Free AWS-Solution-Architect-Associate Exam Braindumps

Pass your Amazon AWS Certified Solutions Architect - Associate exam with these free Questions and Answers

Page 10 of 111
QUESTION 41

- (Exam Topic 3)
A payment processing company records all voice communication with its customers and stores the audio files in an Amazon S3 bucket. The company needs to capture the text from the audio files. The company must remove from the text any personally identifiable information (Pll) that belongs to customers.
What should a solutions architect do to meet these requirements?

  1. A. Process the audio files by using Amazon Kinesis Video Stream
  2. B. Use an AWS Lambda function to scanfor known Pll patterns.
  3. C. When an audio file is uploaded to the S3 bucket, invoke an AWS Lambda function to start an Amazon Textract task to analyze the call recordings.
  4. D. Configure an Amazon Transcribe transcription job with Pll redaction turned o
  5. E. When an audio file is uploaded to the S3 bucket, invoke an AWS Lambda function to start the transcription jo
  6. F. Store theoutput in a separate S3 bucket.
  7. G. Create an Amazon Connect contact flow that ingests the audio files with transcription turned o
  8. H. Embed an AWS Lambda function to scan for known Pll pattern
  9. I. Use Amazon EventBridge (Amazon CloudWatch Events) to start the contact flow when an audio file is uploaded to the S3 bucket.

Correct Answer: C

QUESTION 42

- (Exam Topic 1)
A company runs its Infrastructure on AWS and has a registered base of 700.000 users for res document management application The company intends to create a product that converts large pdf files to jpg Imago files. The .pdf files average 5 MB in size. The company needs to store the original files and the converted files. A solutions architect must design a scalable solution to accommodate demand that will grow rapidly over lime.
Which solution meets these requirements MOST cost-effectively?

  1. A. Save the pdf files to Amazon S3 Configure an S3 PUT event to invoke an AWS Lambda function to convert the files to jpg format and store them back in Amazon S3
  2. B. Save the pdf files to Amazon DynamoD
  3. C. Use the DynamoDB Streams feature to invoke an AWS Lambda function to convert the files to jpg format and store them hack in DynamoDB
  4. D. Upload the pdf files to an AWS Elastic Beanstalk application that includes Amazon EC2 instances.Amazon Elastic Block Store (Amazon EBS) storage and an Auto Scaling grou
  5. E. Use a program In the EC2 instances to convert the files to jpg format Save the .pdf files and the .jpg files In the EBS store.
  6. F. Upload the .pdf files to an AWS Elastic Beanstalk application that includes Amazon EC2 instances, Amazon Elastic File System (Amazon EPS) storage, and an Auto Scaling grou
  7. G. Use a program in the EC2 instances to convert the file to jpg format Save the pdf files and the jpg files in the EBS store.

Correct Answer: A
Elastic BeanStalk is expensive, and DocumentDB has a 400KB max to upload files. So Lambda and S3 should be the one.

QUESTION 43

- (Exam Topic 3)
A company plans to use Amazon ElastiCache for its multi-tier web application A solutions architect creates a Cache VPC for the ElastiCache cluster and an App VPC for the application's Amazon EC2 instances Both VPCs are in the us-east-1 Region
The solutions architect must implement a solution to provide tne application's EC2 instances with access to the ElastiCache cluster
Which solution will meet these requirements MOST cost-effectively?

  1. A. Create a peering connection between the VPCs Add a route table entry for the peering connection in both VPCs Configure an inbound rule for the ElastiCache cluster's security group to allow inbound connection from the application's security group
  2. B. Create a Transit VPC Update the VPC route tables in the Cache VPC and the App VPC to route traffic through the Transit VPC Configure an inbound rule for the ElastiCache cluster's security group to allow inbound connection from the application's security group
  3. C. Create a peering connection between the VPCs Add a route table entry for the peering connection in both VPCs Configure an inbound rule for the peering connection's security group to allow inbound connection from the application's secunty group
  4. D. Create a Transit VPC Update the VPC route tables in the Cache VPC and the App VPC to route traffic through the Transit VPC Configure an inbound rule for the Transit VPCs security group to allow inbound connection from the application's security group

Correct Answer: A
Creating a peering connection between the two VPCs and configuring an inbound rule for the ElastiCache cluster's security group to allow inbound connection from the application's security group is the most
cost-effective solution. Peering connections are free and you only incur the cost of configuring the security
group rules. The Transit VPC solution requires additional VPCs and associated resources, which would incur additional costs.
Before Testing | AWS Certification Information and Policies | AWS
https://aws.amazon.com/certification/policies/before-testing/

QUESTION 44

- (Exam Topic 1)
A company recently launched Linux-based application instances on Amazon EC2 in a private subnet and launched a Linux-based bastion host on an Amazon EC2 instance in a public subnet of a VPC A solutions architect needs to connect from the on-premises network, through the company's internet connection to the bastion host and to the application servers The solutions architect must make sure that the security groups of all the EC2 instances will allow that access
Which combination of steps should the solutions architect take to meet these requirements? (Select TWO)

  1. A. Replace the current security group of the bastion host with one that only allows inbound access from the application instances
  2. B. Replace the current security group of the bastion host with one that only allows inbound access from the internal IP range for the company
  3. C. Replace the current security group of the bastion host with one that only allows inbound access from the external IP range for the company
  4. D. Replace the current security group of the application instances with one that allows inbound SSH access from only the private IP address of the bastion host
  5. E. Replace the current security group of the application instances with one that allows inbound SSH access from only the public IP address of the bastion host

Correct Answer: CD
https://digitalcloud.training/ssh-into-ec2-in-private-subnet/

QUESTION 45

- (Exam Topic 3)
A company wants to run an in-memory database for a latency-sensitive application that runs on Amazon EC2 instances. The application processes more than 100,000 transactions each minute and requires high network throughput. A solutions architect needs to provide a cost-effective network design that minimizes data transfer charges.
Which solution meets these requirements?

  1. A. Launch all EC2 instances in the same Availability Zone within the same AWS Regio
  2. B. Specify a placement group with cluster strategy when launching EC2 instances.
  3. C. Launch all EC2 instances in different Availability Zones within the same AWS Regio
  4. D. Specify a placement group with partition strategy when launching EC2 instances.
  5. E. Deploy an Auto Scaling group to launch EC2 instances in different Availability Zones based on a network utilization target.
  6. F. Deploy an Auto Scaling group with a step scaling policy to launch EC2 instances in different Availability Zones.

Correct Answer: A

Page 10 of 111

Post your Comments and Discuss Amazon AWS-Solution-Architect-Associate exam with other Community members: