Developer Associates for Android (Google Play)

AWS Certified Developer Associates Web/PWA

AWS Certified Developer Associates for iOs

AWS Certified Developer Associates for Android (Huawei App Gallery)

AWS Certified Developer Associates for windows 10 (Microsoft App store)

Amazon App Store: Coming soon

AWS Developer Associates PRO version

PRO version with mock exam for android (Google Play)

PRO version with mock exam ios

AWS Certified Developer Associates PRO for Android (Microsoft App Store)

AWS Certified Developer Associates PRO for Android (Huawei App Gallery): Coming soon

Latest Cloud AWS Cloud Training Questions and Answers from around the Web:

Jon Bonso vs Stephane Maarek CCP Practice Exam Differences

Tutorialsdojo.com are the best in the market IMO

They have a long standing reputation for quality.

I’ve used them, I’ve recommended them to friends and family and I recommend them to students of my AWS courses also.

And last but not least, the Djamgatech Apps for iOs and and android.

Practice on the web directly here via the AWS Cloud Practitioner Exam Perp App

I would also recommend checking: Exam Digest

What is the difference between Amazon EC2 Savings Plans and Spot Instances?

Amazon EC2 Savings Plans are ideal for workloads that involve a consistent amount of compute usage over a 1-year or 3-year term.
With Amazon EC2 Savings Plans, you can reduce your compute costs by up to 72% over On-Demand costs.

Spot Instances are ideal for workloads with flexible start and end times, or that can withstand interruptions. With Spot Instances, you can reduce your compute costs by up to 90% over On-Demand costs.
Unlike Amazon EC2 Savings Plans, Spot Instances do not require contracts or a commitment to a consistent amount of compute usage.

Amazon EBS vs Amazon EFS

An Amazon EBS volume stores data in a single Availability Zone.
To attach an Amazon EC2 instance to an EBS volume, both the Amazon EC2 instance and the EBS volume must reside within the same Availability Zone.

Amazon EFS is a regional service. It stores data in and across multiple Availability Zones.
The duplicate storage enables you to access data concurrently from all the Availability Zones in the Region where a file system is located. Additionally, on-premises servers can access Amazon EFS using AWS Direct Connect.

Which cloud deployment model allows you to connect public cloud resources to on-premises infrastructure?

Applications made available through hybrid deployments connect cloud resources to on-premises infrastructure and applications. For example, you might have an application that runs in the cloud but accesses data stored in your on-premises data center.

What is the difference between Amazon EC2 Savings Plans and Spot Instances?

Amazon EC2 Savings Plans are ideal for workloads that involve a consistent amount of compute usage over a 1-year or 3-year term.
With Amazon EC2 Savings Plans, you can reduce your compute costs by up to 72% over On-Demand costs.

Spot Instances are ideal for workloads with flexible start and end times, or that can withstand interruptions. With Spot Instances, you can reduce your compute costs by up to 90% over On-Demand costs.
Unlike Amazon EC2 Savings Plans, Spot Instances do not require contracts or a commitment to a consistent amount of compute usage.

Which benefit of cloud computing helps you innovate and build faster?

Agility: The cloud gives you quick access to resources and services that help you build and deploy your applications faster.

Which developer tool allows you to write code within your web browser?

Cloud9 is an integrated development environment (IDE) that allows you to write code within your web browser.

Which method of accessing an EC2 instance requires both a private key and a public key?

SSH allows you to access an EC2 instance from your local laptop using a key pair, which consists of a private key and a public key.

Which service allows you to track the name of the user making changes in your AWS account?

CloudTrail tracks user activity and API calls in your account, which includes identity information (the user’s name, source IP address, etc.) about the API caller.

Which analytics service allows you to query data in Amazon S3 using Structured Query Language (SQL)?

Athena is a query service that makes it easy to analyze data in Amazon S3 using SQL.

Which machine learning service helps you build, train, and deploy models quickly?

SageMaker helps you build, train, and deploy machine learning models quickly.

Which EC2 storage mechanism is recommended when running a database on an EC2 instance?

EBS is a storage device you can attach to your instances and is a recommended storage option when you run databases on an instance.

Which storage service is a scalable file system that only works with Linux-based workloads?

EFS is an elastic file system for Linux-based workloads.

Djamgatech: AI Driven Certification Preparation: Azure AI, AWS Machine Learning Specialty, AWS Data Analytics, GCP ML, GCP PDE,
Djamgatech: AI Driven Certification Preparation: Azure AI, AWS Machine Learning Specialty, AWS Data Analytics, GCP ML, GCP PDE,

Which AWS service provides a secure and resizable compute platform with choice of processor, storage, networking, operating system, and purchase model?

Amazon Elastic Compute Cloud (Amazon EC2) is a web service that provides secure, resizable compute capacity in the cloud. Amazon EC2 offers the broadest and deepest compute platform with choice of processor, storage, networking, operating system, and purchase model. Amazon EC2.

Which services allow you to build hybrid environments by connecting on-premises infrastructure to AWS?

Site-to-site VPN allows you to establish a secure connection between your on-premises equipment and the VPCs in your AWS account.

Direct Connect allows you to establish a dedicated network connection between your on-premises network and AWS.

What service could you recommend to a developer to automate the software release process?

CodePipeline is a developer tool that allows you to continuously automate the software release process.

Which service allows you to practice infrastructure as code by provisioning your AWS resources via scripted templates?

CloudFormation allows you to provision your AWS resources via scripted templates.

Which machine learning service allows you to add image analysis to your applications?

Rekognition is a service that makes it easy to add image analysis to your applications.

Which services allow you to run containerized applications without having to manage servers or clusters?

Fargate removes the need for you to interact with servers or clusters as it provisions, configures, and scales clusters of virtual machines to run containers for you.

ECS lets you run your containerized Docker applications on both Amazon EC2 and AWS Fargate.

EKS lets you run your containerized Kubernetes applications on both Amazon EC2 and AWS Fargate.

Amazon S3 offers multiple storage classes. Which storage class is best for archiving data when you want the cheapest cost and don’t mind long retrieval times?

S3 Glacier Deep Archive offers the lowest cost and is used to archive data. You can retrieve objects within 12 hours.

Djamgatech App for iOS, Android, Windows: AWS CCP, AWS SAA-C02, AZ900, AZ104, GCP ACE, AWS DVA-C01, AWS DAS-C01, AWS SCS-C01, AZ AI-900, AZ303, AZ304, AZ204
Djamgatech App for iOS, Android, Windows: AWS CCP, AWS SAA-C02, AZ900, AZ104, GCP ACE, AWS DVA-C01, AWS DAS-C01, AWS SCS-C01, AZ AI-900, AZ303, AZ304, AZ204

In the shared responsibility model, what is the customer responsible for?

You are responsible for patching the guest OS, including updates and security patches.

You are responsible for firewall configuration and securing your application.

A company needs phone, email, and chat access 24 hours a day, 7 days a week. The response time must be less than 1 hour if a production system has a service interruption. Which AWS Support plan meets these requirements at the LOWEST cost?

The Business Support plan provides phone, email, and chat access 24 hours a day, 7 days a week. The Business Support plan has a response time of less than 1 hour if a production system has a service interruption.

For more information about AWS Support plans, see Compare AWS Support Plans.

Which Amazon EC2 pricing model adjusts based on supply and demand of EC2 instances?

Spot Instances are discounted more heavily when there is more capacity available in the Availability Zones.

For more information about Spot Instances, see Amazon EC2 Spot Instances.

Which of the following is an advantage of consolidated billing on AWS?

Consolidated billing is a feature of AWS Organizations. You can combine the usage across all accounts in your organization to share volume pricing discounts, Reserved Instance discounts, and Savings Plans. This solution can result in a lower charge compared to the use of individual standalone accounts.

For more information about consolidated billing, see Consolidated billing for AWS Organizations.

A company requires physical isolation of its Amazon EC2 instances from the instances of other customers. Which instance purchasing option meets this requirement?

With Dedicated Hosts, a physical server is dedicated for your use. Dedicated Hosts provide visibility and the option to control how you place your instances on an isolated, physical server. For more information about Dedicated Hosts, see Amazon EC2 Dedicated Hosts.

A company is hosting a static website from a single Amazon S3 bucket.  Which AWS service will achieve lower latency and high transfer speeds?

CloudFront is a web service that speeds up the distribution of your static and dynamic web content, such as .html, .css, .js, and image files, to your users. Content is cached in edge locations. Content that is repeatedly accessed can be served from the edge locations instead of the source S3 bucket. For more information about CloudFront, see Accelerate static website content delivery.

Which AWS service provides a simple and scalable shared file storage solution for use with Linux-based Amazon EC2 instances and on-premises servers?

Amazon EFS provides an elastic file system that lets you share file data without the need to provision and manage storage. It can be used with AWS Cloud services and on-premises resources, and is built to scale on demand to petabytes without disrupting applications. With Amazon EFS, you can grow and shrink your file systems automatically as you add and remove files, eliminating the need to provision and manage capacity to accommodate growth.

For more information about using Amazon EFS, see Walkthrough: Create and mount a file system on premises with AWS Direct Connect and VPN.

Which service allows you to generate encryption keys managed by AWS?

KMS allows you to generate and manage encryption keys. The keys generated by KMS are managed by AWS.

Which service can integrate with a Lambda function to automatically take remediation steps when it uncovers suspicious network activity when monitoring logs in your AWS account?

GuardDuty can perform automated remediation actions by leveraging Amazon CloudWatch Events and AWS Lambda. GuardDuty continuously monitors for threats and unauthorized behavior to protect your AWS accounts, workloads, and data stored in Amazon S3. GuardDuty analyzes multiple AWS data sources, such as AWS CloudTrail event logs, Amazon VPC Flow Logs, and DNS logs.

Which service allows you to create access keys for someone needing to access AWS via the command line interface (CLI)?

IAM allows you to create users and generate access keys for users needing to access AWS via the CLI.

Which service allows you to record software configuration changes within your Amazon EC2 instances over time?

Config helps with recording compliance and configuration changes over time for your AWS resources.

Which service assists with compliance and auditing by offering a downloadable report that provides the status of passwords and MFA devices in your account?

IAM provides a downloadable credential report that lists all users in your account and the status of their various credentials, including passwords, access keys, and MFA devices.

Which service allows you to locate credit card numbers stored in Amazon S3?

Macie is a data privacy service that helps you uncover and protect your sensitive data, such as personally identifiable information (PII) like credit card numbers, passport numbers, social security numbers, and more.

How do you manage permissions for multiple users at once using AWS Identity and Access Management (IAM)?

An IAM group is a collection of IAM users. When you assign an IAM policy to a group, all users in the group are granted permissions specified by the policy.

Which service protects your web application from cross-site scripting attacks?

WAF helps protect your web applications from common web attacks, like SQL injection or cross-site scripting.
 

Which AWS Trusted Advisor real-time guidance recommendations are available for AWS Basic Support and AWS Developer Support customers?

Basic and Developer Support customers get 50 service limit checks.

Basic and Developer Support customers get security checks for “Specific Ports Unrestricted” on Security Groups.

Basic and Developer Support customers get security checks on S3 Bucket Permissions.

Which service allows you to simplify billing by using a single payment method for all your accounts?

Organizations offers consolidated billing that provides 1 bill for all your AWS accounts. This also gives you access to volume discounts.

Which AWS service usage will always be free even after the 12-month free tier plan has expired?

One million Lambda requests are always free each month.

What is the easiest way for a customer on the AWS Basic Support plan to increase service limits?

The Basic Support plan allows 24/7 access to Customer Service via email and the ability to open service limit increase support cases.

Which types of issues are covered by AWS Support?

“How to” questions about AWS service and features

Problems detected by health checks

Djamgatech: AI Driven Certification Preparation: Azure AI, AWS Machine Learning Specialty, AWS Data Analytics, GCP ML, GCP PDE,
Djamgatech: AI Driven Certification Preparation: Azure AI, AWS Machine Learning Specialty, AWS Data Analytics, GCP ML, GCP PDE,

Which features of AWS reduce your total cost of ownership (TCO)?

Sharing servers with others allows you to save money.

Elastic computing allows you to trade capital expense for variable expense.

You pay only for the computing resources you use with no long-term commitments.

Which service allows you to select and deploy operating system and software patches automatically across large groups of Amazon EC2 instances?

Systems Manager allows you to automate operational tasks across your AWS resources.

Which service provides the easiest way to set up and govern a secure, multi-account AWS environment?

Control Tower allows you to centrally govern and enforce the best use of AWS services across your accounts.

Which cost management tool gives you the ability to be alerted when the actual or forecasted cost and usage exceed your desired threshold?

Budgets allow you to improve planning and cost control with flexible budgeting and forecasting. You can choose to be alerted when your budget threshold is exceeded.

Which tool allows you to compare your estimated service costs per Region?

The Pricing Calculator allows you to get an estimate for the cost of AWS services. Comparing service costs per Region is a common use case.

Who can assist with accelerating the migration of legacy contact center infrastructure to AWS?

Professional Services is a global team of experts that can help you realize your desired business outcomes with AWS.

The AWS Partner Network (APN) is a global community of partners that helps companies build successful solutions with AWS.

Which cost management tool allows you to view costs from the past 12 months, current detailed costs, and forecasts costs for up to 3 months?

Cost Explorer allows you to visualize, understand, and manage your AWS costs and usage over time.

Which service reduces the operational overhead of your IT organization?

Managed Services implements best practices to maintain your infrastructure and helps reduce your operational overhead and risk.

How do I set up Failover on Amazon AWS Route53?

In simple configurations, you create a group of records that all have the same name and type, such as a group of weighted records with a type of A for example.com. In more complex configurations, you create a tree of records that route traffic based on multiple criteria. Read more …
 
 
  • How can a program running inside AWS EC2 determine which VPC and security group an incoming IP address or TCP connection belongs to, for application-layer firewalling?

    I assume it is your subscription where the VPCs are located, otherwise you can’t really discover the information you are looking for. On the EC2 server you could use AWS CLI or Powershell based scripts that query the IP information. Based on IP you can find out what instance uses the network interface, what security groups are tied to it and in which VPC the instance is hosted. Read more here…

     

  • What are some tips, tricks and gotchas when using AWS Lambda to connect to a VPC?

    When using AWS Lambda inside your VPC, your Lambda function will be allocated private IP addresses, and only private IP addresses, from your specified subnets. This means that you must ensure that your specified subnets have enough free address space for your Lambda function to scale up to. Each simultaneous invocation needs its own IP. Read more here…

How do AWS step functions communicate with lambda functions which are in a VPC?

When a Lambda “is in a VPC”, it really means that its attached Elastic Network Interface is the customer’s VPC and not the hidden VPC that AWS manages for Lambda.

The ENI is not related to the AWS Lambda management system that does the invocation (the data plane mentioned here). The AWS Step Function system can go ahead and invoke the Lambda through the API, and the network request for that can pass through the underlying VPC and host infrastructure.

Those Lambdas in turn can invoke other Lambda directly through the API, or more commonly by decoupling them, such as through Amazon SQS used as a trigger. Read more ….

How do I invoke an AWS Lambda function programmatically?

public InvokeResult invoke(InvokeRequest request)

Invokes a Lambda function. You can invoke a function synchronously (and wait for the response), or asynchronously. To invoke a function asynchronously, set InvocationType to Event.

For synchronous invocation, details about the function response, including errors, are included in the response body and headers. For either invocation type, you can find more information in the execution log and trace.

When an error occurs, your function may be invoked multiple times. Retry behavior varies by error type, client, event source, and invocation type. For example, if you invoke a function asynchronously and it returns an error, Lambda executes the function up to two more times. For more information, see Retry Behavior.

For asynchronous invocation, Lambda adds events to a queue before sending them to your function. If your function does not have enough capacity to keep up with the queue, events may be lost. Occasionally, your function may receive the same event multiple times, even if no error occurs. To retain events that were not processed, configure your function with a dead-letter queue.

The status code in the API response doesn’t reflect function errors. Error codes are reserved for errors that prevent your function from executing, such as permissions errors, limit errors, or issues with your function’s code and configuration. For example, Lambda returns TooManyRequestsException if executing the function would cause you to exceed a concurrency limit at either the account level ( Concurrent Invocation Limit Exceeded) or function level ( Reserved Function Concurrent Invocation LimitExceeded).

For functions with a long timeout, your client might be disconnected during synchronous invocation while it waits for a response. Configure your HTTP client, SDK, firewall, proxy, or operating system to allow for long connections with timeout or keep-alive settings.

This operation requires permission for the lambda:InvokeFunction action. Read more…

How bad would it be to configure one AWS VPC for all my environments (dev, stg, prod) while creating 2 subnets (priv, pub) for each environment?  It depends highly on the budget. However, for my systems I always set different environments up in different VPCs. Why? Because they’re guaranteed to be isolated from one another, and VPCs are very easy to create and manage if you’ve automated. The flip side is you do pay a bit more for edge services like NAT Gateway and ALB, since you’ll have at least one per VPC.

 

What are the differences between default and non-default AWS VPCs?

