Preparing your workspace...
Loading latest data

You are an AWS Certified Solutions Architect Associate with security expertise, working for an e-commerce company. A security alert is triggered due to unusual outbound traffic from an EC2 instance.
Investigation:
CloudTrail & GuardDuty detect unauthorized API calls from an IAM user.
IAM logs show multiple failed login attempts.
AWS Config reveals an open SSH port (22) to the public internet.
Mitigation & Response:
Disable compromised IAM user and rotate credentials.
Isolate the EC2 instance using VPC Security Groups.
Take snapshots for forensic analysis.
Implement MFA for all IAM users and enforce strict access control.
Use AWS Systems Manager Session Manager instead of SSH.
Update AWS WAF rules to block suspicious IPs.
Post-Incident Security Enhancements:
Enable AWS Security Hub for centralized security management.
Automate security responses using AWS Lambda (e.g., disabling compromised accounts).
Monitor continuously with Amazon GuardDuty and CloudWatch.
Question1.
What type of storage does Amazon S3 provide?
Question2.
What AWS service allows you to run serverless code?
Question3.
Which AWS service provides a fully managed relational database?
Question4.
What is the primary use of Amazon CloudFront?
Question5.
Which service enables private connections between VPCs and AWS services?
Question6.
What AWS service is used for DNS and domain name management?
Question7.
Which storage service is ideal for structured NoSQL databases?
Question8.
What AWS service is used for monitoring resources and logs?
Question9.
Which AWS storage class is best for long-term archival storage?
Question10.
What AWS service is used to automate application deployments?
Question11.
Which database service is best for petabyte-scale analytics?
Question12.
What service helps protect against DDoS attacks?
Question13.
What AWS service offers a managed Kubernetes solution?
Question14.
Which AWS service is used for Infrastructure as Code (IaC)?
Question15.
Which storage service is designed for file-based workloads?
Question16.
What AWS service is used to create a virtual private cloud?
Question17.
What AWS service can be used to manage encryption keys?
Question18.
Which AWS service is used for server migration?
Question19.
What AWS service provides virtual desktops?
Question20.
Which AWS service is used to stream real-time data?
Question21.
What AWS service provides compliance auditing and governance?
Question22.
Which service is used for batch processing workloads?