AWS
AWS
1. Define and explain the three basic types of cloud services and the AWS products
that are built based on them?
The three basic types of cloud services are:
• Computing
• Storage
• Networking
Here are some of the AWS products that are built based on the three cloud service
types:
Computing - These include EC2, Elastic Beanstalk, Lambda, Auto-Scaling, and Lightsat.
Storage - These include S3, Glacier, Elastic Block Storage, Elastic File System.
AWS regions are separate geographical areas, like the US-West 1 (North California) and
Asia South (Mumbai). On the other hand, availability zones are the areas that are
present inside the regions. These are generally isolated zones that can replicate
themselves whenever required.
3. What is auto-scaling?
Auto-scaling is a function that allows you to provision and launch new instances
whenever there is a demand. It allows you to automatically increase or decrease
resource capacity in relation to the demand.
2. Save the code in an S3 bucket, which serves as a repository for the code.
3. Use AWS CloudFormation to call the bucket and create a stack on your
template.
4. CloudFormation reads the file and understands the services that are called,
their order, the relationship between the services, and provisions the services
one after the other.
You can upgrade or downgrade a system with near-zero downtime using the following
steps of migration:
• Install applications
• If working, deploy the new instance and replace the older instance
• Once it’s deployed, you can upgrade or downgrade the system with near-zero
downtime.
7. What are the tools and techniques that you can use in AWS to identify if you are
paying more than you should be, and how to correct it?
You can know that you are paying the correct amount for the resources that you are
using by employing the following resources:
It is a dashboard in the cost management console that shows you the top five
most used services. This will let you know how much money you are spending
on the resources in question.
• Cost Explorer
There are cost explorer services available that will help you to view and
analyze your usage costs for the last 13 months. You can also get a cost
forecast for the upcoming three months.
• AWS Budgets
This allows you to plan a budget for the services. Also, it will enable you to
check if the current plan meets your budget and the details of how you use the
services.
• Cost Allocation Tags
This helps identify the resource that costs more in a particular month. It lets
you organize your resources and cost allocation tags to keep track of your
AWS costs.
8. Is there any other alternative tool to log into the cloud environment other than
console?
• Putty
• AWS SDK
• Eclipse
The essential services that you can use are Amazon CloudWatch Logs, store them
in Amazon S3, and then use Amazon Elastic Search to visualize them. You can use
Amazon Kinesis Firehose to move the data from Amazon S3 to Amazon ElasticSearch.
10. What are the native AWS Security logging capabilities?
Most of the AWS services have their logging options. Also, some of them have account-
level logging, like in AWS CloudTrail, AWS Config, and others. Let’s take a look at two
services in specific:
AWS CloudTrail
This is a service that provides a history of the AWS API calls for every account. It lets
you perform security analysis, resource change tracking, and compliance auditing of
your AWS environment as well. The best part about this service is that it enables you to
configure it to send notifications via AWS SNS when new logs are delivered.
AWS Config
This helps you understand the configuration changes that happen in your environment.
This service provides an AWS inventory that includes configuration history,
configuration change notifications, and relationships between AWS resources. It can
also be configured to send information via AWS SNS when new logs are delivered.
11. What is a DDoS attack, and what services can minimize them?
• AWS Shield
• AWS WAF
• Amazon Route53
• Amazon CloudFront
• ELB
• VPC
12. You are trying to provide a service in a particular region, but you do not see the
service in that region. Why is this happening, and how do you fix it?
Not all Amazon AWS services are available in all regions. When Amazon initially
launches a new service, it doesn’t get immediately published in all the regions. They
start small and then slowly expand to other regions. So, if you don’t see a specific
service in your region, chances are the service hasn’t been published in your region yet.
However, if you want to get the service that is not available, you can switch to the
nearest region that provides the services.
13. How do you set up a system to monitor website metrics in real-time in AWS?
Amazon CloudWatch helps you to monitor the application status of various AWS
services and custom events. It helps you to monitor:
• Scheduled events
It is a fully virtualized hardware, where all the virtual machines act separate
from each other. These virtual machines boot by executing a master boot
record in the root block device of your image.
• Paravirtualization (PV)
15. Name some of the AWS services that are not region-specific
• Route 53
• CloudFront
16. What are the differences between NAT Gateways and NAT Instances?
While both NAT Gateways and NAT Instances serve the same function, they still have
some key differences.