Default VPC

  1. 1 per region
  2. a set VPC CIDR range … you can’t changed it
  3. has everything configured by default .. 1 subnet per AZ, an internet gateway, routes and subnets set to allocate IPv4 by default.

Custom VPCs

  1. As any as you want per region (within limits)
  2. Customisable CIDR range
  3. Customisable subnet structure
  4. Nothing configured by default, you have to configure everything

Read more here…

 

 

What would be the effect if IPv4 stopped working suddenly, and only IPv6 was left standing?

if IPv4 stopped working, and IPv6 remained functional, through some magical means that prevented IPv4 from being fixed, there would be a few days of pandemonium while non-dual-stack networks and legacy IPv4-only networks flailed mightily, and then a whole bunch of IPv6-skilled network engineers would make a shit-ton of money in a short period of time going from ill-prepared network to ill-prepared network, one at a time, rolling out IPv6 across their infrastructure as quickly as possible. Read more here….

 
Why is the subnet mask important in determining the network address?

The subnet mask determines how many bits of the network address are relevant (and thus indirectly the size of the network block in terms of how many host addresses are available) –

192.0.2.0, subnet mask 255.255.255.0 means that 192.0.2 is the significant portion of the network number, and that there 8 bits left for host addresses (i.e. 192.0.2.0 thru 192.0.2.255)

192.0.2.0, subnet mask 255.255.255.128 means that 192.0.2.0 is the significant portion of the network number (first three octets and the most significant bit of the last octet), and that there 7 bits left for host addresses (i.e. 192.0.2.0 thru 192.0.2.127)

When in doubt, envision the network number and subnet mask in base 2 (i.e. binary) and it will become much clearer. Read more here…

 

What are some best practices securing my Amazon Virtual Private Cloud (VPC)?

IAM is the new perimeter.

Separate out the roles needed to do each job. (Assuming this is a corporate environment)

Have a role for EC2, another for Networking, another for IAM.

Everyone should not be admin. Everyone should not be able to add/remove IGW’s, NAT gateways, alter security groups and NACLS, or setup peering connections.

Also, another thing… lock down full internet access. Limit to what is needed and that’s it. Read more here….

How can we setup AWS public-private subnet in VPC without NAT server?

Within a single VPC, the subnets’ route tables need to point to each other. This will already work without additional routes because VPC sets up the local target to point to the VPC subnet.

Security groups are not used here since they are attached to instances, and not networks.

See: Amazon Virtual Private Cloud

The NAT EC2 instance (server), or AWS-provided NAT gateway is necessary only if the private subnet internal addresses need to make outbound connections. The NAT will translate the private subnet internal addresses to the public subnet internal addresses, and the AWS VPC Internet Gateway will translate these to external IP addresses, which can then go out to the Internet. Read more here ….

What are the applications (or workloads) that cannot be migrated on to cloud (AWS or Azure or GCP)?

A good example of workloads that currently are not in public clouds are mobile and fixed core telecom networks for tier 1 service providers. This is despite the fact that these core networks are increasingly software based and have largely been decoupled from the hardware. There are a number of reasons for this such as the public cloud providers such as Azure and AWS do not offer the guaranteed availability required by telecom networks. These networks require 99.999% availability and is typically referred to as telecom grade.

The regulatory environment frequently restricts hosting of subscriber data outside the of the operators data centers or in another country and key network functions such as lawful interception cannot contractually be hosted off-prem. Read more here….

How many CIDRs can we add to my own created VPC?

You can add up to 5 IPv4 CIDR blocks, or 1 IPv6 block per VPC. You can further segment the network by utilizing up to 200 subnets per VPC. Amazon VPC Limits. Read more …

Why can’t a subnet’s CIDR be changed once it has been assigned?

Sure it can, but you’ll need to coordinate with the neighbors. You can merge two /25’s into a single /24 quite effortlessly if you control the entire range it covers. In practice you’ll see many tiny allocations in public IPv4 space, like /29’s and even smaller. Those are all assigned to different people. If you want to do a big shuffle there, you have a lot of coordinating to do.. or accept the fallout from the breakage you cause. Read more…

Can one VPC talk to another VPC?

Yes, but a Virtual Private Cloud is usually built for the express purpose of being isolated from unwanted external traffic. I can think of several good reasons to encourage that sort of communication, so the idea is not without merit. Read more..
 

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

What questions to expect in cloud support engineer deployment roles at AWS? 

Cloud Support Engineer (CSE) is a role which requires the following abilities:

  • Wide range of technical skills
  • Good communication and time management
  • Good knowledge about the AWS services, and how to leverage them to solve simple to complex problems.

As your question is related to the deployment Pod, you will probably be asked about deployment methods (A/B testing like blue-green deployment) as well as pipelining strategies. You might be asked during this interview to reason about a simple task and to code it (like parsing a log file). Also review the TCP/IP stack in-depth as well as the tools to troubleshoot it for the networking round. You will eventually have some Linux questions, the range of questions can vary from common CLI tools to Linux internals like signals / syscalls / file descriptors and so on.

Last but not least the Leadership principles, I can only suggest you to prepare a story for each of them. You will quickly find what LP they are looking for and would be able to give the right signal to your interviewer.

Finally, remember that theres a debrief after the (usually 5) stages of your on site interview, and more senior and convincing interviewers tend to defend their vote so don’t screw up with them.

Be natural, focus on the question details and ask for confirmation, be cool but not too much. At the end of the day, remember that your job will be to understand customer issues and provide a solution, so treat your interviewers as if they were customers and they will see a successful CSE in you, be reassured and give you the job. 

Expect questions on cloudformations, Teraform, Aws ec2/rds and stack related questions.

Its a high tech call center. You are expected to take calls, chats of customers and give them technical advice. You will not be doing any of the cool stuff you did earlier (if you are coming from engineering job or DBA). You will surely gain a very good knowledge of multiple AWS services and the one that you will be hired in, however most of the knowledge will be theoretical and nothing practical in day-to-day life.

It also depends on the support team you are being hired for. Networking or compute teams (Ec2) have different interview patterns vs database or big data support.

In any case, basics of OS, networking are critical to the interview. If you have a phone screen, we will be looking for basic/semi advance skills of these and your speciality. For example if you mention Oracle in your resume and you are interviewing for the database team, expect a flurry of those questions.

Other important aspect is the Amazon leadership principles. Half of your interview is based on LPs. If you fail to have scenarios where you do not demonstrate our LPs, you cannot expect to work here even though your technical skills are above average (Having extraordinary skills is a different thing).

The overall interview itself will have 1 phone screen if you are interviewing in the US and 1–2 if outside US. The onsite loop will be 4 rounds , 2 of which are technical (again divided into OS and networking and the specific speciality of the team you are interviewing for ) and 2 of them are leadership principles where we test your soft skills and management skills as they are very important in this job. You need to have a strong view point, disagree if it seems valid to do so, empathy and be a team player while showing the ability to pull off things individually as well. These skills will be critical for cracking LP interviews.

You will NOT be asked to code or write queries as its not part of the job, so you can concentrate on the theoretical part of the subject and also your resume. We will grill you on topics mentioned on your resume to start with.

Traditional monolithic architectures are hard to scale: TRUE

Monolithic architecture is something that build from single piece of material, historically from rock. Monolith term normally use for object made from single large piece of material.” – Non-Technical Definition. “Monolithic application has single code base with multiple modules.

Large Monolithic code-base (often spaghetti code) puts immense cognitive complexity on the developer’s head. As a result, the development velocity is poor. Granular scaling (i.e., scaling part of the application) is not possible. Polyglot programming or polyglot database is challenging.

Drawbacks of Monolithic Architecture

This simple approach has a limitation in size and complexity. Application is too large and complex to fully understand and made changes fast and correctly. The size of the application can slow down the start-up time. You must redeploy the entire application on each update.

18. Sticky Sessions help increase your application’s scability: FALSE

Sticky sessions, also known as session affinity, allow you to route a site user to the particular web server that is managing that individual user’s session. The session’s validity can be determined by a number of methods, including a client-side cookies or via configurable duration parameters that can be set at the load balancer which routes requests to the web servers.

Some advantages with utilizing sticky sessions are that it’s cost effective due to the fact you are storing sessions on the same web servers running your applications and that retrieval of those sessions is generally fast because it eliminates network latency. A drawback for using storing sessions on an individual node is that in the event of a failure, you are likely to lose the sessions that were resident on the failed node. In addition, in the event the number of your web servers change, for example a scale-up scenario, it’s possible that the traffic may be unequally spread across the web servers as active sessions may exist on particular servers. If not mitigated properly, this can hinder the scalability of your applications. Read more here … 

AWS recommends replicating across Availability Zones for resiliency: TRUE

If you need to replicate your data or applications in an AWS Local Zone, AWS recommends that you use one of the following zones as the failover zone:

  • Another Local Zone

  • An Availability Zone in the Region that is not the parent zone. You can use the describe-availability-zones command to view the parent zone.

For more information about AWS Regions and Availability Zones, see AWS Global Infrastructure.

What are the benefits of AWS Cloud Computing?

  • Trade Capital expenses for variable expenses
  • Increase speed and agility
  • Benefit from massive economies at scale
  • Stop spending money on running and maintaining data centers
  • Stop guessing capacity
  • Go global in minutes

What is the default behavior for an EC2 instance when terminated?

After you terminate an instance, it remains visible in the console for a short while, and then the entry is automatically deleted. You cannot delete the terminated instance entry yourself. After an instance is terminated, resources such as tags and volumes are gradually disassociated from the instance, therefore may no longer be visible on the terminated instance after a short while.

When an instance terminates, the data on any instance store volumes associated with that instance is deleted.

By default, Amazon EBS root device volumes are automatically deleted when the instance terminates. However, by default, any additional EBS volumes that you attach at launch, or any EBS volumes that you attach to an existing instance persist even after the instance terminates. This behavior is controlled by the volume’s DeleteOnTermination attribute, which you can modify

For more information, please visit: Terminate Your Instance

How do Amazon EC2 EBS burst credits work?

The documentation on General Purpose SSD (gp2) EBS volumes can be found at this page: New SSD-Backed Elastic Block Storage 

When you first launch an instance with gp2 volumes attached, you get an initial burst credit allowing for up to 30 minutes of 3,000 iops/sec.

After the first 30 minutes, your volume will accrue credits as follows (taken directly from AWS documentation):

Within the General Purpose (SSD) implementation is a Token Bucket model that works as follows

  • Each token represents an “I/O credit” that pays for one read or one write.
  • A bucket is associated with each General Purpose (SSD) volume, and can hold up to 5.4 million tokens.
  • Tokens accumulate at a rate of 3 per configured GB per second, up to the capacity of the bucket.
  • Tokens can be spent at up to 3000 per second per volume.
  • The baseline performance of the volume is equal to the rate at which tokens are accumulated — 3 IOPS per GB per second.

In addition to this, gp2 volumes provide baseline performance of 3 iops per Gb, up to 1Tb (3000 iops). Volumes larger than 1Tb no longer work on the credit system, as they already provide a baseline of 3000 iops. Gp2 volumes have a cap of 10,000 iops regardless of the volume size (so the iops max out for volumes larger than 3.3Tb)

Is elastic IP service free if we associate it with any VM (EC2 server)?

Elastic IP addresses are free when you have them assigned to an instance, feel free to use one! Elastic IPs get disassociated when you stop an instance, so you will get charged in the mean time. The benefit is that you get to keep that IP allocated to your account though, instead of losing it like any other. Once you start the instance you just re-associate it back and you have your old IP again.

Here are the changes associated with the use of Elastic IP addresses

No cost for Elastic IP addresses while in use

* $0.01 per non-attached Elastic IP address per complete hour

* $0.00 per Elastic IP address remap – first 100 remaps / month

* $0.10 per Elastic IP address remap – additional remap / month over 100

If you require any additional information about pricing please reference the link below

Amazon EC2 Pricing – Amazon Web Services

The other cost are as outlined in the paragraph you have quoted.

How do I reduce my AWS EC2 cost? My AWS EC2 expenditure comprises 80% of my AWS bill.

The short answer to reducing your AWS EC2 costs – turn off your instances when you don’t need them.

Your AWS bill is just like any other utility bill, you get charged for however much you used that month. Don’t make the mistake of leaving your instances on 24/7 if you’re only using them during certain days and times (ex. Monday – Friday, 9 to 5).

To automatically start and stop your instances, AWS offers an “EC2 scheduler” solution. A better option would be a cloud cost management tool that not only stops and starts your instances automatically, but also tracks your usage and makes sizing recommendations to optimize your cloud costs and maximize your time and savings.

You could potentially save money using Reserved Instances. But, in non-production environments such as dev, test, QA, and training, Reserved Instances are not your best bet. Why is this the case? These environments are less predictable; you may not know how many instances you need and when you will need them, so it’s better to not waste spend on these usage charges. Instead, schedule such instances (preferably using ParkMyCloud). Scheduling instances to be only up 12 hours per day on weekdays will save you 65% – better than all but the most restrictive 3-year RIs!

You can also save money with:

  • Spot Instances
  • AWS Dedicated Hosts & Dedicated Instances
  • Auto Scaling Groups
  • Rightsizing

What is the difference between an Instance, AMI and Snaphots in AWS? What are they used for?

Well AWS is a web service provider which offers a set of services related to compute, storage, database, network and more to help the business scale and grow

All your concerns are related to AWS EC2 instance, so let me start with an instance

Instance:

  • An EC2 instance is similar to a server where you can host your websites or applications to make it available Globally
  • It is highly scalable and works on the pay-as-you-go model
  • You can increase or decrease the capacity of these instances as per the requirement

AMI:

  • AMI provides the information required to launch the EC2 instance
  • AMI includes the pre-configured templates of the operating system that runs on the AWS
  • Users can launch multiple instances with the same configuration from a single AMI

Snapshot:

  • Snapshots are the incremental backups for the Amazon EBS
  • Data in the EBS are stored in S3 by taking point-to-time snapshots
  • Unique data are only deleted when a snapshot is deleted
  • Multiple EBS can be created using these snapshots

What are the main differences between a VPNs, VPS and VPC?

They are definitely all chalk and cheese to one another.

A VPN (Virtual Private Network) is essentially an encrypted “channel” connecting two networks, or a machine to a network, generally over the public internet.

A VPS (Virtual Private Server) is a rented virtual machine running on someone else’s hardware. AWS EC2 can be thought of as a VPS, but the term is usually used to describe low-cost products offered by lots of other hosting companies.

A VPC (Virtual Private Cloud) is a virtual network in AWS (Amazon Web Services). It can be divided into private and public subnets, have custom routing rules, have internal connections to other VPCs, etc. EC2 instances and other resources are placed in VPCs similarly to how physical data centers have operated for a very long time.

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

What is the use of elastic IP in AWS?

Elastic IP address is basically the static IP (IPv4) address that you can allocate to your resources.

Now, in case that you allocate IP to the resource (and the resource is running), you are not charged anything. On the other hand, if you create Elastic IP, but you do not allocate it to the resource (or the resource is not running), then you are charged some amount (should be around $0.005 per hour if I remember correctly)

Additional info about these:

You are limited to 5 Elastic IP addresses per region. If you require more than that, you can contact AWS support with a request for additional addresses. You need to have a good reason in order to be approved because IPv4 addresses are becoming a scarce resource.

In general, you should be good without Elastic IPs for most of the use-cases (as every EC2 instance has its own public IP, and you can use load balancers, as well as map most of the resources via Route 53).

One of the use-cases that I’ve seen where my client is using Elastic IP is to make it easier for him to access specific EC2 instance via RDP, as well as do deployment through Visual Studio, as he targets the Elastic IP, and thus does not have to watch for any changes in public IP (in case of stopping or rebooting).

Why would you choose not to use AWS Transit Gateway instead of VPC peering?

At this time, AWS Transit Gateway does not support inter region attachments. The transit gateway and the attached VPCs must be in the same region. VPC peering supports inter region peering.

Difference between AWS Workspace and AWS Ec2 VM?

  • The EC2 instance is server instance whilst a Workspace is windows desktop instance
  • Both Windows Server and Windows workstation editions have desktops. Windows Server Core doesn’t not (and AWS doesn’t have an AMI for Windows Server Core that I could find).

  • It is possible to SSH into a Windows instance – this is done on port 22. You would not see a desktop when using SSH if you had enabled it. It is not enabled by default.

  • If you are seeing a desktop, I believe you’re “RDPing” to the Windows instance. This is done with the RDP protocol on port 3389.

