What Breathing SAA-C02 Free Samples Is

Proper study guides for Up to date Amazon-Web-Services AWS Certified Solutions Architect - Associate (SAA-C02) certified begins with Amazon-Web-Services SAA-C02 preparation products which designed to deliver the Actual SAA-C02 questions by making you pass the SAA-C02 test at your first time. Try the free SAA-C02 demo right now.

Check SAA-C02 free dumps before getting the full version:

NEW QUESTION 1
A solutions architect is designing a two-tier web application The application consists of a public-facing web tier hosted on Amazon EC2 in public subnets The database tier consists of Microsoft SQL Server running on Amazon EC2 in a private subnet Security is a high priority for the company
How should security groups be configured in this situation? (Select TWO )

  • A. Configure the security group for the web tier to allow inbound traffic on port 443 from 0 0 0 0/0
  • B. Configure the security group for the web tier to allow outbound traffic on port 443 from 0 0 0 0/0
  • C. Configure the security group for the database tier to allow inbound traffic on port 1433 from the security group for the web tier
  • D. Configure the security group for the database tier to allow outbound traffic on ports 443 and 1433 to the security group for the web tier
  • E. Configure the security group for the database tier to allow inbound traffic on ports 443 and 1433 from the security group for the web tier

Answer: AC

NEW QUESTION 2
A company must generate sales reports at the beginning of every month. The reporting process launches 20 Amazon EC2 instances on the first of the month. The process runs for 7 days and cannot be interrupted. The company wants to minimize costs.
Which pricing model should the company choose?

  • A. Reserved Instances
  • B. Spot Block Instances
  • C. On-Demand Instances
  • D. Scheduled Reserved Instances D18912E1457D5D1DDCBD40AB3BF70D5D

Answer: C

NEW QUESTION 3
A recently acquired company is required to buikl its own infrastructure on AWS and migrate multiple applications to the cloud within a month Each application has approximately 50 TB of data to be transferred After the migration is complete this company and its parent company will both require secure network connectivity with consistent throughput from their data centers to the applications A solutions architect must ensure one-time data migration and ongoing network connectivity
Which solution will meet these requirements''

  • A. AWS Direct Connect for both the initial transfer and ongoing connectivity
  • B. AWS Site-to-Site VPN for both the initial transfer and ongoing connectivity
  • C. AWS Snowball for the initial transfer and AWS Direct Connect for ongoing connectivity
  • D. AWS Snowball for the initial transfer and AWS Site-to-Site VPN for ongoing connectivity

Answer: C

NEW QUESTION 4
A company is performing an AWS Well-Architected Framework review of an existing workload deployed on AWS. The review identified a public-facing website running on the same Amazon EC2 instance as a Microsoft Active Directory domain controller that was install recently to support other AWS services. A solutions architect needs to recommend a new design that would improve the security of the architecture and minimize the administrative demand on IT staff.
What should the solutions architect recommend?

  • A. Use AWS Directory Service to create a managed Active Director
  • B. Uninstall Active Directory on the current EC2 instance.
  • C. Create another EC2 instance in the same subnet and reinstall Active Directory on i
  • D. Uninstall Active Directory.
  • E. Use AWS Directory Service to create an Active Directory connecto
  • F. Proxy Active Directory requests to the Active domain controller running on the current EC2 instance.
  • G. Enable AWS Single Sign-On (AWS SSO) with Security Assertion Markup Language (SAML) 2.0 federation with the current Active Directory controlle
  • H. Modify the EC2 instance’s security group to deny public access to Active Directory.

Answer: C

NEW QUESTION 5
An application hosted on AWS is experiencing performance problems, and the application vendor wants to perform an analysis of the log file to troubleshoot further. The log file is stored on Amazon S3 and is 10 GB in size. The application owner will make the log file available to the vendor for a limited time.
What is the MOST secure way to do this?

  • A. Enable public read on the S3 object and provide the link to the vendor.
  • B. Upload the file to Amazon WorkDocs and share the public link with the vendor.
  • C. Generate a presigned URL and have the vendor download the log file before it expires.
  • D. Create an IAM user for the vendor to provide access to the S3 bucket and the applicatio
  • E. Enforce multifactor authentication.

Answer: C

NEW QUESTION 6
A media streaming company collects real-time data and stores it in a disk-optimized database system The company is not getting the expected throughput and wants an in-memory database storage solution that performs faster and provides high availability using data replication.
Which database should a solutions architect recommend'?

  • A. Amazon RDS for MySQL
  • B. Amazon RDS for PostgreSQL
  • C. Amazon ElastiCache for Redis
  • D. Amazon ElastiCache for Memcached

Answer: C

NEW QUESTION 7
A manufacturing company wants to implement predictive maintenance on its machinery equipment The company will install thousands of loT sensors that will send data to AWS in real time A solutions architect is tasked with implementing a solution that will receive events in an ordered manner for each machinery asset and ensure that data is saved for further processing at a later time
Which solution would be MOST efficient?

