AWS Certified Solutions Architect - Professional Free Sample Questions

20 free sample questions704 in the full practice test Other version: SAP-C02(349)

Try simulator

SAP-C01 Sample Questions

  1. Question 1

    A company hosts a web application on AWS in the us-east-1 Region. The application servers are distributed across three Availability Zones behind an Application Load Balancer. The database is hosted in MYSQL database on an Amazon EC2 instance. A solutions architect needs to design a cross-Region data recovery solution using AWS services with an RTO of less than 5 minutes and an RPO of less than 1 minute. The solutions architect is deploying application servers in us-west-2, and has configured Amazon Route 53 health checks and DNS failover to us-west-2.

    Which additional step should the solutions architect take?

    Answer and explanation

    Correct answer: C

    Amazon Aurora Global Database provides the best disaster recovery solution for the specified RTO of 2 hours and RPO of 8 hours. Global Database enables cross-region replication with typical lag of less than 1 second, allowing for near-instantaneous failover to the secondary region when needed. The secondary cluster in us-west-2 can be promoted to primary within minutes, easily meeting the 2-hour RTO requirement. Multi-AZ deployments only protect against AZ failures within the same region, not regional disasters. EC2-based standby databases require manual failover and longer recovery times. Cross-region read replicas for RDS MySQL cannot be automatically promoted and would require manual intervention, making recovery times unpredictable.

  2. Question 2

    A company is refactoring an existing web service that provides read and write access to structured data. The service must respond to short but significant spikes in the system load. The service must be fault tolerant across multiple AWS Regions.

    Which actions should be taken to meet these requirements?

    Answer and explanation

    Correct answer: C

    DocumentDB with CloudFront, API Gateway, and Lambda provides the optimal solution for handling short but significant traffic spikes while maintaining fault tolerance across regions. CloudFront global edge locations automatically handle traffic spikes by caching responses and distributing load globally. Lambda automatically scales to handle concurrent requests without pre-provisioning capacity. API Gateway integrates seamlessly with Lambda for structured data operations. Aurora requires pre-provisioned capacity that may not handle sudden spikes efficiently. DynamoDB global tables would work but the combination lacks the global edge caching benefits of CloudFront. S3 is not suitable for structured data requiring read/write access patterns.

  3. Question 3

    Your company produces customer commissioned one-of-a-kind skiing helmets combining nigh fashion with custom technical enhancements Customers can show off their Individuality on the ski slopes and have access to head-up-displays. GPS rear-view cams and any other technical innovation they wish to embed in the helmet.
    The current manufacturing process is data rich and complex including assessments to ensure that the custom electronics and materials used to assemble the helmets are to the highest standards Assessments are a mixture of human and automated assessments you need to add a new set of assessment to model the failure modes of the custom electronics using GPUs with CUDA, across a cluster of servers with low latency networking.

    What architecture would allow you to automate the existing process using a hybrid approach and ensure that the architecture can support the evolution of processes over time?

    Answer and explanation

    Correct answer: D

    Amazon Simple Workflow (SWF) with G2 instances in a placement group provides the optimal solution for high-performance graphics rendering and video processing. G2 instances are GPU-optimized instances specifically designed for graphics-intensive workloads like rendering custom artwork and processing high-definition video content. SWF orchestrates complex workflows involving multiple steps of graphics processing, video encoding, and customer content integration. Placement groups ensure high network performance between instances for distributed rendering tasks. C3 instances lack GPU capabilities needed for graphics rendering. AWS Data Pipeline is designed for data movement and ETL, not real-time graphics processing workflows. The combination of SWF workflow orchestration with GPU-powered G2 instances provides the scale-out architecture needed for unpredictable bursts of graphics workloads while maintaining cost efficiency.

  4. Question 4

    Which AWS instance address has the following characteristics? :"lf you stop an instance, its Elastic IP address is unmapped, and you must remap it when you restart the instance.'

