
[2023] Use Real Amazon Dumps - 100% Free SAA-C02 Exam Dumps
Realistic SAA-C02 Dumps Latest Amazon Practice Tests Dumps
The Amazon SAA-C02 exam tests candidates on a range of topics, including AWS architecture, security, and networking, as well as storage and database services, compute and application services, and AWS cost management. Candidates are required to demonstrate their ability to design, deploy, and manage scalable systems on AWS, as well as their understanding of AWS best practices and their ability to troubleshoot common issues.
NEW QUESTION # 14
A company receives 10 TB of instrumentation data each day from several machines located at a single factory.
The data consists of JSON files stored on a storage area network (SAN) in an on- premises data center located within the factory.
The company wants to send this data to Amazon S3 where it can be accessed by several additional systems that provide critical near-real-lime analytics.
A secure transfer is important because the data is considered sensitive.
Which solution offers the MOST reliable data transfer?
- A. AWS Database Migration Service (AWS DMS) over public internet
- B. AWS DataSync over public internet
- C. AWS Database Migration Service (AWS DMS) over AWS Direct Connect
- D. AWS DataSync over AWS Direct Connect
Answer: C
NEW QUESTION # 15
An engineering team is developing and deploying AWS Lambda functions. The team needs to create roles and manage policies in AWS IAM to configure the permissions of the Lambda functions.
How should the permissions for the team be configured so they also adhere to the concept of least privilege?
- A. Create an execution role for the Lambda functions. Attach a managed policy that has permission boundaries specific to these Lambda functions
- B. Create an IAM role with a managed policy attached Allow the engineering team and the Lambda functions to assume this role
- C. Create an IAM role with a managed policy attached that has permission boundaries specific to the Lambda functions Allow the engineering team to assume this role.
- D. Create an IAM group for the engineering team with an lAMFullAccess policy attached Add all the users from the team to this IAM group
Answer: B
NEW QUESTION # 16
A company allows its developers to attach existing 1AM policies to existing 1AM roles to enable (aster experimentation and agility However the security operations team is concerned that the developers could attach the existing administrator policy, which would allow the developers to circumvent any other security policies How should a solutions architect address this issue?
- A. Create an Amazon SNS topic to send an alert every time a developer creates a new policy
- B. Set an IAM permissions boundary on the developer 1AM role that explicitly denies attaching the administrator policy
- C. Prevent the developers from attaching any policies and assign all 1AM duties to the security operations team
- D. Use service control policies to disable IAM activity across all accounts in the organizational unit
Answer: A
NEW QUESTION # 17
A gaming company has multiple Amazon EC2 instances in a single Availability Zone for its multiplayer game that communicates with users on Layer 4 The chief technology officer (CTO) wants to make the architecture highly available and cost-effective.
What should a solutions architect do to meet these requirements? (Select TWO.)
- A. Increase the number of EC2 instances.
- B. Configure a Network Load Balancer in front of the EC2 instances.
- C. Configure an Auto Scaling group to add or remove instances in multiple Availability Zones automatically.
- D. Configure an Application Load Balancer in front of the EC2 instances
- E. Decrease the number of EC2 instances
Answer: A,D
NEW QUESTION # 18
An online retail company needs to run near-real-time analytics on website traffic to analyze top-selling products across different locations. The product purchase data and the user location details are sent to a third-party application that runs on premises The application processes the data and moves the data into the company's analytics engine The company needs to implement a cloud-based solution to make the data available for near-real-time analytics.
Which solution will meet these requirements with the LEAST operational overhead?
- A. Use Amazon Kinesis Data Firehose to ingest the data Enable Kinesis Data Firehose data transformation with AWS Lambda Configure Kinesis Data Firehose to write the data to Amazon OpenSearch Service (Amazon Elasticsearch Service).
- B. Use Amazon Kinesis Data Streams to ingest the data Use AWS Lambda to transform the data Configure Lambda to write the data to Amazon Amazon OpenSearch Service (Amazon Elasticsearch Service)
- C. Configure Amazon Kinesis Data Streams to write the data to an Amazon S3 bucket Add an Apache Spark job on Amazon EMR to enrich the data in the S3 bucket and write the data to Amazon OpenSearch Service (Amazon Elasticsearch Service)
- D. Configure Amazon Kinesis Data Streams to write the data to an Amazon S3 bucket Schedule an AWS Glue crawler job to enrich the data and update the AWS Glue Data Catalog Use Amazon Athena for analytics
Answer: C
NEW QUESTION # 19
A company has a service that produces event data. The company wants to use AWS to process the event data as it is received. The data is written in a specific order that must be maintained throughout processing. The company wants to implement a solution that minimizes operational overhead.
