WGU D282 | OA| OBJECTIVE ASSESSMENT |CLOUD
FOUNDATIONS - (CLOUD CONCEPTS) EXAM QUESTIONS AND
ANSWERS
Correct
Incorrect
Five Ten
Four Two
, 2 of 63
Term
Who is responsible for security within the cloud, and who is
responsible for security of the cloud?
Give this one a try later!
Security within = customer
The Effects section
Security of = AWS
A bucket policy Security Policy Document
Don't know?
3 of 63
Term
Which component is a way of defining allowed or denied
permissions for a user or resource by attaching this component?
Give this one a try later!
AWS Identity and Access
AWS Security Groups
Management (IAM) policies
AWS CloudTrail logs AWS Resource Tags
, Don't know?
4 of 63
Term
Which service allows you to perform data encryption using
cryptographic keys?
Give this one a try later!
AWS Key Management
AWS Data Encryption Service (DES)
Service (KMS)
AWS Cryptographic Management
AWS Security Key Service (SKS)
Service (CMS)
Don't know?
5 of 63
Term
Which AWS Trusted Advisor pillar indicates a lack of backups, like
EBS volumes that do not have snapshots taken of them?
Give this one a try later!
Elasticity Recovery
, Fault Tolerance Scalability
Don't know?
6 of 63
Term
What are two security options used within Amazon S3 that can be
used for preventing accidental delete action?
Give this one a try later!
Patching, Configuration, and
Versioning and MFA Delete
Training
AWS Identity and Access AWS Identity and Access
Management (IAM) Role Management (IAM) Policies
Don't know?
7 of 63
Term
In which two locations does Amazon recommend you store access
keys for IAM users?
Give this one a try later!
FOUNDATIONS - (CLOUD CONCEPTS) EXAM QUESTIONS AND
ANSWERS
Correct
Incorrect
Five Ten
Four Two
, 2 of 63
Term
Who is responsible for security within the cloud, and who is
responsible for security of the cloud?
Give this one a try later!
Security within = customer
The Effects section
Security of = AWS
A bucket policy Security Policy Document
Don't know?
3 of 63
Term
Which component is a way of defining allowed or denied
permissions for a user or resource by attaching this component?
Give this one a try later!
AWS Identity and Access
AWS Security Groups
Management (IAM) policies
AWS CloudTrail logs AWS Resource Tags
, Don't know?
4 of 63
Term
Which service allows you to perform data encryption using
cryptographic keys?
Give this one a try later!
AWS Key Management
AWS Data Encryption Service (DES)
Service (KMS)
AWS Cryptographic Management
AWS Security Key Service (SKS)
Service (CMS)
Don't know?
5 of 63
Term
Which AWS Trusted Advisor pillar indicates a lack of backups, like
EBS volumes that do not have snapshots taken of them?
Give this one a try later!
Elasticity Recovery
, Fault Tolerance Scalability
Don't know?
6 of 63
Term
What are two security options used within Amazon S3 that can be
used for preventing accidental delete action?
Give this one a try later!
Patching, Configuration, and
Versioning and MFA Delete
Training
AWS Identity and Access AWS Identity and Access
Management (IAM) Role Management (IAM) Policies
Don't know?
7 of 63
Term
In which two locations does Amazon recommend you store access
keys for IAM users?
Give this one a try later!