    Answer and explanation

    Correct answer: A

    EC2-Classic addresses exhibit this behavior where Elastic IP addresses are disassociated when instances are stopped and must be manually reassociated upon restart. In EC2-Classic, stopping an instance releases the Elastic IP address back to the pool, requiring manual reattachment. This contrasts with EC2-VPC where Elastic IP addresses remain associated with stopped instances. VPC addresses maintain their association even when instances are stopped and restarted. The question specifically describes the unmapping and remapping behavior characteristic of EC2-Classic networking model, not VPC addressing.

  5. Question 5

    A read only news reporting site with a combined web and application tier and a database tier that receives large and unpredictable traffic demands must be able to respond to these traffic fluctuations automatically.

    What AWS services should be used meet these requirements?

    Answer and explanation

    Correct answer: D

    Stateless instances with ElastiCache Memcached, Auto Scaling, and RDS read replicas provide the optimal architecture for a read-only news site with unpredictable traffic. Stateless instances enable rapid scaling since new instances do not need to maintain session state. ElastiCache Memcached provides high-performance caching for frequently accessed news content, reducing database load. RDS read replicas distribute read traffic across multiple database instances, essential for a read-heavy workload. Multi-AZ RDS provides high availability but does not improve read performance like read replicas do. Stateful instances are slower to scale and create bottlenecks during traffic spikes since they must maintain session information.

  6. Question 6

    You are designing a photo-sharing mobile app. The application will store all pictures in a single Amazon S3 bucket.
    Users will upload pictures from their mobile device directly to Amazon S3 and will be able to view and download their own pictures directly from Amazon S3.
    You want to configure security to handle potentially millions of users in the most secure manner possible.

    What should your server-side application do when a new user registers on the photo-sharing mobile application?

    Answer and explanation

    Correct answer: B

    Recording user information in Amazon RDS and creating an IAM role with appropriate permissions provides the most secure approach for mobile app authentication. Using AWS Security Token Service AssumeRole function generates temporary credentials that enhance security by eliminating long-term access keys stored in mobile devices. Temporary credentials automatically expire, reducing security risks if devices are compromised. Storing permanent IAM access keys directly in mobile apps creates significant security vulnerabilities since mobile applications can be reverse-engineered. Long-term credentials from STS contradict the principle of temporary access. DynamoDB could work for user storage, but the question emphasizes security, making the IAM role approach the preferred solution.

  7. Question 7

    A company is building a voting system for a popular TV show, viewers win watch the performances then visit the show's website to vote for their favorite performer. It is expected that in a short period of time after the show has finished the site will receive millions of visitors. The visitors will first login to the site using their Amazon.com credentials and then submit their vote. After the voting is completed the page will display the vote totals. The company needs to build the site such that can handle the rapid influx of traffic while maintaining good performance but also wants to keep costs to a minimum.

    Which of the design patterns below should they use?

    Answer and explanation

    Correct answer: C

    Using CloudFront with an Elastic Load Balancer and auto-scaled web servers, combined with SQS for vote processing, provides the best architecture for handling massive traffic spikes after a TV show ends. CloudFront distributes traffic globally and caches static content, reducing load on backend servers. The auto-scaling web servers handle authentication via Login with Amazon, then queue votes in SQS for reliable, decoupled processing. SQS provides durability and prevents vote loss during peak traffic periods. Static S3 hosting cannot handle the authentication and complex vote processing requirements. Multi-AZ RDS would become a bottleneck during traffic spikes. DynamoDB direct writes could overwhelm the database without the buffering provided by SQS queues.

  8. Question 8

    A company has a High Performance Computing (HPC) cluster in its on-premises data center, which runs thousands of jobs in parallel for one week every month, processing petabytes of images.
    The images are stored on a network file server, which is replicated to a disaster recovery site. The on-premises data center has reached capacity and has started to spread the jobs out over the course of the month in order to better utilize the cluster, causing a delay in the job completion.
    The company has asked its Solutions Architect to design a cost-effective solution on AWS to scale beyond the current capacity of 5,000 cores and 10 petabytes of data. The solution must require the least amount of management overhead and maintain the current level of durability.