  • Two different protocols and two different ports.
  • Workspaces doesn’t allow terminal or ssh services by default. You need to use Workspace client. You still can enable RDP or/and SSH but this is not recommended.
  • Workspaces is a managed desktop service. AWS is taking care of pre-build AMIs, software licenses, joining to domain, scaling etc.
  • What is Amazon EC2? Scalable, pay-as-you-go compute capacity in the cloud. Amazon Elastic Compute Cloud (Amazon EC2) is a web service that provides resizable compute capacity in the cloud. It is designed to make web-scale computing easier for developers.
  • What is Amazon WorkSpaces? Easily provision cloud-based desktops that allow end-users to access applications and resources. With a few clicks in the AWS Management Console, customers can provision a high-quality desktop experience for any number of users at a cost that is highly competitive with traditional desktops and half the cost of most virtual desktop infrastructure (VDI) solutions. End-users can access the documents, applications and resources they need with the device of their choice, including laptops, iPad, Kindle Fire, or Android tablets.
  • Amazon EC2 can be classified as a tool in the “Cloud Hosting” category, while Amazon WorkSpaces is grouped under “Virtual Desktop”.
  • Some of the features offered by Amazon EC2 are:

    • Elastic – Amazon EC2 enables you to increase or decrease capacity within minutes, not hours or days. You can commission one, hundreds or even thousands of server instances simultaneously.
    • Completely Controlled – You have complete control of your instances. You have root access to each one, and you can interact with them as you would any machine.
    • Flexible – You have the choice of multiple instance types, operating systems, and software packages. Amazon EC2 allows you to select a configuration of memory, CPU, instance storage, and the boot partition size that is optimal for your choice of operating system and application.

    On the other hand, Amazon WorkSpaces provides the following key features:

    • Support Multiple Devices- Users can access their Amazon WorkSpaces using their choice of device, such as a laptop computer (Mac OS or Windows), iPad, Kindle Fire, or Android tablet.
    • Keep Your Data Secure and Available- Amazon WorkSpaces provides each user with access to persistent storage in the AWS cloud. When users access their desktops using Amazon WorkSpaces, you control whether your corporate data is stored on multiple client devices, helping you keep your data secure.
    • Choose the Hardware and Software you need- Amazon WorkSpaces offers a choice of bundles providing different amounts of CPU, memory, and storage so you can match your Amazon WorkSpaces to your requirements. Amazon WorkSpaces offers preinstalled applications (including Microsoft Office) or you can bring your own licensed software.

Amazon EBS vs Amazon EFS

An Amazon EBS volume stores data in a single Availability Zone.
To attach an Amazon EC2 instance to an EBS volume, both the Amazon EC2 instance and the EBS volume must reside within the same Availability Zone.

Amazon EFS is a regional service. It stores data in and across multiple Availability Zones.
The duplicate storage enables you to access data concurrently from all the Availability Zones in the Region where a file system is located. Additionally, on-premises servers can access Amazon EFS using AWS Direct Connect.

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

AWS Cloud Practitioner CCP CLF-C01 Certification Exam Prep
AWS Cloud Practitioner CCP CLF-C01 Certification Exam Prep

AWS Services Cheat Sheet:

Comp­ute

Cate­goryServ­iceDesc­rip­tion
Inst­ances (Virtual machin­es)EC2Provides secure, resizable compute capacity in the cloud. It makes web-scale cloud computing easier for develo­pers. EC2
 EC2 SpotRun fault-­tol­erant workloads for up to 90% off. EC2Spot
 EC2 Autosc­alingAutoma­tically add or remove compute capacity to meet changes in demand. EC2_AustoScaling
 LightsailDesigned to be the easiest way to launch & manage a virtual private server with AWS. An easy-t­o-use cloud platform that offers everything need to build an applic­ation or website. Lightsail
 BatchEnables develo­pers, scient­ists, & engineers to easily & effici­ently run hundreds of thousands of batch computing jobs on AWS. Fully managed batch processing at any scale. Batch
Cont­ain­ersElastic Container Service (ECS)Highly secure, reliable, & scalable way to run contai­ners. ECS
 Elastic Container Registry (ECR)Easily store, manage, & deploy container images. ECR
 Elastic Kubernetes Service (EKS)Fully managed Kubernetes service. EKS
 FargateServerless compute for contai­ners. Fargate
Serv­erl­essLambdaRun code without thinking about servers. Pay only for the compute time you consume. Lamda
Edge and hybridOutpostsRun AWS infras­tru­cture & services on premises for a truly consistent hybrid experi­ence. Outposts
 Snow FamilyCollect and process data in rugged or discon­nected edge enviro­nments. SnowFamily
 WavelengthDeliver ultra-low latency applic­ation for 5G devices. Wavelenth
 VMware Cloud on AWSInnovate faster, rapidly transition to the cloud, & work securely from any location. VMware_On_AWS
 Local ZonesRun latency sensitive applic­ations closer to end-users. LocalZones


Netw­orking and Content Delivery

Use casesFunc­tio­nal­ityServ­iceDesc­rip­tion
Build a cloud networkDefine and provision a logically isolated network for your AWS resourcesVPCVPC lets you provision a logically isolated section of the AWS Cloud where you can launch AWS resources in a virtual network that you define. VPC
 Connect VPCs and on-pre­mises networks through a central hubTransit GatewayTransit Gateway connects VPCs & on-pre­mises networks through a central hub. This simplifies network & puts an end to complex peering relati­ons­hips. TransitGateway
 Provide private connec­tivity between VPCs, services, and on-pre­mises applic­ationsPrivat­eLinkPrivat­eLink provides private connec­tivity between VPCs & services hosted on AWS or on-pre­mises, securely on the Amazon network. PrivateLink
 Route users to Internet applic­ations with a managed DNS serviceRoute 53Route 53 is a highly available & scalable cloud DNS web service. Route53
Scale your network designAutoma­tically distribute traffic across a pool of resources, such as instances, contai­ners, IP addresses, and Lambda functionsElastic Load BalancingElastic Load Balancing automa­tically distri­butes incoming applic­ation traffic across multiple targets, such as EC2’s, contai­ners, IP addresses, & Lambda functions. ElasticLoadBalancing
 Direct traffic through the AWS Global network to improve global applic­ation perfor­manceGlobal Accele­ratorGlobal Accele­rator is a networking service that sends user’s traffic through AWS’s global network infras­tru­cture, improving internet user perfor­mance by up to 60%. GlobalAccelerator
Secure your network trafficSafeguard applic­ations running on AWS against DDoS attacksShieldShield is a managed Distri­buted Denial of Service (DDoS) protection service that safeguards applic­ations running on AWS. Shield
 Protect your web applic­ations from common web exploitsWAFWAF is a web applic­ation firewall that helps protect your web applic­ations or APIs against common web exploits that may affect availa­bility, compromise security, or consume excessive resources. WAF
 Centrally configure and manage firewall rulesFirewall ManagerFirewall Manager is a security management service which allows to centrally configure & manage firewall rules across accounts & apps in AWS Organi­zation. link text
Build a hybrid IT networkConnect your users to AWS or on-pre­mises resources using a Virtual Private Network(VPN) – ClientVPN solutions establish secure connec­tions between on-pre­mises networks, remote offices, client devices, & the AWS global network. VPN
 Create an encrypted connection between your network and your Amazon VPCs or AWS Transit Gateways(VPN) – Site to SiteSite-t­o-Site VPN creates a secure connection between data center or branch office & AWS cloud resources. site_to_site
 Establish a private, dedicated connection between AWS and your datace­nter, office, or colocation enviro­nmentDirect ConnectDirect Connect is a cloud service solution that makes it easy to establish a dedicated network connection from your premises to AWS. DirectConnect
Content delivery networksSecurely deliver data, videos, applic­ations, and APIs to customers globally with low latency, and high transfer speedsCloudFrontCloudFront expedites distri­bution of static & dynamic web content. CloudFront
Build a network for micros­ervices archit­ect­uresProvide applic­ati­on-­level networking for containers and micros­ervicesApp MeshApp Mesh makes it accessible to guide & control micros­ervices operating on AWS. AppMesh
 Create, maintain, and secure APIs at any scaleAPI GatewayAPI Gateway allows the user to design & expand their own REST and WebSocket APIs at any scale. APIGateway
 Discover AWS services connected to your applic­ationsCloud MapCloud Map permits the name & handles the cloud resources. CloudMap

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

Storage

Serv­iceDesc­rip­tion
AWS S3S3 is the storehouse for the internet i.e. object storage built to store & retrieve any amount of data from anywhere S3
AWS BackupAWS Backup is an extern­all­y-a­cce­ssible backup provider that makes it easier to align & optimize the backup of data across AWS services in the cloud. AWS_Backup
Amazon EBSAmazon Elastic Block Store is a web service that provides block-­level storage volumes. EBS
Amazon EFS StorageEFS offers file storage for the user’s Amazon EC2 instances. It’s kind of blob Storage. EFS
Amazon FSxFSx supply fully managed 3rd-party file systems with the native compat­ibility & charac­ter­istic sets for workloads. It’s available as FSx for Windows server (Fully managed file storage built on Windows Server) & Lustre (Fully managed high-p­erf­ormance file system integrated with S3). FSx_Windows FSx_Lustre
AWS Storage GatewayStorage Gateway is a service which connects an on-pre­mises software appliance with cloud-­based storage. Storage_Gateway
AWS DataSyncDataSync makes it simple & fast to move large amounts of data online between on-pre­mises storage & S3, EFS, or FSx for Windows File Server. DataSync
AWS Transfer FamilyThe Transfer Family provides fully managed support for file transfers directly into & out of S3. Transfer_Family
AWS Snow FamilyHighly­-se­cure, portable devices to collect & process data at the edge, and migrate data into and out of AWS. Snow_Family

Clas­sif­ica­tion:
Object storage: S3
File storage servic­es: Elastic File System, FSx for Windows Servers & FSx for Lustre
Block storage: EBS
Back­up: AWS Backup
Data transf­er:
Storage gateway –> 3 types: Tape, File, Volume.
Transfer Family –> SFTP, FTPS, FTP.
Edge computing and storage and Snow Family –> Snowcone, Snowball, Snowmobile

Data­bases

Database typeUse casesServ­iceDesc­rip­tion
Rela­tio­nalTradit­ional applic­ations, ERP, CRM, e-commerceAurora, RDS, RedshiftRDS is a web service that makes it easier to set up, control, and scale a relational database in the cloud. Aurora RDS Redshift
Key-­valueHigh-t­raffic web apps, e-commerce systems, gaming applic­ationsDynamoDBDynamoDB is a fully admini­stered NoSQL database service that offers quick and reliable perfor­mance with integrated scalab­ility. DynamoDB
In-m­emoryCaching, session manage­ment, gaming leader­boards, geospatial applic­ationsElasti­Cache for Memcached & RedisElasti­Cache helps in setting up, managing, and scaling in-memory cache condit­ions. Memcached Redis
Docu­mentContent manage­ment, catalogs, user profilesDocumentDBDocumentDB (with MongoDB compat­ibi­lity) is a quick, depend­able, and fully-­managed database service that makes it easy for you to set up, operate, and scale MongoD­B-c­omp­atible databases.DocumentDB
Wide columnHigh scale industrial apps for equipment mainte­nance, fleet manage­ment, and route optimi­zationKeyspaces (for Apache Cassandra)Keyspaces is a scalable, highly available, and managed Apache Cassan­dra­–co­mpa­tible database service. Keyspaces
GraphFraud detection, social networ­king, recomm­end­ation enginesNeptuneNeptune is a fast, reliable, fully managed graph database service that makes it easy to build and run applic­ations that work with highly connected datasets. Neptune
Time seriesIoT applic­ations, DevOps, industrial telemetryTimestreamTimestream is a fast, scalable, and serverless time series database service for IoT and operat­ional applic­ations that makes it easy to store and analyze trillions of events per day. Timestream
LedgerSystems of record, supply chain, regist­rat­ions, banking transa­ctionsQuantum Ledger Database (QLDB)QLDB is a fully managed ledger database that provides a transp­arent, immutable, and crypto­gra­phi­cally verifiable transa­ction log ‎owned by a central trusted authority. QLDB

Deve­loper Tools

Serv­iceDesc­rip­tion
Cloud9Cloud9 is a cloud-­based IDE that enables the user to write, run, and debug code. Cloud9
CodeAr­tifactCodeAr­tifact is a fully managed artifact repository service that makes it easy for organi­zations of any size to securely store, publish, & share software packages used in their software develo­pment process. CodeArtifact
CodeBuildCodeBuild is a fully managed service that assembles source code, runs unit tests, & also generates artefacts ready to deploy. CodeBuild
CodeGuruCodeGuru is a developer tool powered by machine learning that provides intell­igent recomm­end­ations for improving code quality & identi­fying an applic­ation’s most expensive lines of code. CodeGuru
Cloud Develo­pment KitCloud Develo­pment Kit (AWS CDK) is an open source software develo­pment framework to define cloud applic­ation resources using familiar progra­mming languages. CDK
CodeCommitCodeCommit is a version control service that enables the user to personally store & manage Git archives in the AWS cloud. CodeCommit
CodeDeployCodeDeploy is a fully managed deployment service that automates software deploy­ments to a variety of compute services such as EC2, Fargate, Lambda, & on-pre­mises servers. CodeDeploy
CodePi­pelineCodePi­peline is a fully managed continuous delivery service that helps automate release pipelines for fast & reliable app & infra updates. CodePipeline
CodeStarCodeStar enables to quickly develop, build, & deploy applic­ations on AWS. CodeStar
CLIAWS CLI is a unified tool to manage AWS services & control multiple services from the command line & automate them through scripts. CLI
X-RayX-Ray helps developers analyze & debug produc­tion, distri­buted applic­ations, such as those built using a micros­ervices archit­ecture. X-Ray

Migration & Transfer services

Serv­iceDesc­rip­tion
Migration EvaluatorBuild a data-d­riven business case for AWS. ME
Migration HubMigration Hub provides a single location to track the progress of app migrations across multiple AWS & partner solutions. MigrationHub
Applic­ation Discovery ServiceApplic­ation Discovery Service helps enterprise customers plan migration projects by gathering inform­ation about their on-pre­mises data centers. ADS
Server Migration Service (SMS)SMS is an agentless service which makes it easier & faster to migrate thousands of on-pre­mises workloads to AWS. SMS
Database Migration Service (DMS)DMS helps migrate databases to AWS quickly & securely. DMS
CloudE­ndure MigrationCloudE­ndure Migration simpli­fies, expedites, & reduces the cost of cloud migration by offering a highly automated lift-&-shift solution. CloudEndure
VMware Cloud on AWSRefer compute section.
DataSyncRefer storage section.
Transfer FamilyRefer storage section.
Snow FamilyRefer storage section.

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

SDKs & Toolkits

Serv­iceDesc­rip­tion
CDKCDK uses the famili­arity & expressive power of progra­mming languages for modeling apps. CDK
CorrettoCorretto is a no-cost, multip­lat­form, produc­tio­n-ready distri­bution of the OpenJDK. Corretto
Crypto ToolsCrypto­graphy is hard to do safely & correctly. The AWS Crypto Tools libraries are designed to help everyone do crypto­graphy right, even without special expertise. Crypto Tools
Serverless Applic­ation Model (SAM)SAM is an open-s­ource framework for building serverless applic­ations. It provides shorthand syntax to express functions, APIs, databases, & event source mappings. SAM
Tools for developing and managing applic­ations on AWS