  • A. Use Amazon Kinesis Data Streams for real-time events with a partition for each equipment asset Use Amazon Kinesis Data Firehose to save data to Amazon S3
  • B. Use Amazon Kinesis Data Streams for real-time events with a shard for each equipment asset Use Amazon Kinesis Data Firehose to save data to Amazon EBS
  • C. Use an Amazon SQS FIFO queue for real-time events with one queue for each equipment asset Trigger an AWS Lambda function for the SQS queue to save data to Amazon EFS
  • D. Use an Amazon SQS standard queue for real-time events with one queue for each equipment asset Trigger an AWS Lambda function from the SQS queue to save data to Amazon S3

Answer: A

NEW QUESTION 8
A solutions architect is designing a web application that will run on Amazon EC2 instances behind an Application Load Balancer (ALB) The company strictly requires that the application be resilient against malicious internet activity and attacks, and protect against new common vulnerabilities and exposures
What should the solutions architect recommend?

  • A. Leverage Amazon CloudFront with the ALB endpoint as the origin
  • B. Deploy an appropriate managed rule for AWS WAF and associate it with the ALB
  • C. Subscribe to AWS Shield Advanced and ensure common vulnerabilities and exposures are blocked
  • D. Configure network ACLs and security groups to allow only ports 80 and 443 to access the EC2 instances

Answer: B

NEW QUESTION 9
A web application is deployed in the AWS Cloud It consists of a two-tier architecture that includes a web layer and a database layer The web server is vulnerable to cross-site scripting (XSS) attacks
What should a solutions architect do to remediate the vulnerability?

  • A. Create a Classic Load Balancer Put the web layer behind the load balancer and enable AWS WAF
  • B. Create a Network Load Balancer Put the web layer behind the load balancer and enable AWS WAF
  • C. Create an Application Load Balancer Put the web layer behind the load balancer and enable AWS WAF
  • D. Create an Application Load Balancer Put the web layer behind the load balancer and use AWS Shield Standard

Answer: C

NEW QUESTION 10
A start-up company has a web application based in the us-east-1 Region with multiple Amazon EC2 instances running behind an Application Load Balancer across multiple Availability Zones. As the company’s user base grows in the us-west-1 Region, it needs a solution with low latency and high availability.
What should a solutions architect do to accomplish this?

  • A. Provision EC2 instances in us-west-1. Switch the Application Load Balancer to a Network Load Balancer to achieve cross-Region load balancing.
  • B. Provision EC2 instances and an Application Load Balancer in us-west-1. Make the load balancer distribute the traffic based on the location of the request.
  • C. Provision EC2 instances and configure an Application Load Balancer in us-west-1. Create an accelerator in AWS Global Accelerator that uses an endpoint group that includes the load balancer endpoints in both Regions.
  • D. Provision EC2 instances and configure an Application Load Balancer in us-west-1. Configure Amazon Route 53 with a weighted routing polic
  • E. Create alias records in Route 53 that point to the Application Load Balancer.

Answer: B

NEW QUESTION 11
A company has on-premises servers running a relational database The current database serves high read traffic for users in different locations The company wants to migrate to AWS with the least amount of effort The database solution should support disaster recovery and not affect the company's current traffic flow.
Which solution meets these requirements?

  • A. Use a database in Amazon RDS with Multi-AZ and at least one read replica
  • B. Use a database in Amazon RDS with Multi-AZ and at least one standby replica
  • C. Use databases hosted on multiple Amazon EC2 instances in different AWS Regions
  • D. Use databases hosted on Amazon EC2 instances behind an Application Load Balancer in different Availability Zones

Answer: A

NEW QUESTION 12
A company is managing health records on-premises The company must keep these records indefinitely, disable any modifications to the records once they are stored, and granularly audit access at all levels. The chief technology officer (CTO) is concerned because there are already millions of records not being used by any application, and the current infrastructure is running out of space The CTO has requested a solutions architect design a solution to move existing data and support future records
Which services can the solutions architect recommend to meet these requirements'?

  • A. Use AWS DataSync to move existing data to AW
  • B. Use Amazon S3 to store existing and new data Enable Amazon S3 object lock and enable AWS CloudTrail with data events.
  • C. Use AWS Storage Gateway to move existing data to AWS Use Amazon S3 to store existing and new data Enable Amazon S3 object lock and enable AWS CloudTrail with management events.
  • D. Use AWS DataSync to move existing data to AWS Use Amazon S3 to store existing and new data Enable Amazon S3 object lock and enable AWS CloudTrail with management events.
  • E. Use AWS Storage Gateway to move existing data to AWS Use Amazon Elastic Block Store (Amazon EBS) to store existing and new data Enable Amazon S3 object lock and enable Amazon S3 server access logging

Answer: B

NEW QUESTION 13
A company runs an application in a branch office within a small data closet with no virtualized compute resources. The application data is stored on an NFS volume. Compliance standards require a daily offsite backup of the NFS volume.
Which solution meet these requirements?

