Which of the following is AWSs responsibility under the AWS shared responsibility model Choose all that apply?

What is AWS's serverless compute service?Your CTO has asked you to contact the AWS support over chat feature and ask them aboutguidance related to EBS. However when you open the AWS support center, you don't see way tocontact support via Chat feature. What is missing here ?You notice that five of your 10 S3 buckets are no longer available in your account, and youassume that they have been deleted.You are unsure who may have deleted them, and no one istaking responsibility. Which AWS service will help you investigate ?.What is themain benefiton why some one might choose an on-Demand EC2 instance?If you are using an on-demand EC2 instance, how are you being charged for it?What is benefit of choosing reserved instance over on-demand instance ?Which AWS service can help against DDOs protection ?What best describes what AWS is?What is one of the benefits of runningLambda ?What is the maximum amount of data that can be stored in S3 ?John wants to build highly available infrastructure. He needs to make sure that even if one data-center goes down, it should not affect his application. Which component in AWS cloud can he use toachieve the use-case ?Which service helps in segregating access control over various other AWSservice ?Which service can help equally distribute load across multiple EC2 instances ?Which AWS service can help caching objects ?You are building online cloud storage platform.Users will be uploading their files for backup toyour applications. You are unsure about the capacity requirements. Which AWS service can help youhere ?CTO in your organization wants to quickly view various shortcomings related to security, costingand performance related aspects in AWS. Which AWS service can help you here ?Alice is a DevOps and he wants to ensure that all servers are working perfectly.One of theaspects is monitor the CPUusage.Application tends to slow down whenCPUusage is greater then60%. How can Alice track down when CPUusage goes above 60% for any of the EC2 instance ?What AWS storage class should be used for long-term, archival storage?You have a very critical application which your organization simply can't afford to have it down.What is the architecture strategy you would use to prepare to be used for the application ?Which AWS services should be used for read/write of constantly changing data?What is one of the advantages of the Amazon Relational Database Service (Amazon RDS)?A customer needs to run a MySQL database that easily scales.Which AWS service should theyuse?

Which of the following components of the AWS Global Infrastructure consists of one or morediscrete data centers interconnected through low latency links?How many Availability Zones should compute resources be provisioned across to achieve highavailability?One of the advantages to moving infrastructure from an on-premises data center to the AWSCloud is:Which AWS IAM feature allows developers to access AWS services through the AWS CLI?

The most popular cloud certification today is no doubt AWS Cloud practitioner. This certification enables you to not only understand the basics of cloud computing but also what you can do with cloud technology. The certification may be an entry-level certification but it offers you to become a capable cloud professional and proficient enough to build quality and high-tech solutions and products. The AWS cloud practitioner certification exam is also a recommended prerequisite for more advanced level aws certifications.If you are preparing or thinking of taking the AWS cloud practitioner exam, this Exam guide will help you in planning your learning path and practice well in order to ace the exam with AWS Cloud Practitioner Study Guide.

AWS Cloud Practitioner Exam Objectives

The AWS Certified Cloud Practitioner tests the candidates on their basic knowledge of the AWS platform, which includes including the following:

  • Explain the value of the AWS Cloud.
  • Understand and explain the AWS shared responsibility model. 
  • Understand AWS Cloud security best practices. 
  • Understand AWS Cloud costs, economics, and billing practices. 
  • Describe and position the core AWS services, including compute, network, databases, and storage. 
  • Identify AWS services for common use cases.

AWS Cloud Practitioner Exam Format

There are two types of questions on the examination:

1. Multiple choice: Has one correct response and three incorrect responses.

2. Multiple response: Has two or more correct responses out of five or more options. Unanswered questions are scored as incorrect; there is no penalty for guessing

It’s a pass or fail exam and is scored from 100–1,000, with a minimum passing score of 700. You do not need to “pass” the individual sections, you only need to pass the overall exam. Each section of the examination has a specific weighting, and thus some sections have more questions than others. 

Which of the following is AWSs responsibility under the AWS shared responsibility model Choose all that apply?