Security, Identity, & Compliance

Cate­goryUse casesServ­iceDesc­rip­tion
Identity & access manage­mentSecurely manage access to services and resourcesIdentity & Access Management (IAM)IAM is a web service for safely contro­lling access to AWS services. IAM
 Securely manage access to services and resourcesSingle Sign-OnSSO helps in simpli­fying, managing SSO access to AWS accounts & business applic­ations. SSO
 Identity management for appsCognitoCognito lets you add user sign-up, sign-in, & access control to web & mobile apps quickly and easily. Cognito
 Managed Microsoft Active DirectoryDirectory ServiceAWS Managed Microsoft Active Directory (AD) enables your direct­ory­-aware workloads & AWS resources to use managed Active Directory (AD) in AWS. DirectoryService
 Simple, secure service to share AWS resourcesResource Access ManagerResource Access Manager (RAM) is a service that enables you to easily & securely share AWS resources with any AWS account or within AWS Organi­zation. RAM
 Central governance and management across AWS accountsOrgani­zationsOrgani­zations helps you centrally govern your enviro­nment as you grow and scale your workloads on AWS. Orgs
Dete­ctionUnified security and compliance centerSecurity HubSecurity Hub gives a compre­hensive view of security alerts & security posture across AWS accounts. SecurityHub
 Managed threat detection serviceGuardDutyGuardDuty is a threat detection service that contin­uously monitors for malicious activity & unauth­orized behavior to protect AWS accounts, workloads, & data stored in S3. GuardDuty
 Analyze applic­ation securityInspectorInspector is a security vulner­ability assessment service improves the security & compliance of the AWS resources. Inspector
 Record and evaluate config­ura­tions of your AWS resourcesConfigConfig is a service that enables to assess, audit, & evaluate the config­ura­tions of AWS resources. Config
 Track user activity and API usageCloudTrailCloudTrail is a service that enables govern­ance, compli­ance, operat­ional auditing, & risk auditing of AWS account. CloudTrail
 Security management for IoT devicesIoT Device DefenderIoT Device Defender is a fully managed service that helps secure fleet of IoT devices. IoTDD
Infr­ast­ructure protec­tionDDoS protectionShieldShield is a managed DDoS protection service that safeguards apps running. It provides always-on detection & automatic inline mitiga­tions that minimize applic­ation downtime & latency. Shield
 Filter malicious web trafficWeb Applic­ation Firewall (WAF)WAF is a web applic­ation firewall that helps protect web apps or APIs against common web exploits that may affect availa­bility, compromise security, or consume excessive resources. WAF
 Central management of firewall rulesFirewall ManagerFirewall Manager eases the user AWS WAF admini­str­ation & mainte­nance activities over multiple accounts & resources. FirewallManager
Data protec­tionDiscover and protect your sensitive data at scaleMacieMacie is a fully managed data (security & privacy) service that uses ML & pattern matching to discover & protect sensitive data. Macie
 Key storage and managementKey Management Service (KMS)KMS makes it easy for to create & manage crypto­graphic keys & control their use across a wide range of AWS services & in your applic­ations. KMS
 Hardware based key storage for regulatory complianceCloudHSMCloudHSM is a cloud-­based hardware security module (HSM) that enables you to easily generate & use your own encryption keys. CloudHSM
 Provision, manage, and deploy public and private SSL/TLS certif­icatesCertif­icate ManagerCertif­icate Manager is a service that easily provision, manage, & deploy public and private SSL/TLS certs for use with AWS services & internal connected resources. ACM
 Rotate, manage, and retrieve secretsSecrets ManagerSecrets Manager assist the user to safely encode, store, & recover creden­tials for any user’s database & other services. SecretsManager
Incident responseInvest­igate potential security issuesDetectiveDetective makes it easy to analyze, invest­igate, & quickly identify the root cause of potential security issues or suspicious activi­ties. Detective
 Fast, automated, cost- effective disaster recoveryCloudE­ndure Disaster RecoveryProvides scalable, cost-e­ffe­ctive business continuity for physical, virtual, & cloud servers. CloudEndure
Comp­lia­nceNo cost, self-s­ervice portal for on-demand access to AWS’ compliance reportsArtifactArtifact is a web service that enables the user to download AWS security & compliance records. Artifact

Data Lakes & Analytics

Cate­goryUse casesServ­iceDesc­rip­tion
Anal­yticsIntera­ctive analyticsAthenaAthena is an intera­ctive query service that makes it easy to analyze data in S3 using standard SQL. Athena
 Big data processingEMREMR is the indust­ry-­leading cloud big data platform for processing vast amounts of data using open source tools such as Apache Spark, Hive, HBase,­Flink, Hudi, & Presto. EMR
 Data wareho­usingRedshiftThe most popular & fastest cloud data warehouse. Redshift
 Real-time analyticsKinesisKinesis makes it easy to collect, process, & analyze real-time, streaming data so one can get timely insights. Kinesis
 Operat­ional analyticsElasti­csearch ServiceElasti­csearch Service is a fully managed service that makes it easy to deploy, secure, & run Elasti­csearch cost effect­ively at scale. ES
 Dashboards & visual­iza­tionsQuicksightQuickSight is a fast, cloud-­powered business intell­igence service that makes it easy to deliver insights to everyone in organi­zation. QuickSight
Data movementReal-time data movement1) Amazon Managed Streaming for Apache Kafka (MSK) 2) Kinesis Data Streams 3) Kinesis Data Firehose 4) Kinesis Data Analytics 5) Kinesis Video Streams 6) GlueMSK is a fully managed service that makes it easy to build & run applic­ations that use Apache Kafka to process streaming data. MSK KDS KDF KDA KVS Glue
Data lakeObject storage1) S3 2) Lake FormationLake Formation is a service that makes it easy to set up a secure data lake in days. A data lake is a centra­lized, curated, & secured repository that stores all data, both in its original form & prepared for analysis. S3 LakeFormation
 Backup & archive1) S3 Glacier 2) BackupS3 Glacier & S3 Glacier Deep Archive are a secure, durable, & extremely low-cost S3 cloud storage classes for data archiving & long-term backup. S3Glacier
 Data catalog1) Glue 2)) Lake FormationRefer as above.
 Third-­party dataData ExchangeData Exchange makes it easy to find, subscribe to, & use third-­party data in the cloud. DataExchange
Pred­ictive analytics && machine learningFrameworks & interfacesDeep Learning AMIsDeep Learning AMIs provide machine learning practi­tioners & resear­chers with the infras­tru­cture & tools to accelerate deep learning in the cloud, at any scale. DeepLearningAMIs
 Platform servicesSageMakerSageMaker is a fully managed service that provides every developer & data scientist with the ability to build, train, & deploy machine learning (ML) models quickly. SageMaker

Containers

Use casesServ­iceDesc­rip­tion
Store, encrypt, and manage container imagesECRRefer compute section
Run contai­nerized applic­ations or build micros­ervicesECSRefer compute section
Manage containers with KubernetesEKSRefer compute section
Run containers without managing serversFargateFargate is a serverless compute engine for containers that works with both ECS & EKS. Fargate
Run containers with server­-level controlEC2Refer compute section
Contai­nerize and migrate existing applic­ationsApp2Co­ntainerApp2Co­ntainer (A2C) is a comman­d-line tool for modern­izing .NET & Java applic­ations into contai­nerized applic­ations. App2Container
Quickly launch and manage contai­nerized applic­ationsCopilotCopilot is a command line interface (CLI) that enables customers to quickly launch & easily manage contai­nerized applic­ations on AWS. Copilot

Serverless

Cate­goryServ­iceDesc­rip­tion
Comp­uteLambdaLambda lets you run code without provis­ioning or managing servers. You pay only for the compute time you consume.
 Lambda@EdgeLambda­@Edge is a feature of Amazon CloudFront that lets you run code closer to users of your applic­ation, which improves perfor­mance & reduces latency.
 FargateRefer containers section
Stor­ageS3Refer storage section
 EFSRefer storage section
Data storesDynamoDBDynamoDB is a key-value & document database that delivers single­-digit millis­econd perfor­mance at any scale.
 Aurora ServerlessAurora Serverless is an on-demand, auto-s­caling config­uration for Amazon Aurora (MySQL & Postgr­eSQ­L-c­omp­atible editions), where the database will automa­tically start up, shut down, & scale capacity up or down based on your applic­ation’s needs.
 RDS ProxyRDS Proxy is a fully managed, highly available database proxy for RDS that makes applic­ations more scalable, resilient to database failures, & more secure.
API ProxyAPI GatewayAPI Gateway is a fully managed service that makes it easy for developers to create, publish, maintain, monitor, & secure APIs at any scale.
Appl­ication integr­ationSNSSNS is a fully managed messaging service for both system­-to­-system & app-to­-person (A2P) commun­ica­tion.
 SQSSQS is a fully managed message queuing service that enables to decouple & scale micros­erv­ices, distri­buted systems, & serverless applic­ations.
 AppSyncAppSync is a fully managed service that makes it easy to develop GraphQL APIs by handling the heavy lifting of securely connecting to data sources like AWS DynamoDB, Lambda.
 EventBridgeEventB­ridge is a serverless event bus that makes it easy to connect applic­ations together using data from apps, integrated SaaS apps, & AWS services.
Orch­est­rat­ionStep FunctionsStep Functions is a serverless function orches­trator that makes it easy to sequence Lambda functions & multiple AWS services into busine­ss-­cri­tical applic­ations.
Anal­yticsKinesisKinesis makes it easy to collect, process, & analyze real-time, streaming data so one can get timely insights.
 AthenaAthena is an intera­ctive query service that makes it easy to analyze data in Amazon S3 using standard SQL.

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

Applic­ation Integr­ation

Cate­goryServ­iceDesc­rip­tion
Mess­agingSNSReliable high throughput pub/sub, SMS, email, and mobile push notifi­cations
 SQSMessage queue that sends, stores, and receives messages between applic­ation components at any volume
 MQMessage broker for Apache ActiveMQ that makes migration easy and enables hybrid archit­ectures
Work­flowsStep FunctionsCoordinate multiple AWS services into serverless workflows so you can build and update apps quickly
API manage­mentAPI GatewayCreate, publish, maintain, monitor, & secure APIs at any scale for serverless workloads & web apps
 AppSyncCreate a flexible API to securely access, manipu­late, & combine data from one or more data sources
Event busEventBridgeBuild an event-­driven archit­ecture that connects applic­ation data from your own apps, SaaS, & AWS services
 AppFlowAutomate the flow of data between SaaS applic­ations & AWS services at nearly any scale, without code.


AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

Management & Governance Services

Cate­goryServ­iceDesc­rip­tion
EnableControl TowerThe easiest way to set up and govern a new, secure multi-­account AWS enviro­nment. ControlTower
 Organi­zationsOrgani­zations helps centrally govern enviro­nment as you grow & scale workloads on AWS Organizations
 Well-A­rch­itected ToolWell-A­rch­itected Tool helps review the state of workloads & compares them to the latest AWS archit­ectural best practices. WATool
 BudgetsBudgets allows to set custom budgets to track cost & usage from the simplest to the most complex use cases. Budgets
 License ManagerLicense Manager makes it easier to manage software licenses from software vendors such as Microsoft, SAP, Oracle, & IBM across AWS & on-pre­mises enviro­nments. LicenseManager
Prov­isionCloudF­orm­ationCloudF­orm­ation enables the user to design & provision AWS infras­tru­cture deploy­ments predic­tably & repeat­edly. CloudFormation
 Service CatalogService Catalog allows organi­zations to create & manage catalogs of IT services that are approved for use on AWS. ServiceCatalog
 OpsWorksOpsWorks presents a simple and flexible way to create and maintain stacks and applic­ations. OpsWorks
 Market­placeMarket­place is a digital catalog with thousands of software listings from indepe­ndent software vendors that make it easy to find, test, buy, & deploy software that runs on AWS. Marketplace
Oper­ateCloudWatchCloudWatch offers a reliable, scalable, & flexible monitoring solution that can easily start. CloudWatch
 CloudTrailCloudTrail is a service that enables govern­ance, compli­ance, operat­ional auditing, & risk auditing of AWS account. CloudTrail
 ConfigConfig
 Systems ManagerSystems Manager to plan, proctor, & automate admini­str­ation tasks on the AWS resources. SystemsManager
 Cost & usage reportRefer cost management section
 Cost explorerRefer cost management section
 Managed ServicesOperate your AWS infras­tru­cture on your behalf. ManagedServices
 X RayX-Ray

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

AWS Recommended security best practices

Turn on multif­actor authen­tic­ation for the “root” account
Turn on CloudTrail log file valida­tion.
Enable CloudTrail multi-­region logging.
Integrate CloudTrail with CloudW­atch.
Enable access logging for CloudTrail S3 buckets.
Enable access logging for Elastic Load Balancer (ELB).
Enable Redshift audit logging.
Enable Virtual Private Cloud (VPC) flow logging.
Require multif­actor authen­tic­ation (MFA) to delete CloudTrail buckets
Enable CloudTrail logging across all AWS.
Turn on multi-­factor authen­tic­ation for IAM users.
Enable IAM users for multi-mode access.
Attach IAM policies to groups or roles
Rotate IAM access keys regularly, and standa­rdize on the selected number of days
Set up a strict password policy.
Set the password expiration period to 90 days and prevent reuseC­ustomer Visual­force pages with standard headers
Don’t use expired SSL/TLS certif­icates
User HTTPS for CloudFront distri­butions
Restrict access to CloudTrail bucket.
Encrypt CloudTrail log files at rest
Encrypt Elastic Block Store (EBS) database.
Provision access to resources using IAM roles.
Ensure EC2 security groups don’t have large ranges of ports open
Configure EC2 security groups to restrict inbound access to EC2.
Avoid using root user accounts.
Use secure SSL ciphers when connecting between the client and ELB.
Use secure SSL versions when connecting between client and ELB.
Use a standard naming (tagging) convention for EC2.
Encrypt RDS.
Ensure access keys are not being used with root accounts.
Use secure CloudFront SSL versions.
Enable the requir­e_ssl parameter in all Redshift clusters.
Rotate SSH keys period­ically.
Minimize the number of discrete security groups.
Reduce number of IAM groups.
Terminate unused access keys
Disable access for inactive or unused IAM users
Remove unused IAM access keys
Delete unused SSH Public Keys
Restrict access to AMIs.
Restrict access to EC2 security groups.
Restrict access to RDS instances.
Restrict access to Redshift clusters.
Restrict outbound access.
Disallow unrest­ricted ingress access on uncommon ports.
Restrict access to well-known ports such as CIFS, FTP, ICMP, SMTP, SSH, Remote desktop
Inventory & categorize all existing custom apps by the types of data stored, compliance requir­ements & possible threats they face.
Involve IT security throughout the develo­pment process.
Grant the fewest privileges as possible for applic­ation users
Enforce a single set of data loss prevention policies across custom applic­ations and all other cloud services.
Encrypt highly sensitive data such as protected health inform­ation (PHI) or personally identi­fiable inform­ation (PII).

AWS RE:INVENT 2021 – LATEST PRODUCTS AND SERVICES ANNOUNCED:

1- Read For Me

Read For Me launched at the 2021 AWS re:Invent Builders’ Fair in Las Vegas. A web application which helps the visually impaired ‘hear documents. With the help of AI services such as Amazon Textract, Amazon Comprehend, Amazon Translate and Amazon Polly utilizing an event-driven architecture and serverless technology, users upload a picture of a document, or anything with text, and within a few seconds “hear” that document in their chosen language.

AWS read for me

2- Delivering code and architectures through AWS Proton and Git

Infrastructure operators are looking for ways to centrally define and manage the architecture of their services, while developers need to find a way to quickly and safely deploy their code. In this session, learn how to use AWS Proton to define architectural templates and make them available to development teams in a collaborative manner. Also, learn how to enable development teams to customize their templates so that they fit the needs of their services.

3- Accelerate front-end web and mobile development with AWS Amplify

User-facing web and mobile applications are the primary touchpoint between organizations and their customers. To meet the ever-rising bar for customer experience, developers must deliver high-quality apps with both foundational and differentiating features. AWS Amplify helps front-end web and mobile developers build faster front to back. In this session, review Amplify’s core capabilities like authentication, data, and file storage and explore new capabilities, such as Amplify Geo and extensibility features for easier app customization with AWS services and better integration with existing deployment pipelines. Also learn how customers have been successful using Amplify to innovate in their businesses.

3- Train ML models at scale with Amazon SageMaker, featuring Aurora

Today, AWS customers use Amazon SageMaker to train and tune millions of machine learning (ML) models with billions of parameters. In this session, learn about advanced SageMaker capabilities that can help you manage large-scale model training and tuning, such as distributed training, automatic model tuning, optimizations for deep learning algorithms, debugging, profiling, and model checkpointing, so that even the largest ML models can be trained in record time for the lowest cost. Then, hear from Aurora, a self-driving vehicle technology company, on how they use SageMaker training capabilities to train large perception models for autonomous driving using massive amounts of images, video, and 3D point cloud data.

AWS RE:INVENT 2020 – LATEST PRODUCTS AND SERVICES ANNOUNCED:

1-Modernize log analytics with Amazon Elasticsearch Service

Amazon Elasticsearch Service is uniquely positioned to handle log analytics workloads. With a multitude of open-source and AWS-native service options, users can assemble effective log data ingestion pipelines and couple these with Amazon Elasticsearch Service to build a robust, cost-effective log analytics solution. This session reviews patterns and frameworks leveraged by companies such as Capital One to build an end-to-end log analytics solution using Amazon Elasticsearch Service.
 
2-Achieve compliance as code using AWS Config
Many companies in regulated industries have achieved compliance requirements using AWS Config. They also need a record of the incidents generated by AWS Config in tools such as ServiceNow for audits and remediation. In this session, learn how you can achieve compliance as code using AWS Config. Through the creation of a noncompliant Amazon EC2 machine, this demo shows how AWS Config triggers an incident into a governance, risk, and compliance system for audit recording and remediation. The session also covers best practices for how to automate the setup process with AWS CloudFormation to support many teams.
 
3- Cost-optimize your enterprise workloads with Amazon EBS – Compute

Recent times have underscored the need to enable agility while maintaining the lowest total cost of ownership (TCO). In this session, learn about the latest volume types that further optimize your performance and cost, while enabling you to run newer applications on AWS with high availability. Dive deep into the latest AWS volume launches and cost-optimization strategies for workloads such as databases, virtual desktop infrastructure, and low-latency interactive applications.
4- Amazon Location Service: Enable apps with location features
Location data is a vital ingredient in today’s applications, enabling use cases from asset tracking to geomarketing. Now, developers can use the new Amazon Location Service to add maps, tracking, places, geocoding, and geofences to applications, easily, securely, and affordably. Join this session to see how to get started with the service and integrate high-quality location data from geospatial data providers Esri and HERE. Learn how to move from experimentation to production quickly with location capabilities. This session can help developers who require simple location data and those building sophisticated asset tracking, customer engagement, fleet management, and delivery applications.
 