How should a solution architect accomplish this?
- A. Create an Amazon Simple Notification Service (Amazon SNS) topic to deliver notifications containing payloads to process. Configure an AWS Lambda function as a subscriber.
- B. Create an Amazon Simple Queue Service (Amazon SQS) FIFO queue to hold messages. Set up an AWS Lambda function to process messages from the queue.
- C. Create an Amazon Simple Queue Service (Amazon SQS) standard queue to hold messages. Set up an AWS Lambda function to process messages from the queue independently.
- D. Create an Amazon Simple Notification Service (Amazon SNS) topic to deliver notifications containing payloads to process. Configure an Amazon Simple Queue Service (Amazon SQS) queue as a subscriber.
Answer: B
NEW QUESTION # 20
A company runs an application in a branch office within a small data closet with no virtualized compute resources. The application data is stored on an NFS volume. Compliance standards require a daily offsite backup of the NFS volume.
Which solution meet these requirements?
- A. Install an AWS Storage Gateway file gateway on premises to replicate the data to Amazon S3.
- B. Install an AWS Storage Gateway file gateway hardware appliance on premises to replicate the data to Amazon S3.
- C. Install an AWS Storage Gateway volume gateway with stored volumes on premises to replicate the data to Amazon S3.
- D. Install an AWS Storage Gateway volume gateway with cached volumes on premises to replicate the data to Amazon S3.
Answer: C
NEW QUESTION # 21
To meet security requirements, a company needs to encrypt all of its application data in transit while communicating with an Amazon RDS MySQL DB instance A recent security audit revealed that encryption al rest is enabled using AWS Key Management Service (AWS KMS). but data in transit Is not enabled What should a solutions architect do to satisfy the security requirements?
- A. Take a snapshot of the RDS instance Restore the snapshot to a new instance with encryption enabled
- B. Enable IAM database authentication on the database.
- C. Provide self-signed certificates, Use the certificates in all connections to the RDS instance
- D. Download AWS-provided root certificates Provide the certificates in all connections to the RDS instance
Answer: A
Explanation:
https://docs.aws.amazon.com/AmazonRDS/latest/UserGuide/Overview.Encryption.html#Overview.Encryption.Enabling
NEW QUESTION # 22
A company has an ordering application that stores customer information in Amazon RDS for MySQL. During regular business hours, employees run one-time queries for
reporting purposes. Timeouts are occurring during order processing because the reporting queries are taking a long time to run. The company needs to eliminate the timeouts without preventing employees from performing queries.
What should a solutions architect do to meet those requirements?
- A. Create a read replica. Distribute the ordering application to the primary DB instance and the read replica.
- B. Create a read replica Move reporting queries to the read replica.
- C. Migrate the ordering application to Amazon DynamoDB with on-demand capacity.
- D. Schedule the reporting queries for non-peak hours.
Answer: A
NEW QUESTION # 23
A company is planning to deploy a business-critical application in the AWS Cloud. The application requires durable storage with consistent, low-latency performance Which type of storage should a solutions architect recommend to meet these requirements?
- A. Throughput Optimized HDD Amazon Elastic Block Store (Amazon EBS) volume
- B. Amazon ElastiCache for Memcached cluster
- C. Provisioned lOPS SSD Amazon Elastic Block Store (Amazon EBS> volume
- D. Instance store volume
Answer: C
NEW QUESTION # 24
A solutions architect is designing a highly available website that is served by multiple web servers hosted outside of AWS. If an instance becomes unresponsive, the architect needs to remove it from the rotation.
What is the MOST efficient way to fulfill this requirement?
- A. Use Amazon CloudWatch to monitor utilization.
- B. Use Amazon API Gateway to monitor availability.
- C. Use Amazon Route 53 health checks.
- D. Use an Amazon Elastic Load Balancer.
Answer: D
NEW QUESTION # 25
A company hosts an application on AWS Lambda functions mat are invoked by an Amazon API Gateway API The Lambda functions save customer data to an Amazon Aurora MySQL database Whenever the company upgrades the database, the Lambda functions fail to establish database connections until the upgrade is complete The result is that customer data Is not recorded for some of the event
A solutions architect needs to design a solution that stores customer data that is created during database upgrades
Which solution will meet these requirements?
