Amazon SOA-C02 Exam
AWS Certified SysOps Administrator (SOA-C01) (Page 19 )

Updated On: 7-Feb-2026

A company wants to prohibit its developers from using a particular family of Amazon EC2 instances. The company uses AWS Organizations and wants to apply the restriction across multiple accounts.
What is the MOST operationally efficient way for the company to apply service control policies (SCPs) to meet these requirements?

  1. Add the accounts to an organizational unit (OU). Apply the SCPs to the OU.
  2. Add the accounts to resource groups in AWS Resource Groups. Apply the SCPs to the resource groups.
  3. Apply the SCPs to each developer account
  4. Enroll the accounts with AWS Control Tower. Apply the SCPs to the AWS Control Tower management account.

Answer(s): A



An application is running on an Amazon EC2 instance in a VPC with the default DHCP option set. The application connects to an on-premises Microsoft SQL
Server database with the DNS name mssql.example.com. The application is unable to resolve the database DNS name.
Which solution will fix this problem?

  1. Create an Amazon Route 53 Resolver inbound endpoint. Add a forwarding rule for the domain example.com. Associate the forwarding rule with the VPC.
  2. Create an Amazon Route 53 Resolver inbound endpoint. Add a system rule for the domain example.com. Associate the system rule with the VPC.
  3. Create an Amazon Route 53 Resolver outbound endpoint. Add a forwarding rule for the domain example.com. Associate the forwarding rule with the VP
  4. Create an Amazon Route 53 Resolver outbound endpoint. Add a system rule for the domain example.com. Associate the system rule with the VPC.

Answer(s): C



A company's application is hosted by an internet provider at app.example.com. The company wants to access the application by using www.company.com, which the company owns and manages with Amazon Route 53.
Which Route 53 record should be created to address this?

  1. A record
  2. Alias record
  3. CNAME record
  4. Pointer (PTR) record

Answer(s): C



A company expanded its web application to serve a worldwide audience. A SysOps administrator has implemented a multi-Region AWS deployment for all production infrastructure. The SysOps administrator must route traffic based on the location of resources.
Which Amazon Route 53 routing policy should the SysOps administrator use to meet this requirement?

  1. Geolocation routing policy
  2. Geoproximity routing policy
  3. Latency-based routing policy
  4. Multivalue answer routing policy

Answer(s): B



A SysOps administrator wants to upload a file that is 1 TB in size from on-premises to an Amazon S3 bucket using multipart uploads.
What should the SysOps administrator do to meet this requirement?

  1. Upload the file using the S3 console.
  2. Use the s3api copy-object command.
  3. Use the s3api put-object command.
  4. Use the s3 cp command

Answer(s): D






Post your Comments and Discuss Amazon SOA-C02 exam prep with other Community members:

Join the SOA-C02 Discussion