• Helps in monitoring the AWS environments like CPU utilization, EC2, Amazon
RDS instances, Amazon SQS, S3, Load Balancer, SNS, etc.
18. What is an Elastic Transcoder?
To support multiple devices with various resolutions like laptops, tablets, and
smartphones, we need to change the resolution and format of the video. This can be
done easily by an AWS Service tool called the Elastic Transcoder, which is a media
transcoding in the cloud that exactly lets us do the needful. It is easy to use, cost-
effective, and highly scalable for businesses and developers.
19. With specified private IP addresses, can an Amazon Elastic Compute Cloud (EC2)
instance be launched? If so, which Amazon service makes it possible?
Availability zones are geographically separate locations. As a result, failure in one zone
has no effect on EC2 instances in other zones. When it comes to regions, they may have
one or more availability zones. This configuration also helps to reduce latency and
costs.
The image that will be used to boot an EC2 instance is stored on the root device drive.
This occurs when an Amazon AMI runs a new EC2 instance. And this root device
volume is supported by EBS or an instance store. In general, the root device data on
Amazon EBS is not affected by the lifespan of an EC2 instance.
22. Mention the different types of instances in Amazon EC2 and explain its features.
5. Storage Optimised: They handle tasks that require sequential read and write
access to big data sets on local storage.
23. Will your standby RDS be launched in the same availability zone as your primary?
No, standby instances are launched in different availability zones than the primary,
resulting in physically separate infrastructures. This is because the entire purpose of
standby instances is to prevent infrastructure failure. As a result, if the primary instance
fails, the backup instance will assist in recovering all of the data.
24. What is the difference between a Spot Instance, an On-demand Instance, and a
Reserved Instance?
Spot instances are unused EC2 instances that users can use at a reduced cost.
When you use on-demand instances, you must pay for computing resources without
making long-term obligations.
Reserved instances, however, allow you to specify attributes such as instance type,
platform, tenancy, region, and availability zone. When instances in certain availability
zones are used, reserved instances offer significant reductions and capacity
reservations.
25. How would you address a situation in which the relational database engine
frequently collapses when traffic to your RDS instances increases, given that the RDS
instance replica is not promoted as the master instance?
A larger RDS instance type is required for handling significant quantities of traffic, as
well as producing manual or automated snapshots to recover data if the RDS instance
fails.
To make limit administration easier for customers, Amazon EC2 now offers the option
to switch from the current 'instance count-based limitations' to the new 'vCPU Based
restrictions.' As a result, when launching a combination of instance types based on
demand, utilization is measured in terms of the number of vCPUs.
The point-in-time backups of EC2 instances, block storage drives, and databases are
known as snapshots. They can be produced manually or automatically at any moment.
Your resources can always be restored using snapshots, even after they have been
created. These resources will also perform the same tasks as the original ones from
which the snapshots were made.
Become an AWS Wizard with our in-depth Cloud Architect Master’s Program. Enroll
now!
28. On an EC2 instance, an application of yours is active. Once the CPU usage on your
instance hits 80%, you must reduce the load on it. What strategy do you use to complete
the task?
AWS Auto Scaling groups can create an application load balancer that spans many
availability zones. Mount a target on each instance and save data on Amazon EFS.
30. Your business prefers to use its email address and domain to send and receive
compliance emails. What service do you recommend to implement it easily and budget-
friendly?
This can be accomplished by using Amazon Simple Email Service (Amazon SES), a
cloud-based email-sending service.
Amazon offers the Simple Email Service (SES) service, which allows you to send bulk
emails to customers swiftly at a minimal cost.
PaaS supports the operation of multiple cloud platforms, primarily for the development,
testing, and oversight of the operation of the program.
34. What is the maximum limit of elastic IPs anyone can produce?
A maximum of five elastic IP addresses can be generated per location and AWS
account.
Be Prepared to Answer All AWS Questions!
EC2 is short for Elastic Compute Cloud, and it provides scalable computing capacity.
Using Amazon EC2 eliminates the need to invest in hardware, leading to faster
development and deployment of applications. You can use Amazon EC2 to launch as
many or as few virtual servers as needed, configure security and networking, and
manage storage. It can scale up or down to handle changes in requirements, reducing
the need to forecast traffic. EC2 provides virtual computing environments called
“instances.”