5- Automate, track, and manage tasks with Amazon Connect Tasks
In this session, learn how Amazon Connect Tasks makes it easy for you to prioritize, assign, and track all the tasks that agents need to complete, including work in external applications needed to resolve customer issues (such as emails, cases, and social posts). Tasks provides a single place for agents to be assigned calls, chats, and tasks, ensuring agents are focused on the highest-priority work. Also, learn how you can also use Tasks with Amazon Connect’s workflow capabilities to automate task-related actions that don’t require agent interaction. Come see how you can use Amazon Connect Tasks to increase customer satisfaction while improving agent productivity.
6- Solve customer issues quickly with Amazon Connect Wisdom
New agent-assist capabilities from Amazon Connect Wisdom make it easier and faster for agents to find the information they need to solve customer issues in real time. In this session, see how agents can use simple ML-powered search to find information stored across knowledge bases, wikis, and FAQs, like Salesforce and ServiceNow. Join the session to hear Traeger Pellet Grills discuss how it’s using these new features, along with Contact Lens for Amazon Connect, to deliver real-time recommendations to agents based on issues automatically detected during calls.
 
 

7- Introducing Amazon Managed Service for Grafana:

Grafana is a popular, open-source data visualization tool that enables you to centrally query and analyze observability data across multiple data sources. Learn how the new Amazon Managed Service for Grafana, announced with Grafana’s parent company Grafana Labs, solves common observability challenges. With the new fully managed service, you can monitor, analyze, and alarm on metrics, logs, and traces while offloading the operational management of security patching, upgrading, and resource scaling to AWS. This session also covers new Grafana capabilities such as advanced security features and native AWS service integrations to simplify configuration and onboarding of data sources.
 
8- Introducing Amazon Managed Service for Prometheus (AMP)

Prometheus is a popular open-source monitoring and alerting solution optimized for container environments. Customers love Prometheus for its active open-source community and flexible query language, using it to monitor containers across AWS and on-premises environments. Amazon Managed Service for Prometheus is a fully managed Prometheus-compatible monitoring service. In this session, learn how you can use the same open-source Prometheus data model, existing instrumentation, and query language to monitor performance with improved scalability, availability, and security without having to manage the underlying infrastructure.

9-Announcing AWS IoT Core for LoRaWAN
Today, enterprises use low-power, long-range wide-area network (LoRaWAN) connectivity to transmit data over long ranges, through walls and floors of buildings, and in commercial and industrial use cases. However, this requires companies to operate their own LoRa network server (LNS). In this session, learn how you can use LoRaWAN for AWS IoT Core to avoid time-consuming and undifferentiated development work, operational overhead of managing infrastructure, or commitment to costly subscription-based pricing from third-party service providers.
 

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

 
10-AWS CloudShell: The fastest way to get started with AWS CLI

AWS CloudShell is a free, browser-based shell available from the AWS console that provides a simple way to interact with AWS resources through the AWS command-line interface (CLI). In this session, see an overview of both AWS CloudShell and the AWS CLI, which when used together are the fastest and easiest ways to automate tasks, write scripts, and explore new AWS services. Also, see a demo of both services and how to quickly and easily get started with each.

11- Introducing AWS IoT SiteWise Edge
Industrial organizations use AWS IoT SiteWise to liberate their industrial equipment data in order to make data-driven decisions. Now with AWS IoT SiteWise Edge, you can collect, organize, process, and monitor your equipment data on premises before sending it to local or AWS Cloud destinations—all while using the same asset models, APIs, and functionality. Learn how you can extend the capabilities of AWS IoT SiteWise to the edge with AWS IoT SiteWise Edge.
 

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

12-AWS Fault Injection Simulator: Fully managed chaos engineering service

AWS Fault Injection Simulator is a fully managed chaos engineering service that helps you improve application resiliency by making it easy and safe to perform controlled chaos engineering experiments on AWS. In this session, see an overview of chaos engineering and AWS Fault Injection Simulator, and then see a demo of how to use AWS Fault Injection Simulator to make applications more resilient to failure.
 
13- Data lakes: Easily build, secure, and share with AWS Lake Formation
Organizations are breaking down data silos and building petabyte-scale data lakes on AWS to democratize access to thousands of end users. Since its launch, AWS Lake Formation has accelerated data lake adoption by making it easy to build and secure data lakes. In this session, AWS Lake Formation GM Mehul A. Shah showcases recent innovations enabling modern data lake use cases. He also introduces a new capability of AWS Lake Formation that enables fine-grained, row-level security and near-real-time analytics in data lakes.
 
14- Understand ML model predictions and biases with Amazon SageMaker Clarify
Machine learning (ML) models may generate predictions that are not fair, whether because of biased data, a model that contains bias, or bias that emerges over time as real-world conditions change. Likewise, closed-box ML models are opaque, making it difficult to explain to internal stakeholders, auditors, external regulators, and customers alike why models make predictions both overall and for individual inferences. In this session, learn how Amazon SageMaker Clarify is providing built-in tools to detect bias across the ML workflow including during data prep, after training, and over time in your deployed model.
 
15- Run Spark on Kubernetes with Amazon EMR on Amazon EKS
Amazon EMR on Amazon EKS introduces a new deployment option in Amazon EMR that allows you to run open-source big data frameworks on Amazon EKS. This session digs into the technical details of Amazon EMR on Amazon EKS, helps you understand benefits for customers using Amazon EMR or running open-source Spark on Amazon EKS, and discusses performance considerations.
 
16- Proactively monitor the health of your business using Amazon Lookout for Metrics
Finding unexpected anomalies in metrics can be challenging. Some organizations look for data that falls outside of arbitrary ranges; if the range is too narrow, they miss important alerts, and if it is too broad, they receive too many false alerts. In this session, learn about Amazon Lookout for Metrics, a fully managed anomaly detection service that is powered by machine learning and over 20 years of anomaly detection expertise at Amazon to quickly help organizations detect anomalies and understand what caused them. This session guides you through setting up your own solution to monitor for anomalies and showcases how to deliver notifications via various integrations with the service.
 

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

 
17- Improve application availability with ML-powered insights using Amazon DevOps Guru
As applications become increasingly distributed and complex, developers and IT operations teams need more automated practices to maintain application availability and reduce the time and effort spent detecting, debugging, and resolving operational issues manually. In this session, discover Amazon DevOps Guru, an ML-powered cloud operations service, informed by years of Amazon.com and AWS operational excellence, that provides an easy and automated way to improve an application’s operational performance and availability. See how you can transform your IT operations and reduce mean time to recovery (MTTR) with contextual insights.
 
18- ML-powered voice authentication with Amazon Connect Voice ID
Amazon Connect Voice ID provides real-time caller authentication that makes voice interactions in contact centers more secure and efficient. Voice ID uses machine learning to verify the identity of genuine customers by analyzing a caller’s unique voice characteristics. This allows contact centers to use an additional security layer that doesn’t rely on the caller answering multiple security questions, and it makes it easy to enroll and verify customers without disrupting the natural flow of the conversation. Join this session to see how fast and secure ML-based voice authentication can power your contact center.
 
19- Introducing EC2 G4ad instances for graphics-intensive apps
G4ad instances feature the latest AMD Radeon Pro V520 GPUs and second-generation AMD EPYC processors. These new instances deliver the best price performance in Amazon EC2 for graphics-intensive applications such as virtual workstations, game streaming, and graphics rendering. This session dives deep into these instances, ideal use cases, and performance benchmarks, and it provides a demo.
 

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

 
20- An introduction to Amazon ECS Anywhere
new capability that enables deployment of Amazon ECS tasks on customer-managed infrastructure. This session covers the evolution of Amazon ECS over time, including new on-premises capabilities to manage your hybrid footprint using a common fully managed control plane and API. You learn some foundational technical details and important tenets that AWS is using to design these capabilities, and the session ends with a short demo of Amazon ECS Anywhere.
 
21- Amazon Aurora Serverless v2: Instant scaling for demanding workloads
Amazon Aurora Serverless is an on-demand, auto scaling configuration of Amazon Aurora that automatically adjusts database capacity based on application demand. With Amazon Aurora Serverless v2, you can now scale database workloads instantly from hundreds to hundreds of thousands of transactions per second and adjust capacity in fine-grained increments to provide just the right amount of database resources. This session dives deep into Aurora Serverless v2 and shows how it can help you operate even the most demanding database workloads worry-free.
 
22- Bringing AWS benefits to all Apple developers with EC2 Mac instances
Apple delights its customers with stunning devices like iPhones, iPads, MacBooks, Apple Watches, and Apple TVs, and developers want to create applications that run on iOS, macOS, iPadOS, tvOS, watchOS, and Safari. In this session, learn how Amazon is innovating to improve the development experience for Apple applications. Come learn how AWS now enables you to develop, build, test, and sign Apple applications with the flexibility, scalability, reliability, and cost benefits of Amazon EC2.
 
23- Enable predictive maintenance for your industrial equipment: Amazon Monitron 
When industrial equipment breaks down, this means costly downtime. To avoid this, you perform maintenance at regular intervals, which is inefficient and increases your maintenance costs. Predictive maintenance allows you to plan the required repair at an optimal time before a breakdown occurs. However, predictive maintenance solutions can be challenging and costly to implement given the high costs and complexity of sensors and infrastructure. You also have to deal with the challenges of interpreting sensor data and accurately detecting faults in order to send alerts. Come learn how Amazon Monitron helps you solve these challenges by offering an out-of-the-box, end-to-end, cost-effective system.
 
24- Introduction to AQUA for Amazon Redshift 
As data grows, we need innovative approaches to get insight from all the information at scale and speed. AQUA is a new hardware-accelerated cache that uses purpose-built analytics processors to deliver up to 10 times better query performance than other cloud data warehouses by automatically boosting certain types of queries. It’s available in preview on Amazon Redshift RA3 nodes in select regions at no extra cost and without any code changes. Attend this session to understand how AQUA works and which analytic workloads will benefit the most from AQUA.
 
25- Amazon Lookout for Vision
Figuring out if a part has been manufactured correctly, or if machine part is damaged, is vitally important. Making this determination usually requires people to inspect objects, which can be slow and error-prone. Some companies have applied automated image analysis—machine vision—to detect anomalies. While useful, these systems can be very difficult and expensive to maintain. In this session, learn how Amazon Lookout for Vision can automate visual inspection across your production lines in few days. Get started in minutes, and perform visual inspection and identify product defects using as few as 30 images, with no machine learning (ML) expertise required.
 
26- AWS Proton: Automating infrastructure provisioning & code deployments
AWS Proton is a new service that enables infrastructure operators to create and manage common container-based and serverless application stacks and automate provisioning and code deployments through a self-service interface for their developers. Learn how infrastructure teams can empower their developers to use serverless and container technologies without them first having to learn, configure, and maintain the underlying resources.
 
27- Introducing Babelfish for Aurora PostgreSQL
Migrating applications from SQL Server to an open-source compatible database can be time-consuming and resource-intensive. Solutions such as the AWS Database Migration Service (AWS DMS) automate data and database schema migration, but there is often more work to do to migrate application code. This session introduces Babelfish for Aurora PostgreSQL, a new translation layer for Amazon Aurora PostgreSQL that enables Amazon Aurora to understand commands from applications designed to run on Microsoft SQL Server. Learn how Babelfish for Aurora PostgreSQL works to reduce the time, risk, and effort of migrating Microsoft SQL Server-based applications to Aurora, and see some of the capabilities that make this possible.
 
 
 
28- Make sense of health data with Amazon HealthLake
Over the past decade, we’ve witnessed a digital transformation in healthcare, with organizations capturing huge volumes of patient information. But this data is often unstructured and difficult to extract, with information trapped in clinical notes, insurance claims, recorded conversations, and more. In this session, explore how the new Amazon HealthLake service removes the heavy lifting of organizing, indexing, and structuring patient information to provide a complete view of each patient’s health record in the FHIR standard format. Come learn how to use prebuilt machine learning models to analyze and understand relationships in the data, identify trends, and make predictions, ultimately delivering better care for patients.
 

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

 
29- Introducing Amazon QuickSight Q: Ask questions on data & get answers in seconds
When business users want to ask new data questions that are not answered by existing business intelligence (BI) dashboards, they rely on BI teams to create or update data models and dashboards, which can take several weeks to complete. In this session, learn how Merlin lets users simply enter their questions on the Merlin search bar and get answers in seconds. Merlin uses natural language processing and semantic data understanding to make sense of the data. It extracts business terminologies and intent from users’ questions, retrieves the corresponding data from the source, and returns the answer in the form of a number, chart, or table in Amazon QuickSight.
 
30- Amazon ECR Public: Share, discover, deploy, and monetize container apps easily
When developers publish images publicly for anyone to find and use—whether for free or under license—they must make copies of common images and upload them to public websites and registries that do not offer the same availability commitment as Amazon ECR. This session explores a new Amazon public registry, Amazon ECR Public, built with AWS experience operating Amazon ECR. Here, developers can share georeplicated container software worldwide for anyone to discover and download. Developers can quickly publish public container images with a single command. Learn how anyone can browse and pull container software for use in their own applications.
 
31- Detect abnormal equipment behavior by analyzing sensor data
Industrial companies are constantly working to avoid unplanned downtime due to equipment failure and to improve operational efficiency. Over the years, they have invested in physical sensors, data connectivity, data storage, and dashboarding to monitor equipment and get real-time alerts. Current data analytics methods include single-variable thresholds and physics-based modeling approaches, which are not effective at detecting certain failure types and operating conditions. In this session, learn how Amazon Lookout for Equipment uses data from your sensors to detect abnormal equipment behavior so that you can take action before machine failures occur and avoid unplanned downtime.
 
32- Real-time ML analytics with Contact Lens for Amazon Connect
In this session, learn how Contact Lens for Amazon Connect enables your contact center supervisors to understand the sentiment of customer conversations, identify call drivers, evaluate compliance with company guidelines, and analyze trends. This can help supervisors train agents, replicate successful interactions, and identify crucial company and product feedback. Your supervisors can conduct fast full-text search on all transcripts to quickly troubleshoot customer issues. With real-time capabilities, you can get alerted to issues during live customer calls and deliver proactive assistance to agents while calls are in progress, improving customer satisfaction. Join this session to see how real-time ML-powered analytics can power your contact center.
 
33- Introducing 15 new Local Zones for ultra-low latency compute across the US
AWS Local Zones places compute, storage, database, and other select services closer to locations where no AWS Region exists today. Last year, AWS launched the first two Local Zones in Los Angeles, and organizations are using Local Zones to deliver applications requiring ultra-low-latency compute. AWS is launching Local Zones in 15 metro areas to extend access across the contiguous US. In this session, learn how you can run latency-sensitive portions of applications local to end users and resources in a specific geography, delivering single-digit millisecond latency for use cases such as media and entertainment content creation, real-time gaming, reservoir simulations, electronic design automation, and machine learning.
 
34- Personalized service with Amazon Connect Customer Profiles
Your customers expect a fast, frictionless, and personalized customer service experience. In this session, learn about Amazon Connect Customer Profiles—a new unified customer profile capability to allow agents to provide more personalized service during a call. Customer Profiles automatically brings together customer information from multiple applications, such as Salesforce, Marketo, Zendesk, ServiceNow, and Amazon Connect contact history, into a unified customer profile. With Customer Profiles, agents have the information they need, when they need it, directly in their agent application, resulting in improved customer satisfaction and reduced call resolution times (by up to 15%).
 
35- Accelerate data preparation with Amazon SageMaker Data Wrangler
Preparing training data can be tedious. Amazon SageMaker Data Wrangler provides a faster, visual way to aggregate and prepare data for machine learning. In this session, learn how to use SageMaker Data Wrangler to connect to data sources and use prebuilt visualization templates and built-in data transforms to streamline the process of cleaning, verifying, and exploring data without having to write a single line of code. See a demonstration of how SageMaker Data Wrangler  can be used to perform simple tasks as well as more advanced use cases. Finally, see how you can take your data preparation workflows into production with a single click.
 

Increase availability with AWS observability solutions

To provide access to critical resources when needed and also limit the potential financial impact of an application outage, a highly available application design is critical. In this session, learn how you can use Amazon CloudWatch and AWS X-Ray to increase the availability of your applications. Join this session to learn how AWS observability solutions can help you proactively detect, efficiently investigate, and quickly resolve operational issues. All of which help you manage and improve your application’s availability.

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

Securing your Amazon EKS applications: Best practices

Security is critical for your Kubernetes-based applications. Join this session to learn about the security features and best practices for Amazon EKS. This session covers encryption and other configurations and policies to keep your containers safe.

 
Andy Jassy Keynote: Live from Seattle, Andy Jassy takes the stage to share his insights and the latest news about AWS customers, products, and services.
 
AWS Partner Keynote
Don’t miss the AWS Partner Keynote with Doug Yeum, head of Global Partner Organization; Sandy Carter, vice president, Global Public Sector Partners and Programs; and Dave McCann, vice president, AWS Migration, Marketplace, and Control Services, to learn how AWS is helping partners modernize their businesses to help their customers transform.
 
