Free DOP-C02 sample questions
Real questions from the DevOps Engineer - Professional practice bank, with the correct answer and an explanation for each one. No junk, no filler.
Try them in the simulator Same questions, with study, timed and flashcard modes.
Showing 10 of 20 free sample questions.
A large enterprise uses AWS Organizations and has a mandate that all Amazon S3 buckets must block public access and have versioning enabled for compliance. A DevOps engineer needs to implement an automated, scalable solution to enforce this policy across all existing and future member accounts. The solution must automatically remediate any non-compliant S3 buckets. Which approach provides the most scalable and centrally managed solution?
A media company processes large video files using a fleet of Amazon EC2 instances. The processing workflow is orchestrated by AWS Step Functions. A key step involves an AWS Lambda function that analyzes video metadata. This function occasionally fails due to transient network issues when calling an external service. The DevOps team needs to implement a robust retry mechanism for this specific Lambda function within the Step Functions state machine, but simple retries are not sufficient. The retries should occur with an increasing delay, and the rate of increase should be less aggressive than the default exponential backoff. Which `Retry` block configuration should be used in the state machine definition to achieve this?
A DevOps team is managing a microservices application where services communicate via Amazon SNS topics and Amazon SQS queues. They are observing that some messages sent to an SQS queue are being processed multiple times, causing data duplication. The SQS queue is a standard queue, and the consumer is an AWS Lambda function. The team has determined that the Lambda function occasionally times out while processing a message, which leads to the message becoming visible again in the queue and being re-processed. What is the most effective solution to prevent duplicate processing while minimizing changes to the overall architecture?
A development team uses AWS CloudFormation to manage their serverless application, which consists of AWS Lambda functions and an Amazon API Gateway. They need to securely manage database connection strings for different environments (dev, staging, prod) without hardcoding them in the CloudFormation template or committing them to source control. The solution must allow for automatic rotation of credentials in the future. Which combination of services provides the most secure and manageable solution? (Select TWO)
A DevOps engineer is optimizing a CI/CD pipeline in AWS CodePipeline. The build stage, using AWS CodeBuild, takes a long time because it downloads a large number of dependencies on every run. The engineer wants to speed up the build process by caching these dependencies. The build environment must remain clean for each run, ensuring no stale files from previous builds interfere with the current one. Which caching mode in CodeBuild should be used?
A financial analytics platform runs on Amazon EC2 instances within an Auto Scaling group. During end-of-day processing, these instances experience very high CPU utilization. The operations team needs to receive an alert if the average CPU utilization across the fleet exceeds 90% for a continuous period of 5 minutes. However, to avoid false alarms during initial instance startup, the alarm should not consider data points from instances that are less than 10 minutes old. How can this be achieved using a single Amazon CloudWatch alarm?
True or False: When using AWS CodeDeploy with an EC2/On-Premises compute platform, the `appspec.yml` file must be placed at the root of the application revision directory structure.
An organization is using AWS Control Tower to manage a multi-account environment. A new compliance requirement dictates that all Amazon EBS volumes created must be of the `gp3` type to ensure a baseline level of performance and cost-efficiency. Any attempt to create a volume of a different type (e.g., `gp2`, `io1`) must be denied. The enforcement must be proactive. How should a DevOps engineer implement this control across the entire organization?
A DevOps engineer needs to deploy a serverless application defined using the AWS Serverless Application Model (AWS SAM). The deployment process must be fully automated through AWS CodePipeline. The pipeline needs to package the SAM application, generate a change set for review, and then execute the change set after a manual approval step. Which sequence of actions in CodePipeline is correct for this workflow?
10 more free samples are waiting
Create a free account to unlock the whole DOP-C02 sample bank, or get full access to all 286 practice questions in the simulator.