- A. Provision an Amazon RDS proxy to sit between the Lambda functions and the database Configure the Lambda functions to connect to the RDS proxy
- B. Increase the run time of me Lambda functions to the maximum Create a retry mechanism in the code that stores the customer data in the database
- C. Persist the customer data to Lambda local storage. Configure new Lambda functions to scan the local storage to save the customer data to the database.
- D. Store the customer data m an Amazon Simple Queue Service (Amazon SOS) FIFO queue Create a new Lambda function that polls the queue and stores the customer data in the database
Answer: C
NEW QUESTION # 26
A company is hosting its website on Amazon S3 and is using Amazon CloudFront to cache content The company has an upcoming product launch An employee accidentally published marketing content to the website before the official release of the product The company needs to remove the marketing content from the website as quickly as possible
Which solution will meet these requirements?
- A. Deploy the updated version of the website to another S3 bucket Update the origin for CloudFront
- B. Delete the marketing content in the existing S3 bucket Invalidate the file path in CloudFront
- C. Create a new CloudFront cache policy with a low TTL Associate the new policy with the existing CloudFront distribution
- D. Delete the marketing content in the existing S3 bucket Update the S3 bucket policy to block requests to the file path
Answer: B
NEW QUESTION # 27
A company uses 50 TB of data for reporting. The company wants to move this data from on premises to AWS A custom application in the company's data center runs a weekly data transformation job. The company plans to pause the application until the data transfer is complete and needs to begin the transfer process as soon as possible.
The data center does not have any available network bandwidth for additional workloads A solutions architect must transfer the data and must configure the transformation job to continue to run in the AWS Cloud Which solution will meet these requirements with the LEAST operational overhead?
- A. Order an AWS Snowball Edge Storage Optimized device. Copy the data to the device. Create a custom transformation job by using AWS Glue
- B. Order an AWS Snowcone device to move the data Deploy the transformation application to the device
- C. Order an AWS D. Snowball Edge Storage Optimized device that includes Amazon EC2 compute Copy the data to the device Create a new EC2 instance on AWS to run the transformation application
- D. Use AWS DataSync to move the data Create a custom transformation job by using AWS Glue
Answer: C
NEW QUESTION # 28
A company hosts multiple production applications.
One of the applications consists of resources from Amazon EC2 AWS Lambda Amazon RDS Amazon Simple Notification Service (Amazon SNS).
And Amazon Simple Queue Service (Amazon SQS) across multiple AWS Regions.
All company resources are tagged with a tag name of "application" and a value that corresponds to each application.
A solutions architect must provide the quickest solution for identifying all of the tagged components.
Which solution meets these requirements?
- A. Run a query in Amazon CloudWatch Logs Insights to report on the components with the application tag
- B. Run a query with the AWS Resource Groups Tag Editor to report on the resources globally with the application tag
- C. Use the AWS CLI to query each service across all Regions to report the tagged components
- D. Use AWS CloudTrail to generate a list of resources with the application tag
Answer: B
NEW QUESTION # 29
A company is launching a new application deployed on an Amazon Elastic Container Service (Amazon ECS) cluster and is using the Fargate launch type tor ECS tasks The company is monitoring CPU and memory usage because it is expecting high traffic to the application upon its launch However the company wants to reduce costs when utilization decreases
What should a solutions architect recommend?
- A. Use Amazon EC2 Auto Scaling to scale at certain periods based on previous traffic patterns
- B. Use AWS Application Auto Scaling with target tracking policies to scale when ECS metric breaches trigger an Amazon CloudWatch alarm
- C. Use Amazon EC2 Auto Scaling with simple scaling policies to scale when ECS metric breaches trigger an Amazon CloudWatch alarm
- D. Use an AWS Lambda function to scale Amazon ECS based on metric breaches that trigger an Amazon CloudWatch alarm
Answer: C
NEW QUESTION # 30
A hospital wants to create digital copies for its large collection of historical written records. The hospital will continue to add hundreds of new documents each day. The hospital's data team will scan the documents and will upload the documents to the AWS Cloud.
A solutions architect must implement a solution to analyze the documents: extract the medical information, and store the documents so that an application can run SQL queries on the data The solution must maximize scalability and operational efficiency Which combination of steps should the solutions architect take to meet these requirements? (Select TWO.)