Machine Learning Keynote
Join Swami Sivasubramanian for the first-ever Machine Learning Keynote, live at re:Invent. Hear how AWS is freeing builders to innovate on machine learning with the latest developments in AWS machine learning, demos of new technology, and insights from customers.
 
Infrastructure Keynote
Join Peter DeSantis, senior vice president of Global Infrastructure and Customer Support, to learn how AWS has optimized its cloud infrastructure to run some of the world’s most demanding womath.ceilrkloads and give your business a competitive edge.
 
Werner Vogels Keynote – Watch First

Join Dr. Werner Vogels at 8:00AM (PST) as he goes behind the scenes to show how Amazon is solving today’s hardest technology problems. Based on his experience working with some of the largest and most successful applications in the world, Dr. Vogels shares his insights on building truly resilient architectures and what that means for the future of software development.

The evolution of cloud architecture
Cloud architecture has evolved over the years as the nature of adoption has changed and the level of maturity in our thinking continues to develop. In this session, Rudy Valdez, VP of Solutions Architecture and Training & Certification, walks
 
Increasing innovation with serverless applications
Organizations around the world are minimizing operations and maximizing agility by developing with serverless building blocks. Join David Richardson, VP of Serverless, for a closer look at the serverless programming model, including event-dri
 
The extended cloud: AWS powers edge-to-cloud applications
AWS edge computing solutions provide infrastructure and software that move data processing and analysis as close to the endpoint where data is generated as required by customers. In this session, learn about new edge computing capabilities announced at re:Invent and how customers are using purpose-built edge solutions to extend the cloud to the edge.
 

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

 

Containers

Topics on simplifying container deployment, legacy workload migration using containers, optimizing costs for containerized applications, container architectural choices, and more.
 
Getting an insight into your Kubernetes applications

Do you need to know what’s happening with your applications that run on Amazon EKS? In this session, learn how you can combine open-source tools, such as Prometheus and Grafana, with Amazon CloudWatch using CloudWatch Container Insights. Come to this session for a demo of Prometheus metrics with Container Insights.

 
AWS Copilot: Simplifying container development

The hard part is done. You and your team have spent weeks poring over pull requests, building microservices and containerizing them. Congrats! But what do you do now? How do you get those services on AWS? How do you manage multiple environments? How do you automate deployments? AWS Copilot is a new command line tool that makes building, developing, and operating containerized applications on AWS a breeze. In this session, learn how AWS Copilot can help you and your team manage your services and deploy them to production, safely and delightfully.

 
Choosing your container data plane on AWS
Five years ago, if you talked about containers, the assumption was that you were running them on a Linux VM. Fast forward to today, and now that assumption is challenged—in a good way. Come to this session to explore the best data plane option to meet your needs. This session covers the advantages of different abstraction models (Amazon EC2 or AWS Fargate), the operating system (Linux or Windows), the CPU architecture (x86 or Arm), and the commercial model (Spot or On-Demand Instances.)
 
Securing your Amazon EKS applications: Best practices

Security is critical for your Kubernetes-based applications. Join this session to learn about the security features and best practices for Amazon EKS. This session covers encryption and other configurations and policies to keep your containers safe.

 
GitOps compliant: How CommBank multiplied Amazon EKS clusters

In this session, learn how the Commonwealth Bank of Australia (CommBank) built a platform to run containerized applications in a regulated environment and then replicated it across multiple departments using Amazon EKS, AWS CDK, and GitOps. This session covers how to manage multiple multi-team Amazon EKS clusters across multiple AWS accounts while ensuring compliance and observability requirements and integrating Amazon EKS with AWS Identity and Access Management, Amazon CloudWatch, AWS Secrets Manager, Application Load Balancer, Amazon Route 53, and AWS Certificate Manager.

 
Getting up and running with Amazon EKS

Amazon EKS is a fully managed service that makes it easy to deploy, manage, and scale containerized applications using Kubernetes on AWS. Join this session to learn about how Verizon runs its core applications on Amazon EKS at scale. Verizon also discusses how it worked with AWS to overcome several post-Amazon EKS migration challenges and ensured that the platform was robust.

 
Developing CI/CD pipelines with Amazon ECS and AWS Fargate

Containers have helped revolutionize modern application architecture. While managed container services have enabled greater agility in application development, coordinating safe deployments and maintainable infrastructure has become more important than ever. This session outlines how to integrate CI/CD best practices into deployments of your Amazon ECS and AWS Fargate services using pipelines and the latest in AWS developer tooling.

 
Securing your Amazon ECS applications: Best practices

With Amazon ECS, you can run your containerized workloads securely and with ease. In this session, learn how to utilize the full spectrum of Amazon ECS security features and its tight integrations with AWS security features to help you build highly secure applications.

 
Optimize costs and manage spend for containerized applications

Do you have to budget your spend for container workloads? Do you need to be able to optimize your spend in multiple services to reduce waste? If so, this session is for you. It walks you through how you can use AWS services and configurations to improve your cost visibility. You learn how you can select the best compute options for your containers to maximize utilization and reduce duplication. This combined with various AWS purchase options helps you ensure that you’re using the best options for your services and your budget.

 
AWS Fargate: Are serverless containers right for you?

You have a choice of approach when it comes to provisioning compute for your containers. Some users prefer to have more direct control of their instances, while others could do away with the operational heavy lifting. AWS Fargate removes the need to provision and manage servers, lets you specify and pay for resources per application, and improves security through application isolation by design. This session explores the benefits and considerations of running on Fargate or directly on Amazon EC2 instances. You hear about new and upcoming features and learn how Amenity Analytics benefits from the serverless operational model.

 
Containers at AWS: More options and power than ever before

Are you confused by the many choices of containers services that you can run on AWS? This session explores all your options and the advantages of each. Whether you are just beginning to learn Docker or are an expert with Kubernetes, join this session to learn how to pick the right services that would work best for you.

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

 
Modernizing with containers

Leading containers migration and modernization initiatives can be daunting, but AWS is making it easier. This session explores architectural choices and common patterns, and it provides real-world customer examples. Learn about core technologies to help you build and operate container environments at scale. Discover how abstractions can reduce the pain for infrastructure teams, operators, and developers. Finally, hear the AWS vision for how to bring it all together with improved usability for more business agility.

 
Improving observability with AWS App Mesh and Amazon ECS

As the number of services grow within an application, it becomes difficult to pinpoint the exact location of errors, reroute traffic after failures, and safely deploy code changes. In this session, learn how to integrate AWS App Mesh with Amazon ECS to export monitoring data and implement consistent communications control logic across your application. This makes it easy to quickly pinpoint the exact locations of errors and automatically reroute network traffic, keeping your container applications highly available and performing well.

 
Best practices for containerizing legacy applications

Enterprises are continually looking to develop new applications using container technologies and leveraging modern CI/CD tools to automate their software delivery lifecycles. This session highlights the types of applications and associated factors that make a candidate suitable to be containerized. It also covers best practices that can be considered as you embark on your modernization journey.

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

Looking at Amazon EKS through a networking lens

Because of its security, reliability, and scalability capabilities, Amazon Elastic Kubernetes Service (Amazon EKS) is used by organization in their most sensitive and mission-critical applications. This session focuses on how Amazon EKS networking works with an Amazon VPC and how to expose your Kubernetes application using Elastic Load Balancing load balancers. It also looks at options for more efficient IP address utilization.

AWS networking best practices in large-scale migrations

Network design is a critical component in your large-scale migration journey. This session covers some of the real-world networking challenges faced when migrating to the cloud. You learn how to overcome these challenges by diving deep into topics such as establishing private connectivity to your on-premises data center and accelerating data migrations using AWS Direct Connect/Direct Connect gateway, centralizing and simplifying your networking with AWS Transit Gateway, and extending your private DNS into the cloud. The session also includes a discussion of related best practices.

Innovating on AWS in a 5G world

5G will be the catalyst for the next industrial revolution. In this session, come learn about key technical use cases for different industry segments that will be enabled by 5G and related technologies, and hear about the architectural patterns that will support these use cases. You also learn about AWS-enabled 5G reference architectures that incorporate AWS services.

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

How to choose the right instance type for ML inference

AWS offers a breadth and depth of machine learning (ML) infrastructure you can use through either a do-it-yourself approach or a fully managed approach with Amazon SageMaker. In this session, explore how to choose the proper instance for ML inference based on latency and throughput requirements, model size and complexity, framework choice, and portability. Join this session to compare and contrast compute-optimized CPU-only instances, such as Amazon EC2 C4 and C5; high-performance GPU instances, such as Amazon EC2 G4 and P3; cost-effective variable-size GPU acceleration with Amazon Elastic Inference; and highest performance/cost with Amazon EC2 Inf1 instances powered by custom-designed AWS Inferentia chips.

Architectural patterns & best practices for workloads on VMware Cloud on AWS

When it comes to architecting your workloads on VMware Cloud on AWS, it is important to understand design patterns and best practices. Come join this session to learn how you can build well-architected cloud-based solutions for your VMware workloads. This session covers infrastructure designs with native AWS service integrations across compute, networking, storage, security, and operations. It also covers the latest announcements for VMware Cloud on AWS and how you can use these new features in your current architecture.

The cutover: Moving your traffic to the cloud

One of the most critical phases of executing a migration is moving traffic from your existing endpoints to your newly deployed resources in the cloud. This session discusses practices and patterns that can be leveraged to ensure a successful cutover to the cloud. The session covers preparation, tools and services, cutover techniques, rollback strategies, and engagement mechanisms to ensure a successful cutover.

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

DeepRacer

AWS DeepRacer is the fastest way to get rolling with machine learning. Developers of all skill levels can get hands-on, learning how to train reinforcement learning models in a cloud based 3D racing simulator. Attend a session to get started, and then test your skills by competing for prizes and glory in an exciting autonomous car racing experience throughout re:Invent!

AWS DeepRacer gives you an interesting and fun way to get started with reinforcement learning (RL). RL is an advanced machine learning (ML) technique that takes a very different approach to training models than other ML methods. Its super power is that it learns very complex behaviors without requiring any labeled training data, and it can make short-term decisions while optimizing for a longer-term goal. AWS DeepRacer makes it fast and easy to build models in Amazon SageMaker and train, test, and iterate quickly and easily on the track in the AWS DeepRacer 3D racing simulator. 

Build cloud-ready apps faster with Red Hat OpenShift Service on AWS (sponsored by Red Hat)
As more organizations are looking to migrate to the cloud, Red Hat OpenShift Service offers a proven, reliable, and consistent platform across the hybrid cloud. Red Hat and AWS recently announced a fully managed joint service that can be deployed directly from the AWS Management Console and can integrate with other AWS Cloud-native services. In this session, you learn about this new service, which delivers production-ready Kubernetes that many enterprises use on premises today, enhancing your ability to shift workloads to the AWS Cloud and making it easier to adopt containers and deploy applications faster. This presentation is brought to you by Red Hat, an AWS Partner.
 

Decoupling serverless workloads with Amazon EventBridge

Event-driven architecture can help you decouple services and simplify dependencies as your applications grow. In this session, you learn how Amazon EventBridge provides new options for developers who are looking to gain the benefits of this approach.

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

Deep dive on Amazon Timestream

Amazon Timestream is a fast, scalable, and serverless time series database service for IoT and operational applications that makes it easy to store and analyze trillions of events per day at as little as one-tenth the cost of relational databases. In this session, dive deep on Amazon Timestream features and capabilities, including its serverless automatic scaling architecture, its storage tiering that simplifies your data lifecycle management, its purpose-built query engine that lets you access and analyze recent and historical data together, and its built-in time series analytics functions that help you identify trends and patterns in your data in near-real time.

Accelerating outcomes and migrations with Savings Plans

Savings Plans is a flexible pricing model that allows you to save up to 72 percent on Amazon EC2, AWS Fargate, and AWS Lambda. Many AWS users have adopted Savings Plans since its launch in November 2019 for the simplicity, savings, ease of use, and flexibility. In this session, learn how many organizations use Savings Plans to drive more migrations and business outcomes. Hear from Comcast on their compute transformation journey to the cloud and how it started with RIs. As their cloud usage evolved, they adopted Savings Plans to drive business outcomes such as new architecture patterns.

Learn how teams at Amazon rapidly release features at scale

The ability to deploy only configuration changes, separate from code, means you do not have to restart the applications or services that use the configuration and changes take effect immediately. In this session, learn best practices used by teams within Amazon to rapidly release features at scale. Learn about a pattern that uses AWS CodePipeline and AWS AppConfig that will allow you to roll out application configurations without taking applications out of service. This will help you ship features faster across complex environments or regions.

 

Top-paying Cloud certifications:

  1. Google Certified Professional Cloud Architect — $175,761/year
  2. AWS Certified Solutions Architect – Associate — $149,446/year
  3. Azure/Microsoft Cloud Solution Architect – $141,748/yr
  4. Google Cloud Associate Engineer – $145,769/yr
  5. AWS Certified Cloud Practitioner — $131,465/year
  6. Microsoft Certified: Azure Fundamentals — $126,653/year
  7. Microsoft Certified: Azure Administrator Associate — $125,993/year
The Cloud is the future: The AWS Certified Solutions Architect – Associate Averge salary is $149,446/year. Get Certified Now with the apps below:

AWS CCP CLF-C01 on Android –  AWS CCP CLF-C01 on iOS –  AWS CCP CLF-C01 on Windows 10/11

2022 AWS CCP CLF-C01 Practice Exam Course  – Top 300 Questions and Detailed Answers – Success Guaranteed – Save 50% with this link

AWS Cloud Practitioner CCP CLF-C01 Certification Exam Prep
AWS Cloud Practitioner CCP CLF-C01 Certification Exam Prep

AWS Cloud Practitioner Breaking News –  AWS CCP CLF-C01 Testimonials – AWS Top Stories

  • Database Specialty Course Prep
    by /u/Fawkzzz (AWS Certifications) on May 20, 2022 at 11:42 pm

    I'm considering the Database Specialty for my next certification. I saw there's a Stephane Maarek course, but I don't think he's very involved in it and passes off to another instructor who sounds like hot garbage. Are there any other reliable courses out there? I will pick up the Tutorial Dojo practice exams but there aren't eBooks available yet. submitted by /u/Fawkzzz [link] [comments]

  • INE for cloud training?
    by /u/Max-lower-back-Payne (AWS Certifications) on May 20, 2022 at 9:51 pm

    Has anyone used INE for AWS training? If so what did you think? submitted by /u/Max-lower-back-Payne [link] [comments]

  • Don't think I can afford Cantrill's AWS SOAA course ($48), is Stephane Maarek's course (on sale: £10.99) a good substitute?
    by /u/deadassmf (AWS Certifications) on May 20, 2022 at 6:08 pm

    (Should clarify I can technically "afford" $48, I'd just much rather pay less due to being a junior lol) Looked upon Reddit threads upon Reddit threads about the AWS Solutions Architect Associate exam and what course to use - by far Cantrill's is the most recommended and referred to as the "gold standard". When I visited his site though he seems to charge $48 to enrol onto the course, meanwhile Maarek's course on Udemy is currently on sale - down from £59.99 to £10.99 (for the next 5 days only!!!). I think if this was when Maarek's Udemy course was it's original £59.99 price then Cantrill's would be an easy winner, right? Cheaper and by far more recommended. I've seen some comments say that Maarek's is much less in terms of duration, only reads slides, and apparently doesn't cover as wide as Cantrill's, as well not having anything practical like Cantrill does. So I'm a little uncertain if it's a good substitute, even considering the current price difference? Context: Junior DevOps Engineer (security focused), I have 1yr exp as a junior and 1yr exp as an intern. submitted by /u/deadassmf [link] [comments]

  • AWS Control Tower now supports concurrent operations for preventive guardrails
    by aws@amazon.com (Recent Announcements) on May 20, 2022 at 5:42 pm

    AWS Control Tower now supports operational concurrency for all guardrail types, preventive or detective. With this new release you can now enable or disable multiple preventive guardrails without needing to wait for individual guardrail operations to complete. AWS Control Tower provides customers with out-of-the-box preventive and detective guardrails that you can deploy to increase your security, operational, and compliance posture.