36. What Are Some of the Security Best Practices for Amazon EC2?
Security best practices for Amazon EC2 include using Identity and Access Management
(IAM) to control access to AWS resources; restricting access by only allowing trusted
hosts or networks to access ports on an instance; only opening up those permissions
you require, and disabling password-based logins for instances launched from your
AMI.
Amazon S3 can be used for instances with root devices backed by local instance
storage. That way, developers have access to the same highly scalable, reliable, fast,
inexpensive data storage infrastructure that Amazon uses to run its own global network
of websites. To execute systems in the Amazon EC2 environment, developers load
Amazon Machine Images (AMIs) into Amazon S3 and then move them between
Amazon S3 and Amazon EC2.
Amazon EC2 and Amazon S3 are two of the best-known web services that make up
AWS.
38. What is the difference between stopping and terminating an EC2 instance?
While you may think that both stopping and terminating are the same, there is a
difference. When you stop an EC2 instance, it performs a normal shutdown on the
instance and moves to a stopped state. However, when you terminate the instance, it is
transferred to a stopped state, and the EBS volumes attached to it are deleted and can
never be recovered.
39. What are the different types of EC2 instances based on their costs?
• On-demand Instance
It is cheap for a short time but not when taken for the long term
• Spot Instance
It is less expensive than the on-demand instance and can be bought through
bidding.
• Reserved Instance
If you are planning to use an instance for a year or more, then this is the right
one for you.
40. How do you set up SSH agent forwarding so that you do not have to copy the key
every time you log in?
41. What are Solaris and AIX operating systems? Are they available with AWS?
Solaris is an operating system that uses SPARC processor architecture, which is not
supported by the public cloud currently.
AIX is an operating system that runs only on Power CPU and not on Intel, which means
that you cannot create AIX instances in EC2.
Since both the operating systems have their limitations, they are not currently available
with AWS.
There are many types of AMIs, but some of the common AMIs are:
• Hybrid AMI
The Key-Pairs are password-protected login credentials for the Virtual Machines that
are used to prove our identity while connecting the Amazon EC2 instances. The Key-
Pairs are made up of a Private Key and a Public Key which lets us connect to the
instances.
S3 is short for Simple Storage Service, and Amazon S3 is the most supported storage
platform available. S3 is object storage that can store and retrieve any amount of data
from anywhere. Despite that versatility, it is practically unlimited as well as cost-
effective because it is storage available on demand. In addition to these benefits, it
offers unprecedented levels of durability and availability. Amazon S3 helps to manage
data for cost optimization, access control, and compliance.
46. How can you recover/login to an EC2 instance for which you have lost the key?
Follow the steps provided below to recover an EC2 instance if you have lost the key:
47. What are some critical differences between AWS S3 and EBS?
You need to follow the four steps provided below to allow access. They are:
To transfer terabytes of data outside and inside of the AWS environment, a small
application called SnowBall is used.
1. A job is created.
The Storage Classes that are available in the Amazon S3 are the following:
52. What Is Amazon Virtual Private Cloud (VPC) and Why Is It Used?
A VPC is the best way of connecting to your cloud resources from your own data center.
Once you connect your datacenter to the VPC in which your instances are present, each
instance is assigned a private IP address that can be accessed from your data center.
That way, you can access your public cloud resources as if they were on your own
private network.
53. VPC is not resolving the server through DNS. What might be the issue, and how can
you fix it?
To fix this problem, you need to enable the DNS hostname resolution, so that the
problem resolves itself.
55. Name and explain some security products and features available in VPC?
• Security groups - This acts as a firewall for the EC2 instances, controlling
inbound and outbound traffic at the instance level.
• Network access control lists - It acts as a firewall for the subnets, controlling
inbound and outbound traffic at the subnet level.
• Flow logs - These capture the inbound and outbound traffic from the network
interfaces in your VPC.
We can have up to 200 Subnets per Amazon Virtual Private Cloud (VPC).
58. When Would You Prefer Provisioned IOPS over Standard Rds Storage?
You would use Provisioned IOPS when you have batch-oriented workloads. Provisioned
IOPS delivers high IO rates, but it is also expensive. However, batch processing
workloads do not require manual intervention.