- A. Create an AWS Lambda function that runs when new documents are uploaded Use Amazon Textract to convert the documents to raw text Use Amazon Comprehend Medical to detect and extract relevant medical information from the text
- B. Create an AWS Lambda function that runs when new documents are uploaded Use Amazon Rekognition to convert the documents to raw text Use Amazon Transcribe Medical to detect and extract relevant medical Information from the text.
- C. Create an Auto Scaling group of Amazon EC2 instances to run a custom application that processes the scanned files and extracts the medical information.
- D. Write the document information to an Amazon EC2 instance that runs a MySQL database
- E. Write the document information to an Amazon S3 bucket Use Amazon Athena to query the data
Answer: A,D
NEW QUESTION # 31
A solutions architect is using an AWS Cloud Formation template to deploy a three-tier web application The web application consists of a web tier and an application tier that stores and retrieves user data in Amazon DynamoDB tables The web and application tiers are hosted on Amazon EC2 instances, and the database tier is not publicly accessible The application EC2 instances need to access the DynamoDB tables without exposing API credentials in the template What should the solutions architect do to meet these requirements?
- A. Create an IAM user m the AWS CioudFormation template that has the required permissions to read and write from the DynamoOB tables Use the GetAti function to retrieve the access and secret keys and pass them to the application instances through the user data
- B. Create an IAM role that has the required permissions to read and write from the DynamoOB tables Add the role to the EC2 instance profile and associate the instance profile with the apphcanon instances
- C. Create an 1AM role to read the DynamoOB tables Associate the role with the application instances by reference an instance profile
- D. Use the parameter section in the AWS CkHidFormaton template to have the user input access and secret keys from an already-created IAM user mat has the required permissions to read and write from the DynamoOB tables
Answer: B
NEW QUESTION # 32
A company hosts a data lake on AWS. The data lake consists of data in Amazon S3 and Amazon RDS for PostgreSQL. The company needs a reporting solution that provides data visualization and includes all the data sources within the data lake. Only the company's management team should have full access to all the visualizations. The rest of the company should have only limited access.
Which solution will meet these requirements?
- A. Create an analysis in Amazon QuickSight. Connect all the data sources and create new datasets. Publish dashboards to visualize the data. Share the dashboards with the appropriate IAM roles.
- B. Create an AWS Glue table and crawler for the data in Amazon S3. Create an AWS Glue extract, transform, and load (ETL) job to produce reports. Publish the reports to Amazon S3. Use S3 bucket policies to limit access to the reports.
- C. Create an analysis in Amazon OuickSighl. Connect all the data sources and create new datasets. Publish dashboards to visualize the data. Share the dashboards with the appropriate users and groups.
- D. Create an AWS Glue table and crawler for the data in Amazon S3. Use Amazon Athena Federated Query to access data within Amazon RDS for PoslgreSQL. Generate reports by using Amazon Athena.
Publish the reports to Amazon S3. Use S3 bucket policies to limit access to the reports.
Answer: D
NEW QUESTION # 33
A three-tier web application processes orders from customers. The web tier consists of Amazon EC2 instances behind an Application Load Balancer, a middle tier of three EC2 instances decoupled from the web tier using Amazon SQS. and an Amazon DynamoDB backend At peak times customers who submit orders using the site have to wait much longer than normal to receive confirmations due to lengthy processing times A solutions architect needs to reduce these processing times Which action will be MOST effective in accomplishing this?
- A. Replace the SQS queue with Amazon Kinesis Data Firehose
- B. Add an Amazon CloudFront distribution to cache the responses for the web tier.
- C. Use Amazon ElastiCache for Redis in front of the DynamoDB backend tier
- D. Use Amazon EC2 Auto Scaling to scale out the middle tier instances based on the SQS queue depth
Answer: B
NEW QUESTION # 34
......
Amazon SAA-C02 certification is highly valued in the IT industry as it demonstrates a candidate's ability to design and deploy scalable, reliable, and secure AWS-based solutions. Amazon AWS Certified Solutions Architect - Associate (SAA-C02) Exam certification is ideal for individuals who want to advance their career in cloud computing or wish to demonstrate their expertise in AWS to their employers or clients. Amazon AWS Certified Solutions Architect - Associate (SAA-C02) Exam certification exam is also a great way for IT professionals to stay up-to-date with the latest AWS services and best practices.
SAA-C02 Dumps PDF - SAA-C02 Real Exam Questions Answers: https://latestdumps.actual4exams.com/SAA-C02-real-braindumps.html