An on-call cloud engineer receives a critical alert about an e-commerce web server being unresponsive. Which of the following steps should the engineer take first?
A. Triage
B. Remediation
C. Escalation
D. Monitoring
Show Answer
Correct Answer: A
Explanation: The first step after receiving a critical alert is triage: validate the alert, assess its severity and scope, and gather enough information to determine the appropriate response. Remediation comes after understanding the issue, escalation is performed if needed based on triage, and monitoring is the ongoing activity that generated the alert.
Question 42
Which of the following is the best type of database for storing different types of unstructured data that may change frequently?
A. Vector
B. Relational
C. Non-relational
D. Graph
Show Answer
Correct Answer: C
Explanation: Non-relational (NoSQL) databases are designed to handle unstructured and semi-structured data with flexible schemas, making them well suited for data whose structure varies or changes frequently. Relational databases require predefined schemas, graph databases are specialized for relationships, and vector databases are optimized for embedding similarity search rather than general unstructured data storage.
Question 43
Which of the following best explains the concept of migrating from on premises to the cloud?
A. The configuration of a dedicated pipeline to transfer content to a remote location
B. The creation of virtual instances in an external provider to transfer operations of selected servers into a new, remotely managed environment
C. The physical transportation installation and configuration of company IT equipment in a cloud services provider’s facility
D. The extension of company IT infrastructure to a managed service provider
Show Answer
Correct Answer: B
Explanation: Cloud migration generally refers to moving applications, workloads, or servers from an on-premises environment into cloud infrastructure, typically by creating and running virtual instances or equivalent cloud resources managed by a cloud provider. Option A only describes a data transfer mechanism, C incorrectly implies physically moving company hardware into a provider facility, and D describes outsourcing or managed services rather than migration to the cloud.
Question 44
Which of the following best describes the list of known security vulnerabilities?
A. Common Weaknesses and Enumerations
B. Data Security Standards
C. Zero Trust
D. Common Vulnerabilities and Exposures
Show Answer
Correct Answer: D
Explanation: The Common Vulnerabilities and Exposures (CVE) list is the standardized catalog of publicly disclosed security vulnerabilities. CWE is a list of software weakness types rather than specific vulnerabilities, while the other options are security models or standards.
Question 45
Which of the following best describes a system that keeps all different versions of a software separate from each other while giving access to all of the versions?
A. Code documentation
B. Code control
C. Code repository
D. Code versioning
Show Answer
Correct Answer: C
Explanation: A code repository is the system or storage location that maintains the project's source code and, when used with version control, provides access to all historical versions. The other options are either not standard terms for this function (code control, code versioning) or refer to documentation rather than version storage.
Question 46
Users report being unable to access an application that uses TLS 1.1. The users are able to access other applications on the internet. Which of the following is the most likely reason for this issue?
A. The security team modified user permissions.
B. Changes were made to address vulnerabilities.
C. Privileged access was implemented.
D. The network ACL was modified.
Show Answer
Correct Answer: B
Explanation: TLS 1.1 is deprecated and commonly disabled during security hardening to remediate known vulnerabilities. If an application only supports TLS 1.1 while other internet applications remain accessible, the most likely cause is that older TLS versions were disabled as part of vulnerability remediation. Changes to permissions, privileged access, or network ACLs would not specifically explain failure only for a TLS 1.1 application while other sites continue to work.
Question 47
A cloud engineer deploys two virtual machines and migrates a local web application and database, respectively. After the engineer updates the DNS records, the web application does not respond. Which of the following should the cloud engineer do to troubleshoot the issue?
A. Increase the size and throughput of the virtual machines to allow more concurrent sessions.
B. Verify whether the operating systems in the virtual machines are compatible with the web application and database.
C. Check to ensure the new web application server configuration file points to the correct database location.
D. Repeat the migration to discard any inconsistencies during the data transfer.
Show Answer
Correct Answer: C
Explanation: After migrating the web application and database to separate virtual machines, a common cause of the application failing after DNS updates is that the web application is still configured to connect to the old database host (such as localhost or an on-premises address). Verifying that the web server configuration or connection string points to the correct database location is the appropriate troubleshooting step. The other options address capacity, OS compatibility, or repeating the migration, none of which are the most likely first troubleshooting action.
Question 48
A junior cloud administrator was recently promoted to cloud administrator and has been added to the cloud administrator group. The cloud administrator group is the only one that can access the engineering VM. The new administrator unsuccessfully attempts to access the engineering VM. However, the other administrators can access it without issue. Which of the following is the best way to identify the root cause?
A. Rebooting the engineering VM
B. Reviewing the administrator’s permissions to access the engineering VM
C. Allowing connections from 0.0.0.0/0 to the engineering VM
D. Performing a packet capture on the engineering VM
Show Answer
Correct Answer: B
Explanation: Because only the newly promoted administrator is affected while other members of the cloud administrator group can access the engineering VM, the issue is most likely related to that user's effective IAM/authorization or group membership rather than the VM or network. Reviewing the administrator's permissions and verifying group membership is the best first step to identify the root cause.
Question 49
A cloud vendor notifies an administrator that the router version currently in use will no longer be made. Which of the following describes the stage the router has reached and what needs to be done?
A. The router has reached end of support. The router’s software should be updated.
B. The router has reached end of support. The router should be replaced.
C. The router has reached end of life. The router’s software should be updated.
D. The router has reached end of life. The router should be replaced.
Show Answer
Correct Answer: D
Explanation: A vendor notifying that a router version will no longer be made indicates the product has reached end of life (EOL), meaning it is no longer manufactured. The appropriate administrative action is to plan and replace the router with a supported model rather than simply updating software. End of support refers specifically to the cessation of vendor support for an existing product, not the fact that it is no longer manufactured.
Question 50
Which of the following has the most influence when determining the maximum data loss in the event of a disaster?
A. Recovery point objective
B. Business continuity and disaster recovery
C. Mean time to recover
D. Recovery time objective
Show Answer
Correct Answer: A
Explanation: Recovery Point Objective (RPO) defines the maximum acceptable amount of data loss measured in time. It determines how much data may be lost between the last recoverable backup or replication point and the disaster. Recovery Time Objective (RTO) concerns how quickly services must be restored, MTTR measures average repair time, and BC/DR is the overall discipline rather than a specific data-loss metric.
$19
Get all 180 questions with detailed answers and explanations
Instant download HTML + PDF delivered the moment payment clears.
Secure Stripe checkout we never see or store your card details.
7-day refund if files are defective see our refund policy.