View Full Amazon AWS Certified Security – Specialty SCS-C02 Exam Dumps and Practice Test Dumps Question 181 Which AWS service provides browser-based shell access without managing local SSH credentials? AWS CloudShell Systems Manager Session Manager EC2 Instance Connect AWS OpsWorks Correct Answer: 1 Explanation: AWS CloudShell provides a browser-based command-line environment that is authenticated […]
View Full Amazon AWS Certified Security – Specialty SCS-C02 Exam Dumps and Practice Test Dumps Question 161 Which IAM feature lets administrators define reusable permission sets for workforce access? IAM Identity Center permission sets Inline user policies IAM access keys Role session tags Correct Answer: 1 Explanation: IAM Identity Center permission sets provide reusable […]
View Full Amazon AWS Certified Security – Specialty SCS-C02 Exam Dumps and Practice Test Dumps Question 141 Which AWS feature helps prevent accidental use of an old KMS key version? Key policy conditions Automatic key rotation Alias deletion Grant retirement Correct Answer: 2 Explanation: AWS KMS automatic key rotation periodically generates new cryptographic key […]
View Full Amazon AWS Certified Security – Specialty SCS-C02 Exam Dumps and Practice Test Dumps Question 121 Which AWS service helps centrally manage security policies across multiple AWS accounts? AWS Firewall Manager AWS Artifact AWS Audit Manager AWS Trusted Advisor Correct Answer: 1 Explanation: AWS Firewall Manager provides centralized management of firewall rules and […]
View Full Amazon AWS Certified Security – Specialty SCS-C02 Exam Dumps and Practice Test Dumps Question 101 Which IAM mechanism delegates temporary permissions to another AWS principal? IAM group Resource tag IAM role Account alias Correct Answer: 3 Explanation: An IAM role provides permissions that can be assumed by trusted principals, allowing them to […]
View Full Amazon AWS Certified Security – Specialty SCS-C02 Exam Dumps and Practice Test Dumps Question 81 Which IAM method lets an application obtain temporary AWS credentials? IAM group membership IAM role assumption Root account login Static console password Correct Answer: 2 Explanation: IAM role assumption allows an application or trusted principal to obtain […]
View Full Amazon AWS Certified Security – Specialty SCS-C02 Exam Dumps and Practice Test Dumps Question 61 Which IAM capability helps identify services a role has actually accessed? IAM Access Advisor AWS Shield Standard Amazon EFS Route 53 Resolver Correct Answer: 1 Explanation: IAM Access Advisor provides information about when an IAM principal last […]
View Full Amazon AWS Certified Security – Specialty SCS-C02 Exam Dumps and Practice Test Dumps Question 41 Which IAM feature helps identify unused permissions granted to roles? IAM Access Advisor AWS Shield S3 Inventory Amazon Inspector Correct Answer: 1 Explanation: IAM Access Advisor provides information about when AWS services were last accessed by an […]
View Full Amazon AWS Certified Security – Specialty SCS-C02 Exam Dumps and Practice Test Dumps Question 21 Which IAM control sets a maximum permission boundary for an identity? IAM permission boundary Route table association KMS grant token CloudTrail trail Correct Answer: 1 Explanation: An IAM permissions boundary defines the maximum permissions that an IAM […]
View Full Amazon AWS Certified Security – Specialty SCS-C02 Exam Dumps and Practice Test Dumps Question 1 Which AWS feature supplies temporary credentials to an EC2 application? IAM user password Instance profile role Root access token S3 access control list Correct Answer: 2 Explanation: An IAM role attached to an EC2 instance through an […]
View Full Linux Foundation KCNA Exam Dumps and Practice Test Dumps. Question 381 Which Kubernetes command is commonly used to create or update resources from a YAML manifest? kubectl apply kubectl logs kubectl describe kubectl exec Correct Answer: 1 Explanation The kubectl apply command is commonly used to create or update Kubernetes resources from […]
View Full Linux Foundation KCNA Exam Dumps and Practice Test Dumps. Question 361 Which Kubernetes component is responsible for managing the lifecycle of containers on a node through a container runtime? kubelet kube-scheduler kube-apiserver CoreDNS Correct Answer: 1 Explanation The kubelet is the primary node agent responsible for ensuring that containers described by assigned […]
View Full Linux Foundation KCNA Exam Dumps and Practice Test Dumps. Question 341 Which Kubernetes object is primarily used to maintain a desired number of identical Pod replicas? ReplicaSet ConfigMap Service Namespace Correct Answer: 1 Explanation A ReplicaSet maintains a specified number of identical Pod replicas. If one of the managed Pods is deleted […]
View Full Linux Foundation KCNA Exam Dumps and Practice Test Dumps. Question 321 Which Kubernetes object is used to store non-sensitive configuration data separately from application container images? Secret ConfigMap PersistentVolume ServiceAccount Correct Answer: 2 Explanation A ConfigMap stores non-sensitive configuration data separately from application container images. It can contain values such as application […]
View Full Linux Foundation KCNA Exam Dumps and Practice Test Dumps. Question 301 Which taint effect prevents new Pods from being scheduled onto a node unless they tolerate the taint? NoExecute NoSchedule PreferNoSchedule AllowSchedule Correct Answer: 2 Explanation The NoSchedule taint effect prevents Kubernetes from scheduling new Pods onto a node unless those Pods […]