59. How Do Amazon Rds, Dynamodb, and Redshift Differ from Each Other?
Businesses use cloud computing in part to enable faster disaster recovery of critical IT
systems without the cost of a second physical site. The AWS cloud supports many
popular disaster recovery architectures ranging from small customer workload data
center failures to environments that enable rapid failover at scale. With data centers all
over the world, AWS provides a set of cloud-based disaster recovery services that
enable rapid recovery of your IT infrastructure and data.
61. How can you add an existing instance to a new Auto Scaling group?
Here’s how you can add an existing instance to a new Auto Scaling group:
• Choose Actions -> Instance Settings -> Attach to Auto Scaling Group
• Once done, you can successfully add the instance to a new Auto Scaling
group
62. What are the factors to consider while migrating to Amazon Web Services?
• Workforce Productivity
• Cost avoidance
• Operational resilience
• Business agility
RTO or Recovery Time Objective is the maximum time your business or organization is
willing to wait for a recovery to complete in the wake of an outage. On the other hand,
RPO or Recovery Point Objective is the maximum amount of data loss your company is
willing to accept as measured in time.
64. If you would like to transfer vast amounts of data, which is the best option among
Snowball, Snowball Edge, and Snowmobile?
AWS Snowball is basically a data transport solution for moving high volumes of data
into and out of a specified AWS region. On the other hand, AWS Snowball Edge adds
additional computing functions apart from providing a data transport solution. The
snowmobile is an exabyte-scale migration service that allows you to transfer data up to
100 PB.
The T2 Instances are intended to give the ability to burst to a higher performance
whenever the workload demands it and also provide a moderate baseline performance
to the CPU.
The T2 instances are General Purpose instance types and are low in cost as well. They
are usually used wherever workloads do not consistently or often use the CPU.
AWS IAM allows an administrator to provide multiple users and groups with granular
access. Various user groups and users may require varying levels of access to the
various resources that have been developed. We may assign roles to users and create
roles with defined access levels using IAM.
It further gives us Federated Access, which allows us to grant applications and users
access to resources without having to create IAM Roles.
Connection Draining is an AWS service that allows us to serve current requests on the
servers that are either being decommissioned or updated.
By enabling this Connection Draining, we let the Load Balancer make an outgoing
instance finish its existing requests for a set length of time before sending it any new
requests. A departing instance will immediately go off if Connection Draining is not
enabled, and all pending requests will fail.
Administrator Access without the ability to control users and permissions is provided to a Power
User. A Power User Access user cannot provide permissions to other users but has the ability to
modify, remove, view, and create resources.
Transition to Cloud Operations in Just 3 Days!
Here are some differences between AWS CloudFormation and AWS Elastic Beanstalk:
• AWS CloudFormation helps you provision and describe all of the infrastructure
resources that are present in your cloud environment. On the other hand, AWS
Elastic Beanstalk provides an environment that makes it easy to deploy and
run applications in the cloud.
AWS CloudFormation templates are YAML or JSON formatted text files that are
comprised of five essential elements, they are:
• Template parameters
• Output values
• Data tables
• Resources
• File format version
71. What happens when one of the resources in a stack cannot be created
successfully?
If the resource in the stack cannot be created, then the CloudFormation automatically
rolls back and terminates all the resources that were created in the CloudFormation
template. This is a handy feature when you accidentally exceed your limit of Elastic IP
addresses or don’t have access to an EC2 AMI.
Use the following steps in order to automate EC2 backup using EBS:
1. Get the list of instances and connect to AWS through API to list the Amazon
EBS volumes that are attached locally to the instance.
2. List the snapshots of each volume, and assign a retention period of the
snapshot. Later on, create a snapshot of each volume.
3. Make sure to remove the snapshot if it is older than the retention period.
EBS is a kind of permanent storage in which the data can be restored at a later point.
When you save data in the EBS, it stays even after the lifetime of the EC2 instance. On
the other hand, Instance Store is temporary storage that is physically attached to a host
machine. With an Instance Store, you cannot detach one instance and attach it to
another. Unlike in EBS, data in an Instance Store is lost if any instance is stopped or
terminated.
74. Can you take a backup of EFS like EBS, and if yes, how?
Yes, you can use the EFS-to-EFS backup solution to recover from unintended changes or
deletion in Amazon EFS. Follow these steps:
3. Use the region selector in the console navigation bar to select region
4. Verify if you have chosen the right template on the Select Template page
6. Review the parameters for the template and modify them if necessary
• As per procedure and best practices, take snapshots of the EBS volumes on
Amazon S3.