    Which solution will meet the company’s requirements?

    Answer and explanation

    Correct answer: D

    Amazon EMR with Spark, using a combination of On-Demand and Reserved Instance Task Nodes, provides the optimal solution for processing petabytes of images in parallel HPC workloads. Spark is specifically designed for large-scale data processing and can efficiently handle image processing tasks across distributed compute nodes. EMR automatically manages the cluster infrastructure and scaling. DynamoDB maintains the job queue efficiently for distributed processing. Reserved Instances reduce costs for the predictable monthly workload pattern. AWS Batch is better for containerized jobs, not traditional HPC image processing. SQS with EC2 Spot Fleet lacks the distributed computing framework needed for petabyte-scale image processing. ECS containers add unnecessary overhead for compute-intensive HPC workloads.

  9. Question 9

    A company has an application that uses Amazon EC2 instances in an Auto Scaling group. The Quality Assurance (QA) department needs to launch a large number of short-lived environments to test the application. The application environments are currently launched by the Manager of the department using an AWS CloudFormation template. To launch the stack, the Manager uses a role with permission to use CloudFormation, EC2, and Auto Scaling APIs. The Manager wants to allow testers to launch their own environments, but does not want to grant broad permissions to each user.

    Which set up would achieve these goals?

    Answer and explanation

    Correct answer: D

    AWS Service Catalog provides the most secure and controlled approach for QA teams to launch standardized environments. Service Catalog enforces governance by restricting users to pre-approved templates while launch constraints ensure consistent resource configurations and permissions. QA users only need Service Catalog permissions, not broad CloudFormation or EC2 access. The existing role can be attached as a launch constraint to maintain proper security boundaries. Direct CloudFormation access would give QA teams too many permissions and could lead to security risks. Elastic Beanstalk lacks the fine-grained control and customization needed for complex application environments. Role assumption approaches complicate access management and increase security complexity. Reference: https://aws.amazon.com/ru/blogs/mt/how-to-launch-secure-and-governed-aws-resources-with-aws-cloudformation-and-aws-service-catalog/

  10. Question 10

    In Amazon IAM, what is the maximum length for a role name?

    Answer and explanation

    Correct answer: D

    In Amazon IAM, the maximum length for a role name is 64 characters. This limitation applies to all IAM role names to ensure consistent naming conventions and system compatibility. Role names must be unique within an AWS account and can contain alphanumeric characters plus specific special characters like hyphens and underscores. The 64-character limit is sufficient for descriptive role names while maintaining system performance. Other IAM entities have different limits: user names are also limited to 64 characters, while policy names can be up to 128 characters. These limits help maintain AWS service performance and prevent potential security issues with overly long identifiers. Reference: http://docs.aws.amazon.com/IAM/latest/UserGuide/LimitationsQnEntities.html

Register free to unlock 10 more sample questions

Lifetime One

Own this practice test forever.

$79.99
$75.99
one-time
  • Full access to 1,053 questions
  • Study, Timed & Flashcard Modes
  • All past and future versions i
  • Detailed Explanations
  • Study Tracking & Past Attempts
  • Brainy AI Assistant
  • Lifetime updates

Two

Any 2 exams per month.

$20.00/exam
$39.99
/month
  • 2 active exam slots
  • Study, Timed & Flashcard Modes
  • All past and future versions i
  • Detailed Explanations
  • Study Tracking & Past Attempts
  • 1,000 Brainy AI Credits
  • Cancel anytime

Premium Twelve

Any 12 exams over 3 months.

$15.00/exam
$179.99
/3 months
  • 4 active exam slots
  • Study, Timed & Flashcard Modes
  • All past and future versions i
  • Detailed Explanations
  • Study Tracking & Past Attempts
  • 15,000 Brainy AI Credits
  • Dedicated support
  • Friend seat included — full access

Trusted by professionals at

NvidiaSupabaseGitHubOpenAITursoClerkClaude AIAmazon