Domain 1: Cloud Concepts

1.1 Define the AWS Cloud and its value proposition

  • Define the benefits of the AWS cloud including:
    • Security (AWS Documentation: Advantages of Cloud Security)
    • Reliability (AWS Documentation: Reliability)
    • High Availability
    • Elasticity (AWS Documentation: Elasticity)
    • Agility
    • Pay-as-you go pricing (AWS Documentation: AWS Pricing)
    • Scalability
    • Global Reach
    • Economy of scale
  • Explain how the AWS cloud allows users to focus on business value
    • Shifting technical resources to revenue-generating activities as opposed to managing infrastructure (AWS Documentation: Business Value on AWS)

1.2 Identify aspects of AWS Cloud economics

  • Define items that would be part of a Total Cost of Ownership proposal
    • Understand the role of operational expenses (OpEx)
    • Understand the role of capital expenses (CapEx)
    • Understand labor costs associated with on-premises operations (AWS Documentation: AWS Pricing/TCO Tools)
    • Understand the impact of software licensing costs when moving to the cloud (AWS Documentation: Cost and licensing)
  • Identify which operations will reduce costs by moving to the cloud
    • Right-sized infrastructure (AWS Documentation: Right Sizing)
    • Benefits of automation (AWS Documentation: Automation, Investing in Cloud Automation)
    • Reduce compliance scope (for example, reporting) (AWS Documentation: Minimizing the PCI Compliance Burden Using Containerization, Microservices, and AWS)
    • Managed services (for example, RDS, ECS, EKS, DynamoDB) (AWS Documentation: AWS Managed Services)

1.3 Explain the different cloud architecture design principles

  • Explain the design principles
    • Design for failure (AWS Documentation: Design for Failure)
    • Decouple components versus monolithic architecture (AWS Documentation: Decomposing monoliths into microservices)
    • Implement elasticity in the cloud versus on-premises (AWS Documentation: Elasticity)
    • Think parallel
Domain 2: Security and Compliance

2.1 Define the AWS shared responsibility model

  • Recognize the elements of the Shared Responsibility Model (AWS Documentation: Shared Responsibility Model)
  • Describe the customer’s responsibility on AWS
    • Describe how the customer’s responsibilities may shift depending on the service used (for example with RDS, Lambda, or EC2) (AWS Documentation: Shared Responsibility, Shared Responsibility Model)
  • Describe AWS responsibilities Shared Responsibility Model)

2.2 Define AWS Cloud security and compliance concepts

  • Identify where to find AWS compliance information (AWS Documentation: AWS Compliance Programs, Compliance Resources)
    • Locations of lists of recognized available compliance controls (for example, HIPPA, SOCs) (AWS Documentation: HIPAA, SOC)
    • Recognize that compliance requirements vary among AWS services (AWS Documentation: Security and compliance)
  • At a high level, describe how customers achieve compliance on AWS (AWS Documentation: AWS Compliance)
    • Identify different encryption options on AWS (for example, In transit, At rest) (AWS Documentation: Encryption of Data in Transit, Encryption of Data at Rest)
  • Describe who enables encryption on AWS for a given service (AWS Documentation: importance of encryption and how AWS can help)
  • Recognize there are services that will aid in auditing and reporting (AWS Documentation: AWS Audit Manager)
    • Recognize that logs exist for auditing and monitoring (do not have to understand the logs) (AWS Documentation: Viewing HSM audit logs in CloudWatch Logs)
    • Define Amazon CloudWatch, AWS Config, and AWS CloudTrail (AWS Documentation: Amazon CloudWatch, AWS Config, AWS CloudTrail)
  • Explain the concept of least privileged access (AWS Documentation: Security best practices in IAM)

2.3 Identify AWS access management capabilities

  • Understand the purpose of User and Identity Management
    • Access keys and password policies (rotation, complexity) (AWS Documentation: Managing access keys for IAM users, Setting an account password policy for IAM users)
    • Multi-Factor Authentication (MFA) (AWS Documentation: Using multi-factor authentication (MFA) in AWS)
    • AWS Identity and Access Management (IAM) (AWS Documentation: AWS Identity and Access Management (IAM))
      • Groups/users (AWS Documentation: IAM Identities (users, user groups, and roles))
      • Roles (AWS Documentation: IAM roles)
      • Policies, managed policies compared to custom policies (AWS Documentation: Policies and permissions in IAM, AWS managed policies)
    • Tasks that require use of root accounts (AWS Documentation: AWS account root user credentials and IAM user credentials)
    • Protection of root accounts (AWS Documentation: best practices for securing my AWS account)

2.4 Identify resources for security support

  • Recognize there are different network security capabilities
    • Native AWS services (for example, security groups, Network ACLs, AWS WAF) (AWS Documentation: Control traffic to subnets using Network ACLs, Control traffic to resources using security groups, AWS WAF)
    • 3rd party security products from the AWS Marketplace
  • Recognize there is documentation and where to find it (for example, best practices, whitepapers, official documents)
    • AWS Knowledge Center, Security Center, security forum, and security blogs (AWS Documentation: AWS Knowledge Center)
    • Partner Systems Integrators (AWS Documentation: Next-Gen MSP Meets Global Systems Integrator on AWS)
  • Know that security checks are a component of AWS Trusted Advisor (AWS Documentation: AWS Trusted Advisor check reference)
Domain 3: Technology