• This allows you to create, copy, and delete Amazon EBS snapshots.
AWS Interview Questions for Elastic Load Balancing
77. What are the different uses of the various load balancers in AWS Elastic Load
Balancing?
Used if you require extreme performance and static IPs for your applications.
78. What Is Identity and Access Management (IAM) and How Is It Used?
Identity and Access Management (IAM) is a web service for securely controlling access
to AWS services. IAM lets you manage users, security credentials such as access keys,
and permissions that control which AWS resources users and applications can access.
79. How can you use AWS WAF in monitoring your AWS applications?
AWS WAF or AWS Web Application Firewall protects your web applications from web
exploitations. It helps you control the traffic flow to your applications. With WAF, you
can also create custom rules that block common attack patterns. It can be used for
three cases: allow all requests, prevent all requests, and count all requests for a new
policy.
80. What are the different AWS IAM categories that you can control?
• Create and manage policies to grant access to AWS services and resources
81. What are the policies that you can set for your users’ passwords?
• You can have the AWS users contact an account administrator when the user
has allowed the password to expire.
82. What is the difference between an IAM role and an IAM user?
The two key differences between the IAM role and IAM user are:
• An IAM role is an IAM entity that defines a set of permissions for making AWS
service requests, while an IAM user has permanent long-term credentials and
is used to interact with the AWS services directly.
• In the IAM role, trusted entities, like IAM users, applications, or an AWS
service, assume roles whereas the IAM user has full access to all the AWS
IAM functionalities.
There are two types of managed policies; one that is managed by you and one that is
managed by AWS. They are IAM resources that express permissions using IAM policy
language. You can create, edit, and manage them separately from the IAM users,
groups, and roles to which they are attached.
84. Can you give an example of an IAM policy and a policy summary?
Here’s an example of an IAM policy to grant access to add, update, and delete objects
from a specific folder.
Here’s an example of a policy summary:
• Manage IAM users and their access - AWS IAM provides secure resource
access to multiple users
• Manage access for federated users – AWS allows you to provide secure
access to resources in your AWS account to your employees and applications
without creating IAM roles
Amazon Route 53 is a scalable and highly available Domain Name System (DNS). The
name refers to TCP or UDP port 53, where DNS server requests are addressed.
87. What Is Cloudtrail and How Do Cloudtrail and Route 53 Work Together?
CloudTrail is a service that captures information about every request sent to the
Amazon Route 53 API by an AWS account, including requests that are sent by IAM
users. CloudTrail saves log files of these requests to an Amazon S3 bucket. CloudTrail
captures information about all requests. You can use information in the CloudTrail log
files to determine which requests were sent to Amazon Route 53, the IP address that
the request was sent from, who sent the request, when it was sent, and more.
88. What is the difference between Latency Based Routing and Geo DNS?
The Geo Based DNS routing takes decisions based on the geographic location of the
request. Whereas, the Latency Based Routing utilizes latency measurements between
networks and AWS data centers. Latency Based Routing is used when you want to give
your customers the lowest latency possible. On the other hand, Geo Based routing is
used when you want to direct the customer to different websites based on the country
or region they are browsing from.
Domain
Hosted zone
A hosted zone is a container that holds information about how you want to route traffic
on the internet for a specific domain. For example, lms.simplilearn.com is a hosted
zone.
90. How does Amazon Route 53 provide high availability and low latency?
Amazon is a global service and consequently has DNS services globally. Any customer
creating a query from any part of the world gets to reach a DNS server local to them that
provides low latency.
Dependency
Optimal Locations
Route 53 uses a global anycast network to answer queries from the optimal position
automatically.
AWS CloudTrail records user API activity on your account and allows you to access
information about the activity. Using CloudTrail, you can get full details about API
actions such as the identity of the caller, time of the call, request parameters, and
response elements. On the other hand, AWS Config records point-in-time configuration
details for your AWS resources as Configuration Items (CIs).
You can use a CI to ascertain what your AWS resource looks like at any given point in
time. Whereas, by using CloudTrail, you can quickly answer who made an API call to
modify the resource. You can also use Cloud Trail to detect if a security group was
incorrectly configured.
92. Can AWS Config aggregate data across different AWS accounts?
Yes, you can set up AWS Config to deliver configuration updates from different
accounts to one S3 bucket, once the appropriate IAM policies are applied to the S3
bucket.
Kickstart your career growth in cloud computing with our AWS Cloud Architect Master’s
Program. Join one of the world’s fastest-growing industries from the ground up!
AWS Interview Questions for Database
Reserved instances and on-demand instances are the same when it comes to function.
They only differ in how they are billed.
94. Which type of scaling would you recommend for RDS and why?
There are two types of scaling - vertical scaling and horizontal scaling. Vertical scaling
lets you vertically scale up your master database with the press of a button. A database
can only be scaled vertically, and there are 18 different instances in which you can
resize the RDS. On the other hand, horizontal scaling is good for replicas. These are
read-only replicas that can only be done through Amazon Aurora.
95. What is a maintenance window in Amazon RDS? Will your DB instance be available
during maintenance events?
RDS maintenance window lets you decide when DB instance modifications, database
engine version upgrades, and software patching have to occur. The automatic
scheduling is done only for patches that are related to security and durability. By default,
there is a 30-minute value assigned as the maintenance window and the DB instance
will still be available during these events though you might observe a minimal effect on
performance.
There are two consistency models In DynamoDB. First, there is the Eventual
Consistency Model, which maximizes your read throughput. However, it might not
reflect the results of a recently completed write. Fortunately, all the copies of data
usually reach consistency within a second. The second model is called the Strong
Consistency Model. This model has a delay in writing the data, but it guarantees that
you will always see the updated data every time you read it.
1. Suppose you are a game designer and want to develop a game with single-digit
millisecond latency, which of the following database services would you use?
Amazon DynamoDB
2. If you need to perform real-time monitoring of AWS services and get actionable
insights, which services would you use?
Amazon CloudWatch
3. As a web developer, you are developing an app, targeted primarily for the mobile
platform. Which of the following lets you add user sign-up, sign-in, and access control to
your web and mobile apps quickly and easily?
Amazon Cognito
4. You are a Machine Learning Engineer who is on the lookout for a solution that will
discover sensitive information that your enterprise stores in AWS and then use NLP to
classify the data and provide business-related insights. Which among the services
would you choose?
AWS Macie
5. You are the system administrator in your company, which is running most of its
infrastructure on AWS. You are required to track your users and keep tabs on how they
are being authenticated. You wish to create and manage AWS users and use
permissions to allow and deny their access to AWS resources. Which of the following
services suits you best?
AWS IAM
6. Which service do you use if you want to allocate various private and public IP
addresses to make them communicate with the internet and other instances?
Amazon VPC
7. This service provides you with cost-efficient and resizable capacity while automating
time-consuming administration tasks
9. This service is used to make it easy to deploy, manage, and scale containerized
applications using Kubernetes on AWS. Which of the following is this AWS service?
10. This service lets you run code without provisioning or managing servers. Select the
correct service from the below options
AWS Lambda
11. As an AWS Developer, using this pay-per-use service, you can send, store, and
receive messages between software components. Which of the following is it?
12. Which service do you use if you would like to host a real-time audio and video
conferencing application on AWS, this service provides you with a secure and easy-to-
use application?
Amazon Chime
13. As your company's AWS Solutions Architect, you are in charge of designing
thousands of similar individual jobs. Which of the following services best meets your
requirements?
AWS Batch
1. Suppose you are a game designer and want to develop a game with single-digit
millisecond latency, which of the following database services would you use?
1. Amazon RDS
2. Amazon Neptune
3. Amazon Snowball
4. Amazon DynamoDB
2. If you need to perform real-time monitoring of AWS services and get actionable
insights, which services would you use?
2. Amazon GuardDuty
3. Amazon CloudWatch
4. Amazon EBS
3. As a web developer, you are developing an app, targeted especially for the mobile
platform. Which of the following lets you add user sign-up, sign-in, and access control to
your web and mobile apps quickly and easily?
1. AWS Shield
2. AWS Macie
3. AWS Inspector
4. Amazon Cognito
4. You are a Machine Learning Engineer who is on the lookout for a solution that will
discover sensitive information that your enterprise stores in AWS and then use NLP to
classify the data and provide business-related insights. Which among the services
would you choose?
2. AWS IAM
3. AWS Macie
4. AWS CloudHSM
5. You are the system administrator in your company, which is running most of its
infrastructure on AWS. You are required to track your users and keep tabs on how they
are being authenticated. You wish to create and manage AWS users and use
permissions to allow and deny their access to AWS resources. Which of the following
services suits you best?