  • Permission from the parent account through a user policy.
    by /u/kasun1988 (AWS Certifications) on May 20, 2022 at 12:18 pm

    For an IAM user to access resources in another account the following must be provided: Permission from the parent account through a user policy. Permission from the resource owner to the IAM user through a bucket policy, or the parent account through a bucket policy, bucket ACL or object ACL. Here What is meant by Permission from the parent account through a user policy. and resource owner to the IAM user submitted by /u/kasun1988 [link] [comments]

  • AWS solutions architect associate results
    by /u/greyskull57 (AWS Certifications) on May 20, 2022 at 11:10 am

    Hi guys, I gave aws exam yesterday, it's more than 24 hours since I have ended my test, but still waiting for result email, pass/fail. It's normal or can it go upto 5 days to just get my results? submitted by /u/greyskull57 [link] [comments]

  • Beginner Question
    by /u/californianoob (AWS Certifications) on May 20, 2022 at 5:05 am

    Hi everyone, I have non-computer, manufacturing related engineering degree with a very little experience in the field and I hate my job. I've heard people without degrees and experience getting AWS Certifications and getting hired easily by Amazon or other IT companies. If this is true which certificate should I start with? All I have is one semester of C++ experience 10y ago when I was studying. submitted by /u/californianoob [link] [comments]

  • Associate Solutions Architect – Early Career 2022
    by /u/youngfrenc (AWS Certifications) on May 20, 2022 at 4:32 am

    Hey guys just wanted to know if anyone has gotten through the aws solutions architect hiring process that amazon has, as i understand it we have 2 phases which includes curriculum based learning and the other phase is on the job training, each phase lasts around 6 months, wanted to know your opinions on this and whether or not its worth it, is any of the phases paid as well or not asking cause im a broke recent college grad submitted by /u/youngfrenc [link] [comments]

  • AWS Security Specialty Certification - Passed woot!
    by /u/Fawkzzz (AWS Certifications) on May 20, 2022 at 4:03 am

    I sat for the DevOps Pro a little less than a week ago and figured I would make an attempt at a Specialty exam next. Prep - I picked up the Tutorial Dojo eBook and Practice exams a few days ago. Yesterday I went through both practice exams in review mode and scored a 55% and 65%. I skimmed parts of the eBook and made another attempt at both exams today scoring an 83% and 85%. I took the AWS official practice exam yesterday and scored a 75%. I used Stephane Maarek and Adrian Cantrill's courses for my pro and associate certs, and those helped cover a lot of services that show up on the Security exam. Thoughts / Impressions - The exam has a TON of choose 2 or 3 in the multiple choices. The questions aren't as lengthy as the SAP, but are pretty similar in length to the DevOps Pro. I also was surprised to see multiple choices going from A-F on the exam. I flagged about 10 questions for review and changed most of my answers on those questions. I had about 30 minutes left on the clock when I finished due to the shorter questions. Services that come up a lot include but are not limited to... AWS KMS - Many questions on KMS S3 Permissions - At least 5 S3 related questions Cloud Watch Events - Various questions relied on Cloud Watch Events Secrets Manager & Parameter Store Security Groups Network ACL Cloud Trail STS Recovery and quarantining of EC2 instances submitted by /u/Fawkzzz [link] [comments]

  • Can anyone recommend any good course material for the AWS CCP Exam?
    by /u/NephilimTheGiant (AWS Certifications) on May 20, 2022 at 1:13 am

    Hi everyone, I recently dove head first into A Cloud Guru, and feel completely ripped off. Almost none of the course material was on the actual test, and I feel extremely discouraged because I feel like I actually know nothing now. Any input is appreciated, thanks! submitted by /u/NephilimTheGiant [link] [comments]

  • Amazon Kendra releases Jira connector to enable document search on JIRA repository
    by aws@amazon.com (Recent Announcements) on May 19, 2022 at 10:31 pm

    Amazon Kendra is an intelligent search service powered by machine learning, enabling organizations to provide relevant information to customers and employees, when they need it. Amazon customers can now use The Amazon Kendra Jira Cloud connector to index documents from Atlassian Jira.

  • Amazon EC2 Auto Scaling now backfills Predictive Scaling forecasts so you can quickly validate forecast accuracy
    by aws@amazon.com (Recent Announcements) on May 19, 2022 at 10:04 pm

    Starting today, when you create a new predictive scaling policy, Amazon EC2 Auto Scaling goes back 14 days to generate capacity forecasts for the past dates, enabling you to see how predictive scaling would have scaled your Auto Scaling group. This allows you to quickly decide if the predictive scaling policy is accurate for your applications by comparing the demand and capacity forecasts against the actuals immediately after you create a predictive scaling policy. Previously, you would have had to wait at least a few days after creating the policy to build up sufficient forecast history for the same comparison to determine the forecast accuracy.

  • Incident Manager from AWS Systems Manager expands support for runbook automation
    by aws@amazon.com (Recent Announcements) on May 19, 2022 at 9:54 pm

    Incident Manager, a capability of AWS Systems Manager, announces expanded support for runbook automation to speed up incident diagnosis and resolution. AWS Systems Manager is the operations hub for your AWS applications and resources, helping you automate reactive processes to quickly diagnose and remediate operational issues. Customers can now build incident runbooks that automatically run remediation actions on the involved resources, such as turning on auto-scaling on a DynamoDB table that is approaching capacity before engaging the on-call engineer. Customers can also invoke additional runbooks directly from the Incident Manager console to help resolve the incident faster.

  • Amazon Chime SDK now supports video background replacement and blur on iOS and Android
    by aws@amazon.com (Recent Announcements) on May 19, 2022 at 9:49 pm

    The Amazon Chime SDK lets developers add intelligent real-time audio, video, and screen share to their web applications. The Amazon Chime SDK client libraries for iOS and Android now include video background replacement and blur, which developers can use to reduce visual distractions and help increase visual privacy for mobile users.

  • AWS CLoud Practitioner vs AWS Cloud Architect Exam
    by /u/kakkrot95 (AWS Certifications) on May 19, 2022 at 8:47 pm

    Hi, So i am from a tech background, Bachelors in COmputer apps and two post grad diplomas in wireless network and network security, At the moment I m working at Technical Support Position but looking to step in It Help desk And Service Desk Positions I honestly do not have much experience when it comes to a proper IT Job so I was planning to get a few certs in order to add on my resume and make Upskill a bit. I am mainly confused on which cert to prepare for, From what I gathered Practitioner is for people who have no prior IT experience at all. Can someone provide some more information on both of the exams and which one will be suitable for me. PS I have gone through almost 60% of the AWS Certified Solutions Architect - Associate 2020 Exam by Ryan Kroonenburg back in 2019 But I do not think I actually remember anything from it But I should be able to grab and digest the content from a new course pretty soon Thank you in advance submitted by /u/kakkrot95 [link] [comments]

  • Just passed SAA-C02 with score of 845
    by /u/fadesfast (AWS Certifications) on May 19, 2022 at 8:40 pm

    Took the amazing course created by u/acantril and followed up with the practice exams by u/jon-bonso-tdojo. I cannot recommend these two learning sources enough. Adrian's teaching style is AMAZING at helping commit to memory the various AWS services, their use cases, when to use them, etc, and the tdojo practice exams by Jon Bonso give a very realistic look into what the exam will be like. Thanks to both of you for guiding me along this journey! Although I grew up around technology, and worked for a year as a computer tech, my IT experience is quite limited. I began studying in late march and took the exam on Monday, passing with a score of 845. I used Pearson Vue Online and everything went smoothly. Although I did not receive an initial pass/fail upon completing the exam, I did receive an email notification within 24 hours. Moving forward, my biggest concerns are the lack of experience I have in the IT field, and the fact that I have a somewhat significant gap since I was last employed in early 2018 (due to college and family illnesses). I am already working through the cloud resume challenge, and intend to complete all of Adrian's advanced demo labs as well in order to build some experience. I know I have an uphill battle ahead of me to get myself into the field of cloud computing (ultimately a position as SA), but I will do whatever it takes to earn a position there. Please feel free to share any thoughts or advice for me moving forward. I would greatly appreciate any guidance! submitted by /u/fadesfast [link] [comments]

  • Amazon Connect Customer Profiles launches in Asia Pacific (Seoul) Region
    by aws@amazon.com (Recent Announcements) on May 19, 2022 at 8:36 pm

    Amazon Connect now allows you to use Amazon Connect Customer Profiles in Asia Pacific (Seoul) AWS region. When a customer contacts your customer service department, you can now provide your agents and interactive voice response (IVR) solutions with up to date information about the customer, enabling faster and more personalized customer service. Customer Profiles brings together customer information (e.g, address, purchase history, contact history) from multiple applications such as Salesforce, Amazon S3, and ServiceNow into a unified customer profile.

  • AWS Glue now provides APIs to create and manage AWS Glue Studio visual jobs
    by aws@amazon.com (Recent Announcements) on May 19, 2022 at 7:50 pm

    AWS Glue Visual Job APIs are now generally available, allowing customers to programmatically create, read, update, and delete AWS Glue studio visual jobs. AWS Glue Studio provides an intuitive visual interface for users to author data integration jobs. Customers want to programmatically create visual jobs in AWS Glue Studio so that they could migrate from other ETL tools and copy jobs to other environments.

  • Metric support now available in AWS Distro for OpenTelemetry
    by aws@amazon.com (Recent Announcements) on May 19, 2022 at 7:26 pm

    Today, we are announcing the general availability of AWS Distro for OpenTelemetry (ADOT) for metrics, a secure, production-ready, AWS-supported distribution of the OpenTelemetry project. With this launch, customers can use OpenTelemetry APIs and SDKs in Java, .Net, and JavaScript to collect and send metrics to Amazon CloudWatch, Amazon Managed Service for Prometheus, and other monitoring destinations supported by the OpenTelemetry Protocol (OTLP). Part of the Cloud Native Computing Foundation (CNCF), OpenTelemetry provides open source APIs, libraries, and agents to collect distributed traces and metrics for application and infrastructure monitoring. With ADOT, you can instrument your applications just once to send metrics and traces to multiple monitoring solutions and use auto-instrumentation agents to collect traces and metrics without changing your code. Use AWS Distro for OpenTelemetry to instrument your applications running on Amazon Elastic Compute Cloud (EC2), Amazon Elastic Container Service (ECS), and Amazon Elastic Kubernetes Service (EKS).

  • Amazon MQ now supports RabbitMQ version 3.8.30
    by aws@amazon.com (Recent Announcements) on May 19, 2022 at 7:24 pm

    Amazon MQ now provides support for RabbitMQ version 3.8.30, which includes several fixes to the previously supported version, RabbitMQ 3.8.27. Amazon MQ is a managed message broker service for Apache ActiveMQ and RabbitMQ that makes it easier to set up and operate message brokers on AWS. You can reduce your operational burden by using Amazon MQ to manage the provisioning, setup, and maintenance of message brokers. Amazon MQ connects to your current applications with industry-standard APIs and protocols to help you easily migrate to AWS without having to rewrite code.

  • Amazon MQ now supports RabbitMQ version 3.9.16
    by aws@amazon.com (Recent Announcements) on May 19, 2022 at 7:20 pm

    Amazon MQ now provides support for RabbitMQ version 3.9.16, which includes several fixes to the previously supported version, RabbitMQ 3.9.13.

  • Looking for a career change
    by /u/sho2wavey (AWS Certifications) on May 19, 2022 at 6:27 pm

    Hi guys new to Reddit and hence this community. I’ve been working in a pharmacy job for 3 years. I’m 23 years old with no experience at all in IT except a course I did a couple years ago, Which I failed miserably coz I never saw myself in IT. As I’ve gotten older I’ve become bored with my job and I’m looking for something challenging. Not to brag but I know for sure I’m smart enough. Would doing the was solutions architect be a smart career move for me and what’s the likelihood I can land a job with just this certification and obviously the basic school stuff. submitted by /u/sho2wavey [link] [comments]

  • Which course is best for AWS certified solution Architect - Associate?
    by /u/Arajgor (AWS Certifications) on May 19, 2022 at 4:51 pm

    I have researched a lot and few names are out there. A cloud guru Stephane Maarek Adrian Cantrill Neal Davis many more So which one is best for understanding the AWS at the associate level not just for passing an exam? submitted by /u/Arajgor [link] [comments]

  • Tutor needed, will pay!
    by /u/Salt_Journalist_9184 (AWS Certified Experts) on May 19, 2022 at 6:28 am

    Hello, I have an assignment due on May 24th and I would like some help completing it. It involves using AWS EC2 instance to setup and configure GlusterFS. Please if you know of anyone that can assist me, dm me asap. I have full details of what needs to be done. submitted by /u/Salt_Journalist_9184 [link] [comments]

  • AWS Secrets Manager vs SSM Parameter Store?
    by /u/PerfectlyCooperative (AWS Certifications) on May 19, 2022 at 2:28 am

    Can anyone explain the differences and when to use either of these two? submitted by /u/PerfectlyCooperative [link] [comments]

  • Taking an Instructor-led Course After or Before Study Materials?
    by /u/g0stsec (AWS Certifications) on May 19, 2022 at 1:01 am

    Looking for recommendations on this. Background: I'm an IT professional with 20 years experience. Experience up and down the OSI model from end user support, helpdesk and enterprise service management. Solid background in networking, network security, systems administration, (Linux and Windows), storage solutions, and some virtualization experience (VMWare ESXi specifically). Opportunity: I have an opportunity to take a 3 day instructor-led course to prepare for the Solution Architect Associate exam. I'm not under the impression that this instructor led course is all I need. I expect to study materials for several weeks. Would you recommend taking the course soon (in the next few weeks) then studying for weeks, or taking the course after studying for several weeks (based on your experience if you have it please). submitted by /u/g0stsec [link] [comments]

  • Announcing general availability of 1-click public embedding available with Amazon QuickSight
    by aws@amazon.com (Recent Announcements) on May 18, 2022 at 11:17 pm

    Amazon QuickSight now supports 1-click public embedding, a feature that allows you to embed your dashboards into public applications, wikis, and portals without any coding or development. Once enabled, anyone on the internet can start accessing these embedded dashboards with to up-to-date information instantly, without server deployments or infrastructure licensing needed! 1-click public embedding helps you empower your end users with access to insights in minutes.

  • New to AWS Certs, do I need anything before AWS SCS?
    by /u/GroundbreakingMark4 (AWS Certifications) on May 18, 2022 at 10:19 pm

    Hi everyone! I’m new to AWS certs but have some experience penetration testing AWS environments. I was thinking of doing AWS Solutions Architect Associate (with probably Cloud practitioner as part of my study) followed by AWS Security Specialist but I wasn’t sure if: a) there are any pre-requisites for the security specialist or if I could jump straight in b) if anyone has just jumped straight in to security specialist or if they any of the aforementioned certs (solutions architect and practitioner) are recommended. Thanks! submitted by /u/GroundbreakingMark4 [link] [comments]

  • AWS Backup adds support for Amazon FSx for OpenZFS
    by aws@amazon.com (Recent Announcements) on May 18, 2022 at 8:37 pm

    AWS Backup now allows you to protect your Amazon FSx for OpenZFS file systems, helping you meet your centralized data protection and regulatory compliance needs. Using AWS Backup’s seamless integration with AWS Organizations, you can centrally create and manage immutable backups of Amazon FSx for OpenZFS file systems across all your accounts, protect your data from inadvertent or malicious actions, and restore the data with a few simple clicks. Additionally, you can generate unified auditor-ready reports to demonstrate compliance status of your organizational data protection policies.

  • AWS Backup adds Amazon FSx for NetApp ONTAP to its set of services for centralized data protection
    by aws@amazon.com (Recent Announcements) on May 18, 2022 at 8:35 pm

    AWS Backup now allows you to protect your Amazon FSx for NetApp ONTAP file systems, helping you meet your centralized data protection and regulatory compliance needs. Amazon FSx for NetApp ONTAP is a fully managed AWS service that allows you to run NetApp ONTAP file systems in the AWS Cloud. You can now use AWS Backup’s policy-based capabilities to centrally protect Amazon FSx for NetApp ONTAP along with other AWS services for storage, database, and compute that AWS Backup supports. You can protect your Amazon FSx for NetApp ONTAP file systems with immutable backups, and generate auditor-ready reports to prove compliance of your data protection policies.

  • AWS App Mesh now supports Internet Protocol Version 6 (IPv6)
    by aws@amazon.com (Recent Announcements) on May 18, 2022 at 7:44 pm

    AWS App Mesh now supports IPv6 allowing customers to support workloads running in IPv6 networks and to invoke App Mesh APIs over IPv6. This helps customers to meet IPv6 compliance requirements, and removes the need for expensive networking equipment to handle address translation between IPv4 and IPv6. AWS App Mesh is a service mesh that provides application-level networking to make it easier for your services to communicate with each other across multiple types of compute infrastructure. AWS App Mesh standardizes how your services communicate, giving you end-to-end visibility and options to tune for high-availability of your applications.

  • Amazon Redshift now supports linear learner algorithm with Redshift ML
    by aws@amazon.com (Recent Announcements) on May 18, 2022 at 6:10 pm

    Amazon Redshift ML enables you to create, train, and deploy machine learning (ML) models using familiar SQL commands. With Amazon Redshift ML, you can leverage Amazon SageMaker, a fully managed machine learning service, without moving your data or learning new skills. Amazon Redshift now supports Amazon SageMaker Linear Learner algorithm for creating models with Amazon Redshift ML.

