Pass the Amazon Web Services AWS Certified Associate SOA-C01 Questions and answers with CertsForce

Viewing page 7 out of 8 pages
Viewing questions 61-70 out of questions
Questions # 61:

A SysOps Administrator must set up notifications for whenever combined billing exceeds a certain threshold for all AWS accounts within a company. The Administrator has set up AWS Organizations and enabled Consolidated Billing.

Which additional steps must the Administrator perform to set up the billing alerts?

Options:

A.

In the payer account: Enable billing alerts in the Billing and Cost Management console; publish an Amazon SNS message when the billing alert triggers.


B.

In each account: Enable billing alerts in the Billing and Cost Management console; set up a billing alarm in Amazon CloudWatch; publish an SNS message when the alarm triggers.


C.

In the payer account: Enable billing alerts in the Billing and Cost Management console; set up a billing alarm in the Billing and Cost Management console to publish an SNS message when the alarm triggers.


D.

In the payer account: Enable billing alerts in the Billing and Cost Management console; set up a billing alarm in Amazon CloudWatch; publish an SNS message when the alarm triggers.


Expert Solution
Questions # 62:

A company’s web application runs on Amazon EC2 instances behind an ELB Application Load Balancer. The EC2 instances run in an EC@ Auto Scaling group across multiple Availability Zones. Data is stored in an Amazon ElastiCache for Radius cluster and an Amazon RDS DB instance. Company policy requires all system patching to take place at midnight on Tuesday.

Which resources will need to have a maintenance window configured for midnight on Tuesday? (Choose two.)

Options:

A.

Elastic Load Balancer


B.

EC2 instances


C.

RDS instance


D.

ElastiCache cluster


E.

Auto Scaling group


Expert Solution
Questions # 63:

A database is running on an Amazon RDS Multi-AZ DB instance. A recent security audit found the database to be cut of compliance because it was not encrypted.

Which approach will resolve the encryption requirement?

Options:

A.

Log in to the RDS console and select the encryption box to encrypt the database.


B.

Create a new encrypted Amazon EBS volume and attach it to the instance.


C.

Encrypt the standby replica in the secondary Availability Zone and promote it to the primary instance.


D.

Take a snapshot of the RDS instance, copy and encrypt the snapshot, and then restore to the new RDS instance.


Expert Solution
Questions # 64:

A gaming application is deployed on four Amazon EC2 instances in a default VPC. The SysOps Administrator has noticed consistently high latency in responses as data is transferred among the four instances. There is no way for the Administrator to alter the application code.

The MOST effective way to reduce latency is to relaunch the EC2 instances in:

Options:

A.

a dedicated VPC.


B.

a single subnet inside the VPC.


C.

a placement group.


D.

a single Availability Zone.


Expert Solution
Questions # 65:

A SysOps administrator is managing a VPC network consisting of public and private subnets. Instances in the private subnets access the internet through a NAT gateway. A recent AWS bill shows that the NAT gateway charges have doubled. The administrator wants to identify which instances are creating the most network traffic.

How should this be accomplished?

Options:

A.

Enable flow logs on the NAT gateway elastic network interface and use Amazon CloudWatch insights to filter data based on the source IP addresses


B.

Run an AWS Cost and Usage report and group the findings by instance ID.


C.

Use the VPC traffic mirroring feature to send traffic to Amazon QuickSight.


D.

Use Amazon CloudWatch metrics generated by the NAT gateway for each individual instance.


Expert Solution
Questions # 66:

A SysOps Administrator is notified that an automated failover of an Amazon RDS database has occurred.

What are possible causes for this? (Choose two.)

Options:

A.

A read contention on the database.


B.

A storage failure on the primary database.


C.

A write contention on the database.


D.

Database corruption errors.


E.

The database instance type was changed.


Expert Solution
Questions # 67:

A Development team is designing an application that processes sensitive information within a hybrid deployment. The team needs to ensure the application data is protected both in transit and at rest.

Which combination of actions should be taken to accomplish this? (Choose two.)

Options:

A.

Use a VPN to set up a tunnel between the on-premises data center and the AWS resources


B.

Use AWS Certificate Manager to create TLS/SSL certificates


C.

Use AWS CloudHSM to encrypt the data


D.

Use AWS KMS to create TLS/SSL certificates


E.

Use AWS KMS to manage the encryption keys used for data encryption


Expert Solution
Questions # 68:

An e-commerce company wants to lower costs on its nightly jobs that aggregate the current day’s sales and store the results in Amazon S3. The jobs are currently run using multiple on-demand instances and the job take just under 2 hours to complete. If a job fails for any reason, it needs to be restarted from the beginning.

What method is the MOST cost effective based on these requirements?

Options:

A.

Use a mixture of On-Demand and Spot Instances for job execution.


B.

Submit a request for a Spot block to be used for job execution.


C.

Purchase Reserved Instances to be used for job execution.


D.

Submit a request for a one-time Spot Instance for job execution.


Expert Solution
Questions # 69:

A company designed a specialized Amazon EC2 instance configuration for its Data Scientists. The Data Scientists want to create end delete EC2 instances on their own, but are not comfortable with configuring all the settings for EC2 instances without assistance. The configuration runs proprietary software that must be kept private within the company's AWS accounts and should be available to the Data Scientists, but no other users within the accounts.

Which solution should a SysOps Administrator use to allow the Data Scientists to deploy their workloads with MINIMAL effort?

Options:

A.

Create an Amazon Machine Image (AMI) of the EC2 instance. Share the AMI with authorized accounts owned by the company. Allow the Data Scientists to create EC2 instances with this AMI.


B.

Distribute an AWS CloudFormation template containing the EC2 instance configuration to the Data Scientists from an Amazon S3 bucket. Set the S3 template object to be readable from the AWS Organization orgid.


C.

Publish the instance configuration to the Private Marketplace Share the Private Marketplace with the company's AWS accounts. Allow the Data Scientists to subscribe and launch the product from the Private Marketplace.


D.

Upload an AWS CloudFormation template to AWS Service Catalog. Allow the Data Scientists to provision and deprovision products from the company's AWS Service Catalog portfolio.


Expert Solution
Questions # 70:

A company uses AWS CloudFotmatlon to provision ils VPC. Amazon EC2 instances, and Amazon RDS DB instance The DB instance was deleted manually. When the stack was updated, it (ailed. During rollback, the stack returned the UPDATE_ROLLBACK_FAILEO state. A SysOps administrator must return the AWS Cloud Formation stack to a working state without interrupting existing resources.

Which solution will meet this requirement?

Options:

A.

Continue the update rollback while skipping the resources that have been manually deleted.


B.

Run the signal-resource command with the 08 instance name to proceed with the stack rollback.


C.

Recreate the DB Instance using the same resource name, and update the stack.


D.

Remove Amazon RDS from the template, and update the stack.


Expert Solution
Viewing page 7 out of 8 pages
Viewing questions 61-70 out of questions