AWS Exam Prep Webinar Notes
AWS Exam Prep Webinar Notes
- Security services
- Features of cloud
- Benefits of using AWS cloud
- High availability – making sure applications and resources are maintained
- How technical resources are shifting from on premises infrastructure management to the cloud –
responsibilities and priorities will be different
- How to optimize resources in the cloud
The ability to horizontally scale Amazon EC2 instances based on demand is an example of which concept
in the AWS Cloud value proposition?
Economy of scale
High availability
Which on-premises expense will be reduced if the company migrates their application to Amazon EC2?
https://aws-tc-largeobjects.s3.us-west-2.amazonaws.com/DEV-AWS-MO-CPE/Exercise+1+
%E2%80%93+Explore+the+AWS+Management+Console/story.html
- Customer is responsible for security in the cloud - responsible for data, who can have access to
data, setting up systems, encryptions, networking traffic
- Level of responsibility changes for each service
- AWS is responsible for security of the cloud – responsible for software, hardware, global
infrastructure
Which of the following is the customer’s responsibility under the AWS shared responsibility model?
Physical security
Patching Amazon EC2 instances – when you launch and EC2 instance, it is up to you to decide
how it will be maintained
How can I achieve compliance and security on AWS? Enforcing encryption, logs, etc.
Which service enables risk auditing by continuously monitoring and logging account activity, including
user actions in the AWS Management Console and AWS SDKs?
AWS Health – monitoring AWS infrastructure (data center going down, etc.)
Which of the following can limit Amazon Simple Storage Service (Amazon S3) bucket (similar to file)
access to specific users?
Network Security
AWS WAF (web application firewall) – firewall, protect application load balancers
Amazon CloudWatch – monitoring, metrics (CPU %, bytes in/out, requests to ALB, etc.)
AWS Marketplace
Which AWS service or feature can be used to prevent SQL injection attacks?
AWS WAF
https://aws-tc-largeobjects.s3.us-west-2.amazonaws.com/DEV-AWS-MO-CPE/Exercise+2+
%E2%80%93+Explore+IAM/story.html
Connectivity options:
Which components are required to build a successful site-to-site VPN connection on AWS?
Internet gateway
NAT gateway
Transit gateway
- Availability Zones – 1 or more data centers will exist in each availability zones, fiber optic lines
connect these data centers together, even ones from other availability zones
- Regions – more than 30, each region will have multiple availability zones (regions come first, then
availability zones)
- Edge locations – data centers that exist all around the world, cache information to improve
latency, on-ramp to the AWS backbone network
Which aspect of the AWS infrastructure enables global deployment of compute and storage?
Availability zones
Tags
Resource groups
Which aspect of the AWS infrastructure enables regional deployment of compute and storage?
Availability zones
Regions
Tags
Resource groups
Which AWS service can MOST efficiently import exabytes of data to the AWS cloud from an on-premise
environment?
AWS Snowmobile – large truck with its own independent tracking system
AWS Snowball – 80 TB
- Documentation
- Account-specific support
- AWS Partner Network
- AWS Trusted Advisor
Which AWS Support plan provides access to architectural and operational reviews, as well as 24/7
access to senior cloud support engineers through email, online chat, and phone?
Basic
Business
Developer
Enterprise
https://aws-tc-largeobjects.s3.us-west-2.amazonaws.com/DEV-AWS-MO-CPE/exercise-3.html
A company has an application that only needs to run for 2 hours at any time during a day. Which Amazon
EC2 instance type will be MOST cost-effective for this application?
Dedicated instances -
How can Amazon EC2 Reserved instances be shared across multiple AWS accounts?
Which AWS service or feature allows a company to visualize, understand, and manage AWS costs and
usage over time?
Additional resources:
https://d1.awsstatic.com/training-and-certification/docs-cloud-practitioner/AWS-Certified-Cloud-
Practitioner_Exam-Guide.pdf
https://d1.awsstatic.com/training-and-certification/ramp-up_guides/Ramp-
Up_Guide_Cloud_Essentials.pdf
https://aws.amazon.com/compliance/shared-responsibility-model/
https://d1.awsstatic.com/training-and-certification/docs-cloud-practitioner/AWS-Certified-Cloud-
Practitioner_Sample-Questions.pdf