3.1 Define methods of deploying and operating in the AWS Cloud

  • Identify at a high level different ways of provisioning and operating in the AWS cloud
    • Programmatic access, APIs, SDKs, AWS Management Console, CLI, Infrastructure as Code (AWS Documentation: AWS APIs, AWS SDK for JavaScript, AWS Management Console, AWS Command Line Interface, Infrastructure as Code)
  • Identify different types of cloud deployment models
    • All in with cloud/cloud native (AWS Documentation: Cloud-Native)
    • Hybrid (AWS Documentation: Hybrid Cloud with AWS)
    • On-premises (AWS Documentation: Deployments on an EC2/On-Premises Compute Platform)
  • Identify connectivity options
    • VPN (AWS Documentation: AWS VPN)
    • AWS Direct Connect (AWS Documentation: AWS Direct Connect)
    • Public internet (AWS Documentation: Connect to the internet using an internet gateway)

3.2 Define the AWS global infrastructure

  • Describe the relationships among Regions, Availability Zones, and Edge Locations (AWS Documentation: Regions and Zones, Regions and Availability Zones)
  • Describe how to achieve high availability through the use of multiple Availability Zones
    • Recall that high availability is achieved by using multiple Availability Zones (AWS Documentation: Multi-AZ deployments for high availability, Amazon RDS Multi-AZ)
    • Recognize that Availability Zones do not share single points of failure
  • Describe when to consider the use of multiple AWS Regions (AWS Documentation: Multi-Region Application Architecture)
    • Disaster recovery/business continuity (AWS Documentation: Disaster recovery options in the cloud, Business Continuity Plan (BCP))
    • Low latency for end-users (AWS Documentation: Low-latency computing with AWS Local Zones)
    • Data sovereignty (AWS Documentation: Embrace Data Sovereignty)
  • Describe at a high level the benefits of Edge Locations (AWS Documentation: AWS for the Edge)
    • Amazon CloudFront (AWS Documentation: Amazon CloudFront)
    • AWS Global Accelerator (AWS Documentation: AWS Global Accelerator)

3.3 Identify the core AWS services

  • Describe the categories of services on AWS (compute, storage, network, database) (AWS Documentation: AWS Cloud Products)
  • Identify AWS compute services
    • Recognize there are different compute families (AWS Documentation: Amazon EC2 Instance Types)
    • Recognize the different services that provide compute (for example, AWS Lambda compared to Amazon Elastic Container Service (Amazon ECS), or Amazon EC2, etc.) (AWS Documentation: Compute Services)
    • Recognize that elasticity is achieved through Auto Scaling
    • Identify the purpose of load balancers (AWS Documentation: Application Load Balancer)
  • Identify different AWS storage services
    • Describe Amazon S3 (AWS Documentation: Amazon S3)
    • Describe Amazon Elastic Block Store (Amazon EBS) (AWS Documentation: Amazon Elastic Block Store (Amazon EBS))
    • Describe Amazon S3 Glacier (AWS Documentation: Amazon S3 Glacier)
    • Describe AWS Snowball (AWS Documentation: AWS Snowball)
    • Describe Amazon Elastic File System (Amazon EFS) (AWS Documentation: Use Amazon EFS with Amazon EC2)
    • Describe AWS Storage Gateway (AWS Documentation: Amazon S3 File Gateway)
  • Identify AWS networking services
    • Identify VPC (AWS Documentation: Finding information to connect to a VPC)
    • Identify security groups (AWS Documentation: Finding information to connect to a VPC)
    • Identify the purpose of Amazon Route 53 (AWS Documentation: Amazon Route 53)
    • Identify VPN, AWS Direct Connect (AWS Documentation: Identifying a Site-to-Site VPN connection, AWS Direct Connect)
  • Identify different AWS database services
    • Install databases on Amazon EC2 compared to AWS managed databases (AWS Documentation: Choosing between Amazon RDS, Amazon EC2, or VMware Cloud)
    • Identify Amazon RDS (AWS Documentation: Amazon RDS DB instances)
    • Identify Amazon DynamoDB (AWS Documentation: Amazon DynamoDB)
    • Identify Amazon Redshift (AWS Documentation: Getting started with Amazon Redshift)

