Q: 11
A company sets up an organization in AWS Organizations that contains 10AWS accounts. A solutions
architect must design a solution to provide access to the accounts for several thousand employees.
The company has an existing identity provider (IdP). The company wants to use the existing IdP for
authentication to AWS.
Which solution will meet these requirements?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 12
A company is running a media store across multiple Amazon EC2 instances distributed across
multiple Availability Zones in a single VPC. The company wants a high-performing solution to share
data between all the EC2 instances, and prefers to keep the data within the VPC only.
What should a solutions architect recommend?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 13
A company hosts its application on several Amazon EC2 instances inside a VPC. The company creates
a dedicated Amazon S3 bucket for each customer to store their relevant information in Amazon S3.
The company wants to ensure that the application running on EC2 instances can securely access only
the S3 buckets that belong to the company's AWS account.
Which solution will meet these requirements with the LEAST operational overhead?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 14
A medical company wants to perform transformations on a large amount of clinical trial data that
comes from several customers. The company must extract the data from a relational
databasethatcontains the customer dat
a. Then the company will transform the data by using a series of complex rules. The company will
load the data to Amazon S3 when the transformations are complete.
All data must be encrypted where it is processed before the company stores the data in Amazon S3.
All data must be encrypted by using customer-specific keys.
Which solution will meet these requirements with the LEAST amount of operational effort?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 15
A company has an application that runs on an Amazon Elastic Kubernetes Service (Amazon EKS)
cluster on Amazon EC2 instances. The application has a U1 that uses Amazon DynamoDB and data
services that use Amazon S3 as part of the application deployment.
The company must ensure that the EKS Pods for the U1 can access only Amazon DynamoDB and that
the EKS Pods for the data services can access only Amazon S3. The company uses AWS Identity and
Access Management |IAM).
Which solution meets these requirements?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 16
A company runs an application in a VPC on AWS. The company's on-premises data center has a DNS
server. The data center is connected to AWS through an AWS Direct Connect connection with a
private virtual interface (VIF). The on-premises DNS server needs to resolve the DNS name of the
application in the VPC.
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 17
A company is running a highly sensitive application on Amazon EC2 backed by an Amazon RDS
database Compliance regulations mandate that all personally identifiable information (Pll) be
encrypted at rest.
Which solution should a solutions architect recommend to meet this requirement with the LEAST
amount of changes to the infrastructure?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 18
A global media streaming company is migrating its user authentication and content delivery services
to AWS. The company wants to use Amazon API Gateway for user authentication and authorization.
The company needs a solution that restricts API access to AWS Regions in the United States and
ensures minimal latency.
Which solution will meet these requirements?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 19
A company's software development team needs an Amazon RDS Multi-AZ cluster. The RDS cluster
will serve as a backend for a desktop client that is deployed on premises. The desktop client requires
direct connectivity to the RDS cluster.
The company must give the development team the ability to connect to the cluster by using the
client when the team is in the office.
Which solution provides the required connectivity MOST securely?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Q: 20
A company runs an application on Microsoft SQL Server databases in an on-premises data center. The
company wants to migrate to AWS and optimize costs for its infrastructure on AWS.
Which solution will meet these requirements?
Options
Discussion
No comments yet. Be the first to comment.
Be respectful. No spam.
Question 1 of 10