  • Is this a good deal? $1250 for AWS Solutions Architect Course and Certification. I am looking to get AWS Certified and prefer an actual instructor which this offers. I usually have a hard time with self study.
    by /u/soulreaver99 (AWS Certifications) on May 18, 2022 at 6:00 pm

    submitted by /u/soulreaver99 [link] [comments]

  • AWS Resilience Hub adds support for Terraform, Amazon ECS, and additional services
    by aws@amazon.com (Recent Announcements) on May 18, 2022 at 4:16 pm

    AWS Resilience Hub now supports Amazon Elastic Container Service (Amazon ECS), Amazon Route 53, AWS Elastic Disaster Recovery, AWS Backup, and the ability to use Terraform as a source to upload applications. With this expansion of supported resources, you can use Resilience Hub to prepare and protect even more of your applications from disruptions.  

  • AWS Encryption SDK for .NET now generally available
    by aws@amazon.com (Recent Announcements) on May 18, 2022 at 4:12 pm

    Developers can now use the AWS Encryption SDK for .NET to help protect their data. This open-source release makes it easier for developers to encrypt and decrypt their data when building applications using the .NET developer platform.

  • How I passed Certified Cloud Practitioner Exam by studying < 15 hours (Tips)
    by /u/Adventurous-Sign4520 (AWS Certifications) on May 18, 2022 at 1:47 pm

    Hey everyone, I am writing this post to serve as a guide for folks who are looking for a quicker way to crack the exam. FYI, I have < 1 year AWS experience. Before I started my prep I was aware about high level basics for EC2, Lambda, SQS, SNS, RDS. I did Ultimate AWS Certified Cloud Practitioner - 2022 course by Stephne Maarek and skipped the hands on parts (you can do the hands-on if you are curious about something). I watched lectures at 1.25x and after end of every module, I would go through summary lecture and do the quizzes for the module. Before my exam, I went through all summary sections again and did all those practice quizzes again for each module. I appeared in the exam and surprisingly, everything that was asked was seen in the course. Just my two cents for people who are in a bit of a rush. Give yourself 2 days and schedule time blocks in calendar to study for the exam. Edit1: Create a document to remember high level summary of what each thing does. If instructor mentions something important (or something is highlighted in bold in the slides), put it in your notes. Take a minute to guess (or memorize) what the service does before instructor talks about it in the summary. I skipped Section 20: Other services as it was likely not going to be in the exam submitted by /u/Adventurous-Sign4520 [link] [comments]

  • SAP-C02 AWS Certified Solutions Architect - Professional certification exam is changing November 15, 2022. The last date to take the current exam is November 14, 2022
    by /u/HolmesChong (AWS Certifications) on May 18, 2022 at 1:29 pm

    Starting November 15, 2022, a new version of the AWS Certified Solutions Architect - Professional exam will be available. The AWS Certified Solutions Architect - Professional exam has been updated to align with the AWS Well-Architected Framework across all domains and will ensure the certification validates the latest AWS technical skills and cloud expertise. Please review the updated exam guide to learn what to expect and to help you prepare. If you are preparing for the current AWS Certified Solutions Architect - Professional exam, or need to recertify, you’ll want to make sure to take the current exam by November 14, 2022. https://aws.amazon.com/certification/coming-soon/ submitted by /u/HolmesChong [link] [comments]

  • appspec.yaml or appspec.yml for a code deloy on an ECS cluster
    by /u/KeyCup2606 (AWS Certifications) on May 18, 2022 at 1:26 pm

    Hello, I'm having this AWS Developer Certification question: ​ https://preview.redd.it/2kc0egxak8091.png?width=1217&format=png&auto=webp&s=b0589fa4121477855259de1cf8ea1afa8f9831b2 ​ ​ But according to AWS.We can use appsepc.yaml or appspec.yml . ​ ​ https://preview.redd.it/y7shtqajk8091.png?width=1418&format=png&auto=webp&s=5573403a3399267dc45de470511f304a4c68d4c5 I'm really confused .What's the correct answer ? submitted by /u/KeyCup2606 [link] [comments]

  • Passed SOA-C02 with 848
    by /u/nonFungibleHuman (AWS Certifications) on May 18, 2022 at 12:33 pm

    So finally received my results today, thanks to everyone that posted his/her experience here doing the exam. I took it in a Test center (Person Vue) because of your recommendations and would 100% repeat the experience, flawless and the labs went smooth. Background: This is my second cert, last year got the Developer Associate and up today I've got around 2 years working with AWS, lately on personal projects for learning purpouses. Having experience with the console helps a ton with the labs, and doing such projects helped me grasping the knowledge better. I am a software developer with 5 years of exp. and I want to jump into Architect or Devops, that will depend on my new job. I used u/stephanemaarek udemy course and u/jon-bonso-tdojo practice exams/labs, studied for 2 and a half months 1 to 2 hours daily, and took a bunch of notes in the form of flashcards (around 900 flashcards), which I revised daily (10-100 cards per day). On practice tests I was scoring around 80%, I did the one in Mareek course and then the final exam in job bonso material, doing the exams in section mode and review mode helped me a lot to tackle the weak points, and the explanations of each answer are just amazing. I am going to focus now on skill development, so no certs for now but after I decide with path to go (probably devops) I'll go for Devops Pro. submitted by /u/nonFungibleHuman [link] [comments]

  • AWS training materials vs courses
    by /u/FBAmike (AWS Certifications) on May 18, 2022 at 7:43 am

    HI, At the associate level, you see a lot of recommendations for Stephane, Neal, or Adrian's course, with some free resources mixed in (freecodecamp, etc) with a few practice test options. I don't have a good sense of AWS' own training. Is it simply too shallow to pass with? Is it organized poorly? Is it a viable alternative? Can someone who has a good sense of the various paid courses and AWS training put them in a context for me so I can figure out how to approach this. submitted by /u/FBAmike [link] [comments]

  • Failed SAA-C02
    by /u/CrazyRichBen (AWS Certifications) on May 18, 2022 at 2:37 am

    Hi everyone, just received my results, scored 705/1000. Which kinda sucks because it's so close to 720! (It's close, right? I'm not really too sure about the margins). Exam was on the 17th of May. I finished Stephane's course literally the day before. Didn't even attempt the practice test cuz well, to be honest, I didn't expect the course to have SO much content. All I did was review the quizes at the end of each chapter and did the 10 free questions off the AWS website. I wished I'd found this sub sooner, seeing that there are so much helpful content, like tutorials dojo practice exams (which I hear is really helpful). Am gonna take a few days off and then booking another test date to try again. Also, is the retest 50% off? My first attempt was FOC via a voucher my company. -Edit- Thanks for the tips and encouragement guys! I have a copy of Neal Davis' book, AWS Certified Solutions Architect Associate Practice Tests 2021 [SAA-C02]: 390 AWS Practice Exam Questions with Answers & detailed Explanations. Anyone knows is it similar to the material he has online? Thanks. submitted by /u/CrazyRichBen [link] [comments]

  • Cloud Engineering Vs Software Engineering
    by /u/AnikImtiaz (AWS Certifications) on May 18, 2022 at 12:40 am

    Which career between software engineering and cloud engineering has better future prospects in terms of salary, growth, and job stability? submitted by /u/AnikImtiaz [link] [comments]

  • Amazon EC2 Auto Scaling now supports Predictive Scaling in the AWS GovCloud (US-West) Region
    by aws@amazon.com (Recent Announcements) on May 17, 2022 at 9:36 pm

    Amazon EC2 Auto Scaling now supports Predictive Scaling in the AWS GovCloud (US-West) Region. Predictive scaling can proactively scale out your Auto Scaling group to be ready for upcoming demand. This allows you to avoid the need to over-provision capacity, resulting in lower EC2 cost, while ensuring your application’s responsiveness. (Previously, Predictive Scaling was only available via AWS Auto Scaling Plans and only in public regions.) Support in the AWS GovCloud (US-West) Region allows U.S. government agencies and contractors to run sensitive workloads by addressing their specific regulatory and compliance requirements.

  • Amazon Redshift launches new Snapshot Isolation level support for concurrent transactions
    by aws@amazon.com (Recent Announcements) on May 17, 2022 at 9:22 pm

    Amazon Redshift has launched support for Snapshot Isolation for concurrent transactions. Amazon Redshift prevents dirty reads, non-repeatable reads, and phantom reads according to the SQL standards. The two options that Amazon Redshift offers to serialize transactions are SERIALIZABLE and SNAPSHOT ISOLATION. The SERIALIZABLE option will implement strict serializability, where a transaction could fail if the result could not be mapped to a serial order of the concurrently running transactions. The SNAPSHOT ISOLATION option will allow higher concurrency, where concurrent modifications to different rows in the same table would complete successfully. Under both options, transactions will continue to operate on the latest committed version, or a snapshot, of the database.

  • Ensure Enterprise Support is active in an account within an AWS Org is
    by /u/crippin-wit-crypto (AWS Certified Experts) on May 17, 2022 at 6:45 pm

    Hi AWS reddit community, I was wondering if there was a way to ensure enterprise support is active on new accounts within an AWS Organization. I was looking at some Boto3 documentation: https://boto3.amazonaws.com/v1/documentation/api/latest/reference/services/support.html#Support.Client.describe_trusted_advisor_check_result and only accounts with enterprise support can make these boto calls, I was thinking I can do a - describe_trusted_advisor_check_refresh_statuses and from that status return I would know if an account has enterprise support active. So getting a lambda in all my accounts and firing this check would work but I was hoping there was another way to go about this. submitted by /u/crippin-wit-crypto [link] [comments]

  • Amazon CloudWatch announces improved console experience
    by aws@amazon.com (Recent Announcements) on May 17, 2022 at 5:18 pm

    Amazon CloudWatch is introducing enhancements to the console experience, which improve dashboard data visualizations and console navigation. The enhancements include new dashboard widgets as well as more options to access frequently used dashboards, log groups and alarms.

  • Landed a jr. SA role with <1 yr experience. Let's talk
    by /u/keypairvalue (AWS Certifications) on May 17, 2022 at 11:27 am

    Questions are preferred, I don't think I can type out a wall of text that is going to help everyone in their specific situations. I achieved the SAA and SAP in a span of 7 months. I got my SAA while not in tech, SAP while working a tech job. My first and only job thus far was non-technical monitoring in a NOC team at a VAR. I was promoted to jr. SA internally. A big contributing factor to landing that first job, imo is that I researched companies before deciding to apply to them. I didn't spend entire days sending out resumes/applying. My criteria for the companies I was looking to apply to were: MSP/VAR. Generally agreed upon as fast-paced and stressful in a lot of departments, but having many different clients and problems to solve is a great learning experience. They also tend to hire like crazy. Numerous cloud roles available, especially junior/associate level ones even if they weren't the specific role I was looking for. Companies may have opportunities that aren't necessarily posted on their job boards. I wasn't going to be picky, I was OK with working my way up in a company to get that breakthrough. A big plus if providing cloud solutions was a relatively new thing for them As for the interview I could write pages on it. In short, me being super fresh & having the SA Pro clearly threw up some doubt/red flags in the interviewer's mind. He made sure I had the practical knowledge to go along with it. Big emphasis on practical, as more often than not, people unfortunately don't come out with practical knowledge after passing a cert. Which can make these interviews go from tough, to actually impossible. Also the dude who made a throwaway to just say I exam-dumped it on my last post, can suck my nuts. You need to have a plan.. it's tough being new to tech and picking out an end-goal, but it's the most optimal way to climb quick. Lay out your steps. Your certs, projects, & technical skills need to paint a clear picture of where you're going. All my certs, projects, and skills.. they're all architecture related. As for my future - I'm getting more engineering experience since a full-fledged SA is expected to handle low-level technical implementations to a degree, but also plan around the nuances of that. submitted by /u/keypairvalue [link] [comments]

  • Amazon EC2 I4i metal instances are now available
    by aws@amazon.com (Recent Announcements) on May 16, 2022 at 9:29 pm

    Starting today, Amazon EC2 I4i metal instances are available in Amazon Web Services (AWS) Regions - US East (Ohio and N. Virginia), US West (Oregon) and Europe (Ireland). Designed for storage I/O intensive workloads, I4i instances are powered by 3rd generation Intel Xeon Scalable processors (code named Ice Lake) with an all-core turbo frequency of 3.5 GHz, offer up to 30% better compute price performance over I3 instances, and always-on memory encryption using Intel Total Memory Encryption (TME). I4i metal instances deliver the highest local storage performance within Amazon EC2 and are designed for databases such as MySQL, Oracle DB, and Microsoft SQL Server, and NoSQL databases such as MongoDB, Couchbase, Aerospike, and Redis where low latency local NVMe storage is needed in order to meet application service level agreements (SLAs).

  • Amazon Neptune is now FedRAMP compliant
    by aws@amazon.com (Recent Announcements) on May 16, 2022 at 7:12 pm

    Amazon Neptune is now in scope for FedRAMP High in the AWS GovCloud (US-West) and AWS GovCloud (US-East) Regions, and FedRAMP Moderate in the US East (Ohio), US East (N. Virginia), US West (N. California), and US West (Oregon) Regions. You can now use Amazon Neptune to build applications for workloads that require FedRAMP High or Moderate authorization. This also accredits Amazon Neptune as a Department of Defense Cloud Computing Security Requirements Guide Impact Level 2 (DoD SRG IL-2) service in these regions.

  • AWS Control Tower can now use customer provided core accounts
    by aws@amazon.com (Recent Announcements) on May 16, 2022 at 6:56 pm

    Today, we are announcing new functionality in AWS Control Tower that provides you the flexibility to use your existing security and logging accounts, or to have AWS Control Tower create new accounts on your behalf when setting up Control Tower or extending Control Tower governance to your existing AWS environment. The Security account is used as a restricted account that’s designed to give your security and compliance teams read and write access to all accounts in your landing zone. The Logging account works as a repository, storing logs of API activities and resource configurations from all accounts in your landing zone. 

A Twitter List by enoumen

Recent Posts

  • AWS Azure Google Cloud Certifications Testimonials and Dumps
  • Food For Thought – Delicious Homemade Cuisine From All over the World
  • Breaking News – Top Stories
  • Facebook, Instagram, Apple and Google Apps Search Ads Secrets – Make Money From Your Products
  • Azure Solutions Architect Expert Certification Questions And Answers Dumps

Learning Animal Tools

Sports

  • Yahoo Sport
  • Football in Real Time Now
  • ShowUpAndPlaySports
  • Yahoo Sport UK
  • ESPN
  • Bleacher Report

Other Interesting Blogs

  • Djamga
  • 538
  • Pros and Cons of Co-Ed Games

RSS Djamga Sports Blog

  • Pros and Cons of Keeping the Score
    What are the Pros and Cons of Keeping the Score?
  • Pros and Cons of couples playing in the same team
    What are the Pros and Cons of couples playing in the same team?
  • Co-Ed sports - Co-Ed games
    What is Co-Ed sports or Co-Ed games?

Breaking News + Sports + Technology

  • QNN: Latest News in Real time Now
  • QNN: Latest USA News in Real time Now
  • QNN: Latest Sport News in RealTimeNow
  • QNN: Latest Jobs in Realtime Now
  • QNN: Entertainment
  • QNN: Health - Medicine
  • QNN: Latest Technology News
  • Sciences
  • Top 10000 Quiz and Brain Teasers All Subjects

RSS Latest Google Tech News

  • Apple reportedly chose a standalone AR / VR headset over a more powerful tethered design - The Verge
  • Report: EA Looking To Sell Or Merge - Kotaku
  • Halo Re-Created in Unreal Engine 5 Gameplay - IGN
  • A Quick PvP Analysis on Community Day Alolan Golem | Pokémon GO Hub - Pokémon GO Hub
  • Samsung's New Poké Ball Earbud Charging Case Is Only Available In South Korea (For Now) - Nintendo Life
  • Controversial Street Fighter Champion Banned From Several Major Tournaments - Kotaku
  • How to Help Convince Tech Companies to Make a Smaller Smartphone - Lifehacker
  • Random: University Student Makes Brilliant Zelda-Inspired Animation, Gets An A - Nintendo Life
  • Huge leak of Google Pixel Watch specs just dropped - Android Authority
  • Sony's New WH-1000XM5 Headphones vs. Apple's AirPods Max - MacRumors

Where to Play or Participate in Co-Ed Sports

Find where to play or participate in Amateur Co-Ed Soccer , Football, Basketball, Hockey, Cricket, Rugby, Tennis, Golf, Cycling, Racing, Boxing, Athletics, Badminton, Curling, Dodgeball, Gymnastics, Lacrosse, Martial Arts, PickleBall, Rugby, Slo-Pitch, Softball, Squash, Swimming, Ultimate, Volleyball in Austin, Boston, Calgary, Dallas, Denver, Edmonton, Houston, London, Los Angeles, Miami, Montreal, New York, Ottawa, Paris, Philadelphia, Portland, San Antonio, San Diego,San Francisco Bay Area, Seattle, Toronto, Vancouver
  • Watch Soccer, Football Free Online
  • Watch NFL, CFL, Superbowl, NCAAF Free Online
  • Main
  • About
  • Online Store
  • Books
  • Contact
  • Top 100 AWS Certified Cloud Practitioner Exam Preparation Questions and Answers Dumps
  • Show All Posts
  • Privacy Policy
  • Disclaimer
Privacy Policy Proudly powered by WordPress
error: Content is protected !!