  • A. Install an AWS Storage Gateway file gateway on premises to replicate the data to Amazon S3.
  • B. Install an AWS Storage Gateway file gateway hardware appliance on premises to replicate the data to Amazon S3.
  • C. Install an AWS Storage Gateway volume gateway with stored volumes on premises to replicate the data to Amazon S3.
  • D. Install an AWS Storage Gateway volume gateway with cached volumes on premises to replicate the data to Amazon S3.

Answer: C

NEW QUESTION 14
An application running on AWS uses an Amazon Aurora Multi-AZ deployment for its database When evaluating performance metrics, a solutions architect discovered that the database reads are causing high I/O and adding latency to the write requests against the database
What should the solutions architect do to separate the read requests from the write requests?

  • A. Enable read-through caching on the Amazon Aurora database
  • B. Update the application to read from the Multi-AZ standby instance
  • C. Create a read replica and modify the application to use the appropriate endpoint
  • D. Create a second Amazon Aurora database and link it to the primary database as a read replica.

Answer: C

NEW QUESTION 15
Organizers for a global event want to put daily reports online as static HTML pages The pages are expected to generate millions of views from users around the world The files are stored in an Amazon S3 bucket A solutions architect has been asked to design an efficient and effective solution
Which action should the solutions architect take to accomplish this?

  • A. Generate presigned URLs for the files
  • B. Use cross-Region replication to all Regions
  • C. Use the geoproximity feature of Amazon Route 53
  • D. Use Amazon CloudFront with the S3 bucket as its origin

Answer: D

NEW QUESTION 16
A company is hosting a web application on AWS using a single Amazon EC2 instance that stores
user-uploaded documents in an Amazon EBS volume For better scalability and availability the company duplicated the architecture and created a second EC2 instance and EBS volume in another Availability Zone: placing both behind an Application Load Balancer After completing this change users reported that each time they refreshed the website they could see one subset of their documents or the other but never all of the documents at the same time
What should a solutions architect propose to ensure users see all of their documents at once''

  • A. Copy the data so both EBS volumes contain all the documents
  • B. Configure the Application Load Balancer to direct a user to the server with the documents
  • C. Copy the data from both EBS volumes to Amazon EFS Modify the application to save new documents to Amazon EPS
  • D. Configure the Application Load Balancer to send the request to both servers Return each document from the correct server

Answer: C

NEW QUESTION 17
A company runs an application on a group of Amazon Linux EC2 instances The application writes log files using standard API calls For compliance reasons, all log files must be retained indefinitely and will be analyzed by a reporting tool that must access all files concurrently
Which storage service should a solutions architect use to provide the MOST cost-effective solution?

  • A. Amazon EBS
  • B. Amazon EFS
  • C. Amazon EC2 instance store
  • D. Amazon S3

Answer: D

NEW QUESTION 18
A solutions architect is implementing a document review application using an Amazon S3 bucket for storage
The solution must prevent accidental deletion of the documents and ensure that all versions of the documents are available Users must be able to download, modify, and upload documents
Which combination of actions should be taken to meet these requirements'? (Select TWO )

  • A. Enable a read-only bucket ACL
  • B. Enable versioning on the bucket
  • C. Attach an 1AM policy to the bucket
  • D. Enable MFA Delete on the bucket
  • E. Encrypt the bucket using AWS KMS

Answer: BD

NEW QUESTION 19
A company has deployed an API in a VPC behind an internet-facing Application Load Balancer (ALB) An application that consumes the API as a client is deployed in a second account in private subnets behind a NAT gateway. When requests to the client application increase, the NAT gateway costs are higher than expected. A solutions architect has configured the ALB to be internal.
Which combination of architectural changes will reduce the NAT gateway costs'? (Select TWO )

  • A. Configure a VPC peering connection between the two VPC
  • B. Access the API using the private address
  • C. Configure an AWS Direct Connect connection between the two VPC
  • D. Access the API using the private address.
  • E. Configure a ClassicLink connection for the API into the client VPC Access the API using the ClassicLink address.
  • F. Configure a PrivateLink connection for the API into the client VP
  • G. Access the API using the PrivateLink address.
  • H. Configure an AWS Resource Access Manager connection between the two accounts Access the API using the private address

Answer: DE

NEW QUESTION 20
A solutions architect is designing a system to analyze the performance of financial markets while the markets are closed The system will run a series of compute-intensive jobs for 4 hours every night The time to complete the compute jobs is expected to remain constant, and jobs cannot be interrupted once started Once completed, the system is expected to run for a minimum of 1 year
Which type of Amazon EC2 instances should be used to reduce the cost of the system?