3.4 Identify resources for technology support

  • Recognize there is documentation (best practices, whitepapers, AWS Knowledge Center, forums, blogs) (AWS Documentation: Follow Security Best Practices, AWS Knowledge Center, AWS Whitepapers & Guides)
  • Identify the various levels and scope of AWS support
    • AWS Abuse (AWS Documentation: report abuse of AWS resources)
    • AWS support cases (AWS Documentation: Creating support cases and case management)
    • Premium support
    • Technical Account Managers (AWS Documentation: AWS Enterprise Support)
  • Recognize there is a partner network (marketplace, third-party) including Independent Software Vendors and System Integrators (AWS Documentation: AWS Partner Network, AWS Partner Paths)
  • Identify sources of AWS technical assistance and knowledge including professional services, solution architects, training and certification, and the Amazon Partner Network (AWS Documentation: technical support from AWS, AWS Professional Services, Successful solutions architects do these five things)
  • Identify the benefits of using AWS Trusted Advisor (AWS Documentation: AWS Trusted Advisor)
Domain 4: Billing and Pricing

4.1 Compare and contrast the various pricing models for AWS (for example, On-Demand Instances, Reserved Instances, and Spot Instance pricing) (AWS Documentation: Amazon EC2 pricing)

  • Identify scenarios/best fit for On-Demand Instance pricing (AWS Documentation: Amazon EC2 On-Demand Pricing, On-Demand Instances)
  • Identify scenarios/best fit for Reserved-Instance pricing (AWS Documentation: Reserved Instances, Amazon EC2 Reserved Instances)
    • Describe Reserved-Instances flexibility (AWS Documentation: Instance Size Flexibility for EC2 Reserved Instances)
    • Describe Reserved-Instances behavior in AWS Organizations (AWS Documentation: Reserved Instances)
  • Identify scenarios/best fit for Spot Instance pricing (AWS Documentation: Spot Instances)

4.2 Recognize the various account structures in relation to AWS billing and pricing

  • Recognize that consolidated billing is a feature of AWS Organizations (AWS Documentation: Consolidated billing for AWS Organizations)
  • Identify how multiple accounts aid in allocating costs across departments (AWS Documentation: AWS Cost Allocation For Customer Bills, Cost Allocation Basics)

4.3 Identify resources available for billing support

  • Identify ways to get billing support and information (AWS Documentation: AWS Billing and Cost Management)
    • Cost Explorer, AWS Cost and Usage Report, Amazon QuickSight, third-party partners, and AWS Marketplace tools (AWS Documentation: Analyzing your costs with AWS Cost Explorer, AWS Cost and Usage Reports, Amazon QuickSight, AWS Managed Service Provider Partners)
    • Open a billing support case (AWS Documentation: Creating support cases and case management)
    • The role of the Concierge for AWS Enterprise Support Plan customers (AWS Documentation: AWS Enterprise Support)
  • Identify where to find pricing information on AWS services
    • AWS Simple Monthly Calculator (AWS Documentation: AWS Pricing Calculator console)
    • AWS Services product pages (AWS Documentation: Using the Products page)
    • AWS Pricing API (AWS Documentation: AWS Price List API)
  • Recognize that alarms/alerts exist (AWS Documentation: Creating a billing alarm to monitor your estimated AWS charges)
  • Identify how tags are used in cost allocation (AWS Documentation: Using Cost Allocation Tags)

Now that you have some insight about the cloud practitioner exam, it is time to dive in to our learning plan.

Learning path with AWS Cloud Practitioner Exam Guide

  • Which of the following is AWSs responsibility under the AWS shared responsibility model Choose all that apply?

Step 1 : AWS Cloud Practitioner Exam Guide and Learning

To start the learning process you can start with enrolling for the aws free digital training which will lay a solid foundation for your aws skills. The free digital training can be accessed on the following link:
Free Digital Training: AWS Cloud Practitioner Essentials

Once you complete the free digital training you can test your knowledge with our free AWS cloud practitioner practice tests on the following link:
https://www.testpreptraining.com/aws-cloud-practitioner-exam-questions
Then you can proceed with your training

The free cloud practitioner essentials course above covers the following essential concepts. We have also added additional practice material and exercises for you to make your learning as solid as possible. You can follow the path laid out below:

1. Introduction to AWS and the interface:

1. Begin with AWS Overview and learn about core services, aws platform and global infrastructure

2. Learn about AWS Well Architected Framework

Start with learning about the basic cloud computing services, concepts and the AWS interface. You can start with making an AWSs free tier account.
What is an AWS free tier account?

2. Core AWS services

First you will start learning about the following core aws services:

  • Amazon Elastic Cloud Compute (EC2),
  • Amazon Elastic Block Store (EBS),
  • Amazon Simple Storage Service (S3),
  • Amazon Virtual Private Cloud (VPC), and
  • Security Groups.

