AWS Security and IAM Flashcards
6 cards from real AWS practice questions. Tap to flip, then mark Knew It or Still Learning โ missed cards come back until you master them.
Read the first 6 AWS Security and IAM flashcards as text
Which AWS service manages the creation and control of encryption keys used to protect your data?
Answer: AWS KMS
AWS KMS (Key Management Service) is a managed service for creating and controlling cryptographic keys to encrypt data.
What is the purpose of AWS Secrets Manager?
Answer: To store, rotate, and manage access to secrets like database credentials and API keys
AWS Secrets Manager helps you protect access to your applications, services, and IT resources by storing and rotating secrets.
Which AWS compliance program helps customers understand the controls AWS has in place?
Answer: AWS Artifact
AWS Artifact provides on-demand access to AWS compliance reports and security documentation.
What does the AWS Shared Responsibility Model define?
Answer: Which security tasks are AWS's responsibility and which are the customer's responsibility
The AWS Shared Responsibility Model defines security responsibilities: AWS secures the cloud infrastructure, customers secure their data and applications within the cloud.
Which AWS service provides a managed vulnerability assessment service for EC2 instances and container images?
Answer: AWS Inspector
AWS Inspector automatically assesses applications for vulnerabilities and deviations from best practices on EC2 instances and container images.
What is the function of AWS Network ACLs (Access Control Lists)?
Answer: To control inbound and outbound traffic at the subnet level in a VPC
Network ACLs act as stateless firewalls at the subnet level, controlling traffic entering and leaving subnets in a VPC.