  • A. Spot Instances
  • B. On-Demand Instances
  • C. Standard Reserved Instances
  • D. Scheduled Reserved Instances

Answer: D

NEW QUESTION 21
A company is migrating a three-tier application to AWS. The application requires a MySQL database. In the past, the application users reported poor application performance when creating new entries. These
performance issues were caused by users generating different real-time reports from the application duringworking hours.
Which solution will improve the performance of the application when it is moved to AWS?

  • A. Import the data into an Amazon DynamoDB table with provisioned capacit
  • B. Refactor the application to use DynamoDB for reports.
  • C. Create the database on a compute optimized Amazon EC2 instanc
  • D. Ensure compute resources exceed the on-premises database.
  • E. Create an Amazon Aurora MySQL Multi-AZ DB cluster with multiple read replica
  • F. Configure the application reader endpoint for reports.
  • G. Create an Amazon Aurora MySQL Multi-AZ DB cluste
  • H. Configure the application to use the backup instance of the cluster as an endpoint for the reports.

Answer: B

NEW QUESTION 22
A financial services company has a web application that serves users in the United States and Europe The application consists of a database tier and a web server tier The database tier consists of a MySQL database hosted in us-east-1 Amazon Route 53 geoproximity routing is used to direct traffic to instances in the closest Region A performance review of the system reveals that European users are not receiving the same level of query performance as those in the United States
Which changes should be made to the database tier to improve performance?

  • A. Migrate the database to Amazon RDS for MySQL Configure Multi-AZ in one of the European Regions
  • B. Migrate the database to Amazon DynamoDB Use DynamoDB global tables to enable replication to additional Regions
  • C. Deploy MySQL instances in each Region Deploy an Application Load Balancer in front of MySQL to reduce the load on the primary instance
  • D. Migrate the database to an Amazon Aurora global database in MySQL compatibility mode Configure read replicas in one of the European Regions

Answer: D

NEW QUESTION 23
A company's application is running on Amazon EC2 instances within an Auto Scaling group behind an Elastic Load Balancer Based on the application's history, the company anticipates a spike in traffic during a holiday each year A solutions architect must design a strategy to ensure that the Auto Scaling group proactively increases capacity to minimize any performance impact on application users
Which solution will meet these requirements?

  • A. Create an Amazon CloudWatch alarm to scale up the EC2 instances when CPU utilization exceeds 90%
  • B. Create a recurring scheduled action to scale up the Auto Scaling group before the expected period of peak demand
  • C. Increase the minimum and maximum number of EC2 instances in the Auto Scaling group during the peak demand period
  • D. Configure an Amazon Simple Notification Service (Amazon SNS) notification to send alerts when there are auto scaling EC2_INSTANCE_LAUNCH events

Answer: B

NEW QUESTION 24
A company has a two-tier application architecture that runs in public and private subnets Amazon EC2 instances running the web application are in the public subnet and a database runs on the private subnet The web application instances and the database are running in a single Availability Zone (AZ).
Which combination of steps should a solutions architect take to provide high availability for this architecture? (Select TWO.)

  • A. Create new public and private subnets in the same AZ for high availability
  • B. Create an Amazon EC2 Auto Scaling group and Application Load Balancer spanning multiple AZs
  • C. Add the existing web application instances to an Auto Scaling group behind an Application Load Balancer
  • D. Create new public and private subnets in a new AZ Create a database using Amazon EC2 in one AZ
  • E. Create new public and private subnets in the same VPC each in a new AZ Migrate the database to an Amazon RDS multi-AZ deployment

Answer: BE

NEW QUESTION 25
A company is planning to migrate a business-critical dataset to Amazon S3. The current solution design uses a single S3 bucket in the us-east-1 Region with versioning enabled to store the dataset. The company's disaster recovery policy states that all data multiple AWS Regions.
How should a solutions architect design the S3 solution?

  • A. Create an additional S3 bucket in another Region and configure cross-Region replication.
  • B. Create an additional S3 bucket in another Region and configure cross-origin resource sharing (CORS).
  • C. Create an additional S3 bucket with versioning in another Region and configure cross-Region replication.
  • D. Create an additional S3 bucket with versioning in another Region and configure cross-origin resource (CORS).

Answer: C

NEW QUESTION 26
......

Recommend!! Get the Full SAA-C02 dumps in VCE and PDF From Passcertsure, Welcome to Download: https://www.passcertsure.com/SAA-C02-test/ (New 80 Q&As Version)