Free SOA-C02 Exam Braindumps (page: 44)

Page 44 of 106

A company needs to automatically monitor an AWS account for potential unauthorized AWS Management Console logins from multiple geographic locations.

Which solution will meet this requirement?

  1. Configure Amazon Cognito to detect any compromised IAM credentials.
  2. Set up Amazon Inspector. Scan and monitor resources for unauthorized logins.
  3. Set up AWS Config. Add the iam-policy-blacklisted-check managed rule to the account.
  4. Configure Amazon GuardDuty to monitor the UnauthorizedAccess:IAMUser/ConsoleLoginSuccess.B finding.

Answer(s): D



A company has an Amazon RDS DB instance. The company wants to implement a caching service while maintaining high availability.

Which combination of actions will meet these requirements? (Choose two.)

  1. Add Auto Discovery to the data store.
  2. Create an Amazon ElastiCache for Memcached data store.
  3. Create an Amazon ElastiCache for Redis data store.
  4. Enable Multi-AZ for the data store.
  5. Enable Multi-threading for the data store.

Answer(s): C,D



A company monitors its account activity using AWS CloudTrail, and is concerned that some log files are being tampered with after the logs have been delivered to the account’s Amazon S3 bucket.

Moving forward, how can the SysOps administrator confirm that the log files have not been modified after being delivered to the S3 bucket?

  1. Stream the CloudTrail logs to Amazon CloudWatch Logs to store logs at a secondary location.
  2. Enable log file integrity validation and use digest files to verify the hash value of the log file.
  3. Replicate the S3 log bucket across regions, and encrypt log files with S3 managed keys.
  4. Enable S3 server access logging to track requests made to the log bucket for security audits.

Answer(s): B



A SysOps administrator is reviewing AWS Trusted Advisor warnings and encounters a warning for an S3 bucket policy that has open access permissions. While discussing the issue with the bucket owner, the administrator realizes the S3 bucket is an origin for an Amazon CloudFront web distribution.

Which action should the administrator take to ensure that users access objects in Amazon S3 by using only CloudFront URLs?

  1. Encrypt the S3 bucket content with Server-Side Encryption with Amazon S3-Managed Keys (SSE-S3).
  2. Create an origin access identity and grant it permissions to read objects in the S3 bucket.
  3. Assign an IAM user to the CloudFront distribution and grant the user permissions in the S3 bucket policy.
  4. Assign an IAM role to the CloudFront distribution and grant the role permissions in the S3 bucket policy.

Answer(s): B



Page 44 of 106



Post your Comments and Discuss Amazon SOA-C02 exam with other Community members:

FN commented on November 21, 2024
Great work team!
ITALY
upvote

Tech Savvy commented on November 04, 2024
Great work team!, would be good if you list 10 questions at each page,
Anonymous
upvote

DeMalio commented on September 30, 2024
Very helpful and very accurate. Could not have passed this exam without this exam dump. Very grateful.
UNITED STATES
upvote

Omkar commented on June 26, 2024
Useful Dump
Anonymous
upvote

john commented on February 24, 2024
It's my first review so excuse me if I overlooked any etiquettes or etc. I had been studying off and on since Nov. I received a 790 a few hours ago and what I did was the following: Took the practice tests and got a passing score a couple times in a row Overall, I'd say that everything provided for reasonable price by along with the dumps helped me out the most. All of that plus just not psyching yourself out about the difficulty of the exam, picking a date and forcing yourself to be ready by that date should pretty much set you up for success.
UNITED STATES
upvote

tomAws commented on July 18, 2023
nice questions
BRAZIL
upvote

Emma commented on November 27, 2023
Nice questions
VIET NAM
upvote

Freya commented on October 24, 2023
I got my results today and I am delighted by them as I scored 83% on the SOA-C02 exam. I owe it all to this platform, I am I purchased this course as it is worth it.
Anonymous
upvote

tomAws commented on July 18, 2023
Questions so precious, I can already smell the certification :D
BRAZIL
upvote

tomAws commented on July 18, 2023
Nice questions
BRAZIL
upvote

SANDRO commented on March 01, 2023
It has been a wonderful experince dealing with the support team. They helped me update my files. And the new version seems to cover all the new topics. Very greatful.
UNITED STATES
upvote

StuckWithThis commented on June 14, 2022
Passed today. Do not take life serious. :-) Use these cheat sheets and pass.
UNITED STATES
upvote

Zack commented on May 04, 2021
Worth every penny! Just passed my exam. I was very concerned but these practice questions are magic!
UNITED STATES
upvote