Weekend Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: merry71

Free AWS Certified Solutions Architect - Associate (SAA-C03) Practice Questions

Exams4sure Dumps

Exam style questions across every AWS-Solution-Architect-Associate domain

Last Update 3 days ago
Total Questions : 649

Start with our free AWS-Solution-Architect-Associate practice questions, carefully crafted to mirror the domains, phrasing, and difficulty of the real AWS Solutions Architect Associate exam. Each AWS-Solution-Architect-Associate exam question comes with a detailed rationale that explains not just which answer is correct but why the others fall short. That's how concepts stick. Use the free set to benchmark yourself: identify your Amazon weak domains, see where you're losing marks, and build a focused study plan in minutes.

AWS-Solution-Architect-Associate PDF

AWS-Solution-Architect-Associate PDF (Printable)
$59.7
$199

AWS-Solution-Architect-Associate Testing Engine

AWS-Solution-Architect-Associate PDF (Printable)
$67.5
$225

AWS-Solution-Architect-Associate PDF + Testing Engine

AWS-Solution-Architect-Associate PDF (Printable)
$74.7
$249
Question # 61

A hospital is designing a new application that gathers symptoms from patients. The hospital has decided to use Amazon Simple Queue Service (Amazon SOS) and Amazon Simple Notification Service (Amazon SNS) in the architecture.

A solutions architect is reviewing the infrastructure design Data must be encrypted at test and in transit. Only authorized personnel of the hospital should be able to access the data.

Which combination of steps should the solutions architect take to meet these requirements? (Select TWO.)

Options:

A.  

Turn on server-side encryption on the SQS components Update tie default key policy to restrict key usage to a set of authorized principals.

B.  

Turn on server-side encryption on the SNS components by using an AWS Key Management Service (AWS KMS) customer managed key Apply a key policy to restrict key usage to a set of authorized principals.

C.  

Turn on encryption on the SNS components Update the default key policy to restrict key usage to a set of authorized principals. Set a condition in the topic pokey to allow only encrypted connections over TLS.

D.  

Turn on server-side encryption on the SOS components by using an AWS Key Management Service (AWS KMS) customer managed key Apply a key pokey to restrict key usage to a set of authorized principals. Set a condition in the queue pokey to allow only encrypted connections over TLS.

E.  

Turn on server-side encryption on the SOS components by using an AWS Key Management Service (AWS KMS) customer managed key. Apply an IAM pokey to restrict key usage to a set of authorized principals. Set a condition in the queue pokey to allow only encrypted connections over TLS

Discussion 0
Question # 62

A company runs a web application that is backed by Amazon RDS. A new database administrator caused data loss by accidentally editing information in a database table To help recover from this type of incident, the company wants the ability to restore the database to its state from 5 minutes before any change within the last 30 days.

Which feature should the solutions architect include in the design to meet this requirement?

Options:

A.  

Read replicas

B.  

Manual snapshots

C.  

Automated backups

D.  

Multi-AZ deployments

Discussion 0
Question # 63

A rapidly growing ecommerce company is running its workloads in a single AWS Region. A solutions architect must create a disaster recovery (DR) strategy that includes a different AWS Region The company wants its database to be up to date in the DR Region with the least possible latency The remaining infrastructure in the DR Region needs to run at reduced capacity and must be able to scale up it necessary

Which solution will meet these requirements with the LOWEST recovery time objective (RTO)?

Options:

A.  

Use an Amazon Aurora global database with a pilot light deployment

B.  

Use an Amazon Aurora global database with a warm standby deployment

C.  

Use an Amazon RDS Multi-AZ DB instance with a pilot light deployment

D.  

Use an Amazon RDS Multi-AZ DB instance with a warm standby deployment

Discussion 0
Question # 64

A company is building a mobile app on AWS. The company wants to expand its reach to millions of users The company needs to build a platform so that authorized users can watch the company's content on their mobile devices

What should a solutions architect recommend to meet these requirements?

Options:

A.  

Publish content to a public Amazon S3 bucket. Use AWS Key Management Service (AWS KMS) keys to stream content.

B.  

Set up IPsec VPN between the mobile app and the AWS environment to stream content

C.  

Use Amazon CloudFront Provide signed URLs to stream content.

D.  

Set up AWS Client VPN between the mobile app and the AWS environment to stream content.

Discussion 0
Question # 65

A company has a large dataset for its online advertising business stored in an Amazon RDS for MySQL DB instance in a single Availability Zone. The company wants business reporting queries to run without impacting the write operations to the production DB instance.

Which solution meets these requirements?

Options:

A.  

Deploy RDS read replicas to process the business reporting queries.

B.  

Scale out the DB instance horizontally by placing it behind an Elastic Load Balancer

C.  

Scale up the DB instance to a larger instance type to handle write operations and queries

D.  

Deploy the OB distance in multiple Availability Zones to process the business reporting queries

Discussion 0

Free Exams Sample Questions