AWS-Developer試験番号:AWS-Developer 前提条件
試験科目:「AWS Certified Developer - Associate」

NO.1 Can you configure an RDS Read Replica using CloudFormation templates?
A. Yes, provided that you have root access.
B. Yes, but not for all Regions.
C. No, you can add the ReadReplica only when the resource is made available by CloudFormation
D. Yes, when you create a new CloudFormation template
Answer: D

AWS-Developer 模擬   AWS-Developer 入門   
AWS CloudFormation gives developers and systems administrators an easy way to create and
collections of AWS resources. You can now set Read Replicas for your databases with RDS when you
create a new CloudFormation template.You can start using it with the sample template of

NO.2 A user has created an application which sends data to a log file. The server hosting the log files
can be
unavailable due to any reason. The user wants to make it so that whenever the log server is up it
be receiving the messages. Which of the below mentioned AWS services helps achieve this
A. AWS Simple Task Service
B. AWS Simple Queue Service
C. AWS Simple Notification Service
D. AWS Simple Workflow
Answer: B

AWS-Developer 信頼度   
Amazon Simple Queue Service (SQS) is a fast, reliable, scalable, and fully managed message queuing
service. SQS provides a simple and cost-effective way to decouple the components of an application.
user can use SQS to transmit any volume of data without losing messages or requiring other services
always be available. Using SQS, the application has to just send the data to SQS and SQS transmits it
the log file whenever it is available.

NO.3 Which statements about DynamoDB are true? Choose 2 answers
A. DynamoDB uses optimistic concurrency control
B. DynamoDB restricts item access during reads
C. DynamoDB restricts item access during writes
D. DynamoDB uses conditional writes for consistency
E. DynamoDB uses a pessimistic locking model
Answer: A,D

AWS-Developer 対策   

NO.4 An organization is setting up their website on AWS. The organization is working on various
measures to be performed on the AWS EC2 instances. Which of the below mentioned security
mechanisms will not help the organization to avoid future data leaks and identify security
A. Perform SQL injection for application testing.
B. Run penetration testing on AWS with prior approval from Amazon.
C. Perform a hardening test on the AWS instance.
D. Perform a Code Check for any memory leaks.
Answer: D

AWS-Developer 合格点   
AWS security follows the shared security model where the user is as much responsible as Amazon.
Amazon is a public cloud it is bound to be targeted by hackers. If an organization is planning to host
application on AWS EC2, they should perform the below mentioned security checks as a measure to
any security weakness/data leaks:
Perform penetration testing as performed by attackers to find any vulnerability. The organization
take an approval from AWS before performing penetration testing
Perform hardening testing to find if there are any unnecessary ports open
Perform SQL injection to find any DB security issues
The code memory checks are generally useful when the organization wants to improve the

