Free AWS Certified Cloud Practitioner Exam Braindumps (page: 51)

Page 50 of 180

A company needs to centrally configure and manage Amazon VPC security groups across multiple AWS accounts within an organization in AWS Organizations.
Which AWS service should the company use to meet these requirements?

  1. AWS Firewall Manager
  2. Amazon GuardDuty
  3. Amazon Detective
  4. AWS WAF

Answer(s): A



Which task is a responsibility of AWS, according to the AWS shared responsibility model?

  1. Configure identity and access management for applications.
  2. Manage encryption options for data that is stored on AWS.
  3. Configure security groups for Amazon EC2 instances.
  4. Maintain the physical hardware of the infrastructure.

Answer(s): D



A company has an Amazon EC2 instance in a private subnet. The company wants to initiate a connection to the internet to pull operating system updates while preventing traffic from the internet from accessing the EC2 instance.
Which AWS managed service allows this?

  1. VPC endpoint
  2. NAT gateway
  3. Amazon PrivateLink
  4. VPC peering

Answer(s): B



Which actions are the responsibility of AWS, according to the AWS shared responsibility model? (Choose two.)

  1. Securing the virtualization layer
  2. Patching the operating system on Amazon EC2 instances
  3. Enforcing a strict password policy for IAM users
  4. Patching the operating system on Amazon RDS instances
  5. Configuring security groups and network ACLs

Answer(s): A,D






Post your Comments and Discuss Amazon AWS Certified Cloud Practitioner exam with other Community members:

AWS Certified Cloud Practitioner Discussions & Posts