SAA-C01 Exam Details

  • Exam Code
    :SAA-C01
  • Exam Name
    :AWS Certified Solutions Architect - Associate (SAA-C01)
  • Certification
    :Amazon Certifications
  • Vendor
    :Amazon
  • Total Questions
    :424 Q&As
  • Last Updated
    :Jun 04, 2025

Amazon SAA-C01 Online Questions & Answers

  • Question 251:

    A company has asked a Solutions Architect to ensure that data is protected during data transfer to and from Amazon S3. Use of which service will protect the data in transit?

    A. AWS KMS
    B. HTTPS
    C. SFTP
    D. FTPS

  • Question 252:

    A web company is looking to implement an external payment service into their highly available application deployed in a VPC. Their application EC2 instances are behind a public lacing ELB Auto scaling is used to add additional instances as

    traffic increases under normal load the application runs

    2 instances in the Auto Scaling group but at peak it can scale 3x in size. The application instances need to communicate with the payment service over the Internet which requires whitelisting of all public IP addresses used to communicate

    with it. A maximum of 4 whitelisting IP addresses is allowed at a time and can be added through an API.

    How should they architect their solution?

    A. Route payment requests through two NAT instances setup for High Availability and whitelist the Elastic IP addresses attached to the MAT instances.
    B. Whitelist the VPC Internet Gateway Public IP and route payment requests through the Internet Gateway.
    C. Whitelist the ELB IP addresses and route payment requests from the Application servers through the ELB.
    D. Automatically assign public IP addresses to the application instances in the Auto Scaling group and run a script on boot that adds each instances public IP address to the payment validation whitelist API.

  • Question 253:

    An application running on Amazon EC2 has been experiencing performance issues when accessing an Amazon RDS for Oracle database. The database has been provisioned correctly for average workloads, but there are several usage spikes each day that have saturated the database, causing the application to time out. The application is write-heavy, updating information more often than reading information. A Solutions Architect has been asked to review the application design.

    What should the Solutions Architect recommend to improve performance?

    A. Put an Amazon ElastiCache cluster in front of the database and use lazy loading to limit database access during peak periods.
    B. Put an Amazon Elasticsearch domain in front of the database and use a Write-Through cache to reduce database access during peak periods.
    C. Configure an Amazon RDS Auto Scaling group to automatically scale the RDS instance during load spikes.
    D. Change the Amazon RDS instance storage type from General Purpose SSD to provisioned IOPS SSD.

  • Question 254:

    A company wants to run a static website served through Amazon CloudFront.

    What is an advantage of storing the website content in an S3 bucket instead of an EBS volume?

    A. S3 buckets are replicated globally, allowing for large scalability. EBS volumes are replicated only within a region.
    B. S3 is an origin for CloudFront. EBS volumes would need EC2 instances behind an Elastic Load Balancing load balancer to be an origin.
    C. S3 buckets can be encrypted, allowing for secure storage of the web files. EBS volumes cannot be encrypted.
    D. S3 buckets support object-level read throttling, preventing abuse. EBS volumes do not provide object-level throttling.

  • Question 255:

    An application uses an Amazon RDS MySQL cluster for the database layer. Database growth requires periodic resizing of the instance. Currently, administrators check the available disk space manually once a week. How can this process be improved?

    A. Use the largest instance type for the database.
    B. Use AWS CloudTrail to monitor storage capacity.
    C. Use Amazon CloudWatch to monitor storage capacity.
    D. Use Auto Scaling to increase storage size.

  • Question 256:

    A Solutions Architect is designing a new web application on Amazon EC2. The system must make application-specific metrics, such as application security events, available to the SysOps teams. How should the Solutions Architect enable this in the design?

    A. Install AWS SDK on the application instances. Design the application to use the AWS SDK to log events directly to an Amazon S3 bucket.
    B. Install the Amazon Inspector agent on the application instances. Design the application to store events in application log files.
    C. Install the Amazon CloudWatch Logs agent on the application instances. Design the application to store events in application log files.
    D. Install AWS SDK on the application instances. Design the application to use AWS SDK to log sensitive events directly to AWS CloudTrail.

  • Question 257:

    A company needs to capture all client connection information from its Application Load Balancer every five minutes. This data will be used to analyze traffic patterns and troubleshoot the application. How can a Solutions Architect meet this requirement?

    A. Enable AWS CloudTrail for the Application Load Balancer.
    B. Enable Access Logs on the Application Load Balancer.
    C. Install CloudWatch Agent on the Application Load Balancer.
    D. Enable CloudWatch metrics on the Application Load Balancer.

  • Question 258:

    A Security team reviewed their company's VPC Flow Logs and found that traffic is being directed to the internet. The application in the VPC uses Amazon EC2 instances for compute and Amazon S3 for storage. The company's goal is to eliminate internet access and allow the application to continue to function.

    What change should be made in the VPC before updating the route table?

    A. Create a NAT gateway for Amazon S3 access
    B. Create a VPC endpoint for Amazon S3 access
    C. Create a VPC endpoint for Amazon EC2 access
    D. Create a NAT gateway for Amazon EC2 access

  • Question 259:

    A workload consists of downloading an image from an Amazon S3 bucket, processing the image, and moving it to another Amazon S3 bucket. An Amazon EC2 instance runs a scheduled task every hour to perform the operation. How should a Solutions Architect redesign the process so that it is highly available?

    A. Change the Amazon EC2 instance to compute optimized.
    B. Launch a second Amazon EC2 instance to monitor the health of the first.
    C. Trigger a Lambda function when a new object is uploaded.
    D. Initially copy the images to an attached Amazon EBS volume.

  • Question 260:

    Your company produces customer commissioned one-of-a-kind skiing helmets combining nigh fashion with custom technical enhancements Customers can show off their Individuality on the ski slopes and have access to head-up-displays.

    GPS rear-view cams and any other technical innovation they wish to embed in the helmet.

    The current manufacturing process is data rich and complex including assessments to ensure that the custom electronics and materials used to assemble the helmets are to the highest standards Assessments are a mixture of human and

    automated assessments you need to add a new set of assessment to model the failure modes of the custom electronics using GPUs with CUDA, across a cluster of servers with low latency networking. What architecture would allow you to

    automate the existing process using a hybrid approach and ensure that the architecture can support the evolution of processes over time?

    A. Use AWS Data Pipeline to manage movement of data and meta-data and assessments Use an auto- scaling group of G2 instances in a placement group.
    B. Use Amazon Simple Workflow (SWF) to manages assessments, movement of data and meta-data Use an auto-scaling group of G2 instances in a placement group.
    C. Use Amazon Simple Workflow (SWF) to manages assessments movement of data and meta-data Use an auto-scaling group of C3 instances with SR-IOV (Single Root I/O Virtualization).
    D. Use AWS data Pipeline to manage movement of data and meta-data and assessments use auto- scaling group of C3 with SR-IOV (Single Root I/O virtualization).

Tips on How to Prepare for the Exams

Nowadays, the certification exams become more and more important and required by more and more enterprises when applying for a job. But how to prepare for the exam effectively? How to prepare for the exam in a short time with less efforts? How to get a ideal result and how to find the most reliable resources? Here on Vcedump.com, you will find all the answers. Vcedump.com provide not only Amazon exam questions, answers and explanations but also complete assistance on your exam preparation and certification application. If you are confused on your SAA-C01 exam preparations and Amazon certification application, do not hesitate to visit our Vcedump.com to find your solutions here.