Free Amazon CLF-C01 Exam Braindumps (page: 28)

Which tasks are the customer’s responsibility, according to the AWS shared responsibility model? (Choose two.)

  1. Establish the global infrastructure.
  2. Perform client-side data encryption.
  3. Configure IAM credentials.
  4. Secure edge locations.
  5. Patch Amazon RDS DB instances.

Answer(s): B,C



A developer has been hired by a large company and needs AWS credentials.
Which are security best practices that should be followed? (Choose two.)

  1. Grant the developer access to only the AWS resources needed to perform the job.
  2. Share the AWS account root user credentials with the developer.
  3. Add the developer to the administrator’s group in AWS IAM.
  4. Configure a password policy that ensures the developer’s password cannot be changed.
  5. Ensure the account password policy requires a minimum length.

Answer(s): A,E



A company has multiple AWS accounts that include compute workloads that cannot be interrupted. The company wants to obtain billing discounts that are based on the company’s use of AWS services.
Which AWS feature or purchasing option will meet these requirements?

  1. Resource tagging
  2. Consolidated billing
  3. Pay-as-you-go pricing
  4. Spot Instances

Answer(s): B



A user wants to allow applications running on an Amazon EC2 instance to make calls to other AWS services. The access granted must be secure.
Which AWS service or feature should be used?

  1. Security groups
  2. AWS Firewall Manager
  3. IAM roles
  4. IAM user SSH keys

Answer(s): C






Post your Comments and Discuss Amazon CLF-C01 exam prep with other Community members:

CLF-C01 Exam Discussions & Posts