Additional practice and learning exercises:

Amazon EC2:
Amazon EC2 is the virtual application server provider which are known as instances, to host your web application or website. Amazon Elastic Compute Cloud gives you the ability to scale up your computing capacity. It eliminates your need to buy hardware and helps you in increasing the speed of developing and deploying your application.  You can learn and practice amazon EC2 on the following links.

Know about EC2 instance categories
User guide for linux instances
User guides for windows instances

Amazon EBS:
Amazon Elastic Block Store (EBS) is not so difficult to use, but high performance block storage  which has been designed to be used with Amazon Elastic Compute Cloud (EC2) for intensive workloads at any scale. You can learn and practice amazon EBS on the following links.

Amazon Elastic Block Store
Creating an Amazon EBS volume
Attaching an Amazon EBS volume to an instanceDeep dive on amazon EBS elastic volumes

Amazon simple storage (S3):
Amazon simple storage as the name tells is a cloud storage service by aws. It provides secure, durable, and highly-scalable cloud storage making web based high scale computing easier for developers.You can learn and practice amazon S3 on the following link.
Learn Amazon S3

Amazon virtual private cloud :
Amazon Virtual Private Cloud (Amazon VPC) is a virtual network service to make you able in launching AWS resources into a your own virtual network. Closely resembling your at premise network the benefit it brings is the scalability of infrastructure of AWS.
Amazon VPC concepts

3. AWS integrated services

Now as you have studied and practiced the basic aws services, you will proceed to learn about some of the integrated services that are part of the AWS Cloud: You can learn about them through the following links

4. AWS Architecture

  • Which of the following is AWSs responsibility under the AWS shared responsibility model Choose all that apply?

It is important to know the practice of implementing well-architected framework in aws

Which of the following is AWSs responsibility under the AWS shared responsibility model Choose all that apply?
source: https://aws.amazon.com/blogs/architecture

The following resources will help.

AWS well architected tool
AWS well architected framework
Fault tolerance and high availability
Web hosting on aws cloud

5. AWS Security

AWS Overview of security Process

AWS Security Service

6. AWS Pricing Support

AWS Pricing


It is time to take the practice tests again to check your progress:
https://www.testpreptraining.com/aws-cloud-practitioner-exam-questions

Step 2 : AWS Whitepapers and learning resources

Now as you have finished your lessons, it is time to practice your learning with use cases, hands on exercises and not to forget go through the aws whitepapers.

1. AWS Cloud Practitioner White Papers

Cloud best practices – AWS Well Architected Framework
AWS Pricing overview
Compare aws support plans

2. AWS hands on exercises:

You can find all the hands on exercises on the following link. You can practice the relevant exercises.

https://aws.amazon.com/getting-started/hands-on/

3. Others Learning Resources

All whitepapers:
https://aws.amazon.com/whitepapers/?whitepapers-main.sort-by=item.additionalFields.sortDate&whitepapers-main.sort-order=desc
Learning Library:
https://www.aws.training/LearningLibrary?&search=&tab=view_all
AWS complete documentation:
https://docs.aws.amazon.com/index.html

Step 3: Evaluate yourself with Practice tests

Now before finally sitting for the exam, it is essential to practice and prepare for AWS Cloud Practioner exam question. Moreover, it is essential to take practice tests to check your learning so far and polish those skills. This step is very crucial because it forces you into the actual scenario of giving an exam and here you can find out about your weaknesses. You can go back to the learning stage to revise anything you feel you have no solid grasp.

Link for practice tests again
https://www.testpreptraining.com/aws-cloud-practitioner-exam-questions
That’s it, now you are ready to sit for the exam. All the best.

Which of the following is AWSs responsibility under the AWS shared responsibility model Choose all that apply?

Learn with AWS Cloud Practitioner Exam Guide and Online Tutorial. Begin with AWS Cloud Practitioner exam prep with Free Test Now!

Which of the following is a responsibility of AWS under the AWS shared responsibility model?

AWS responsibility “Security of the Cloud” - AWS is responsible for protecting the infrastructure that runs all of the services offered in the AWS Cloud. This infrastructure is composed of the hardware, software, networking, and facilities that run AWS Cloud services.

Which AWS shared responsibility controls are shared?

This customer/AWS shared responsibility model also extends to IT controls. Just as the responsibility to operate the IT environment is shared between AWS and its customers, so is the management, operation, and verification of IT controls shared.

Which of the following is the customer's obligation under the AWS shared responsibility model?

Security and compliance are shared obligations between AWS and the customer.

Which controls are managed by AWS in shared responsibility model?

You are responsible for managing the guest operating systems (including updates and security patches) and application software, as well as configuring the AWS provided security controls, such as security groups, network access control lists, and identity and access management.