2. AWS Shield
4. AWS IAM
6. Which service do you use if you want to allocate various private and public IP
addresses in order to make them communicate with the internet and other instances?
1. Amazon Route 53
2. Amazon VPC
4. Amazon CloudFront
7. This service provides you with cost-efficient and resizable capacity while automating
time-consuming administration tasks
2. Amazon Elasticache
3. Amazon VPC
4. Amazon Glacier
3. Amazon DevPay
4. Multi-Factor Authentication
9. This service is used to make it easy to deploy, manage, and scale containerized
applications using Kubernetes on AWS. Which of the following is this AWS service?
2. AWS Batch
4. Amazon Lightsail
10. This service lets you run code without provisioning or managing servers. Select the
correct service from the below options
2. AWS Lambda
3. AWS Batch
4. Amazon Inspector
11. As an AWS Developer, using this pay-per-use service, you can send, store and
receive messages between software components. Which of the following is it?
2. Amazon MQ
12. Which service do you use if you would like to host real-time audio and video
conferencing application on AWS, this service provides you with a secure and easy-to-
use application?
1. Amazon Chime
2. Amazon WorkSpaces
3. Amazon MQ
4. Amazon AppStream
13. As your company's AWS Solutions Architect, you are in charge of designing
thousands of similar individual jobs. Which of the following services best meets your
requirements?
2. AWS Snowball
3. AWS Fargate
4. AWS Batch
14. You are a Machine Learning engineer and you are looking for a service that helps
you build and train Machine Learning models in AWS. Which among the following are
we referring to?
1. Amazon SageMaker
2. AWS DeepLens
3. Amazon Comprehend
4. Device Farm
15. Imagine that you are working for your company's IT team. You are assigned to
adjusting the capacity of AWS resources based on the incoming application and
network traffic. How would you do it?
1. Amazon VPC
2. AWS IAM
3. Amazon Inspector
16. This cross-platform video game development engine that supports PC, Xbox,
Playstation, iOS, and Android platforms allows developers to build and host their games
on Amazon's servers.
1. Amazon GameLift
2. AWS Greengrass
3. Amazon Lumberyard
4. Amazon Sumerian
17. You are the Project Manager of your company's Cloud Architects team. You are
required to visualize, understand and manage your AWS costs and usage over time.
Which of the following services works best?
1. AWS Budgets
3. Amazon WorkMail
4. Amazon Connect
18. You are the chief Cloud Architect at your company. How can you automatically
monitor and adjust computer resources to ensure maximum performance and
efficiency of all scalable resources?
1. AWS CloudFormation
2. AWS Aurora
19. As a database administrator. you will employ a service that is used to set up and
manage databases such as MySQL, MariaDB, and PostgreSQL. Which service are we
referring to?
1. Amazon Aurora
2. AWS RDS
3. Amazon Elasticache
20. A part of your marketing work requires you to push messages onto Google,
Facebook, Windows, and Apple through APIs or AWS Management Console. Which of
the following services do you use?
1. AWS CloudTrail
2. AWS Config
3. Amazon Chime
Conclusion
Hope this article helped prepare for any kind of AWS interviews going forward. If you
want to enhance your AWS skills, we highly recommend you check Simplilearn’s Post
Graduate Program in Cloud Computing. This program, designed in collaboration with
Caltech CTME, can help you gain the right skills and prepare you for any AWS interview.
The AWS Solution Architect Certification, a highly regarded industry credential, is
frequently used as the foundation of interview discussions in 2025. Candidates should
be prepared to answer in-depth questions that will evaluate not only their technical
knowledge and practical skills in designing distributed systems on AWS, but also their
ability to handle real-world scenarios.
FAQs
No, not all of its services offer usage that is specific to a particular place. But the
majority of the services are region-specific.
A storage system used to store persistent data is called elastic block storage (EBS).
Block-level storage volumes and EC2 instances can be used with EBS for throughput-
and transaction-intensive workloads of any scale.
Amazon Elastic Compute Cloud (Amazon EC2) is a computing capability that is scalable
on the Amazon Web Services (AWS) Cloud.
Using Amazon EC2 eliminates the need to invest in hardware upfront, allowing you to
develop and deploy apps more quickly.