9. Which AWS service is used for monitoring and logging?
Amazon CloudWatch
AWS Config
AWS CloudTrail
AWS X-Ray
✅ Correct Answer: Amazon CloudWatch
10. What is the primary use case for AWS Organizations?
Manage multiple AWS accounts
Monitor resource usage
Store data securely
Deploy applications
✅ Correct Answer: Manage multiple AWS accounts
11. Which AWS service is used for securing data in transit?
AWS Certificate Manager
AWS KMS
AWS Secrets Manager
AWS CloudTrail
✅ Correct Answer: AWS Certificate Manager
12. What is the purpose of AWS Artifact?
Access compliance reports and agreements
Monitor resource usage
Store data securely
Deploy applications
✅ Correct Answer: Access compliance reports and agreements
13. Which AWS service is used for securing S3 buckets?
S3 Bucket Policies
AWS IAM
AWS KMS
AWS CloudTrail
✅ Correct Answer: S3 Bucket Policies
14. What is the primary use case for AWS GuardDuty?
Threat detection
Monitor resource usage
Store data securely
Deploy applications
✅ Correct Answer: Threat detection
15. Which AWS service is used for managing security groups?
Amazon VPC
AWS IAM
AWS KMS
AWS CloudTrail
✅ Correct Answer: Amazon VPC
16. What is the purpose of AWS Macie?
Discover and protect sensitive data
Monitor resource usage
Store data securely
Deploy applications
✅ Correct Answer: Discover and protect sensitive data
17. Which AWS service is used for securing EC2 instances?
Security Groups
AWS IAM
AWS KMS
AWS CloudTrail
✅ Correct Answer: Security Groups
18. What is the primary use case for AWS Firewall Manager?
Centralized firewall management
Monitor resource usage
Store data securely
Deploy applications
✅ Correct Answer: Centralized firewall management
19. Which AWS service is used for securing RDS databases?
IAM Database Authentication
AWS IAM
AWS KMS
AWS CloudTrail
✅ Correct Answer: IAM Database Authentication
20. What is the purpose of AWS Security Hub?
Centralized security and compliance view
Monitor resource usage
Store data securely
Deploy applications
✅ Correct Answer: Centralized security and compliance view
21. Which AWS service provides managed DDoS protection?
AWS Shield
AWS WAF
Amazon Inspector
AWS Config
✅ Correct Answer: AWS Shield
22. What is the maximum number of IAM roles that can be attached to an EC2 instance?
1
5
10
20
✅ Correct Answer: 1
23. Which AWS service is used to centrally manage firewall rules across accounts?
AWS Firewall Manager
AWS WAF
AWS Shield
AWS Config
✅ Correct Answer: AWS Firewall Manager
24. What is the purpose of AWS Key Management Service (KMS)?
To create and control encryption keys
To manage IAM users
To monitor network traffic
To store secrets
✅ Correct Answer: To create and control encryption keys
25. Which AWS service provides automated security assessments for EC2 instances?
Amazon Inspector
AWS Config
AWS Shield
AWS WAF
✅ Correct Answer: Amazon Inspector
26. What is the maximum number of policies that can be attached to an IAM user?
10
20
50
100
✅ Correct Answer: 10
27. Which AWS service is used to discover and protect sensitive data?
Amazon Macie
AWS Shield
AWS WAF
AWS Config
✅ Correct Answer: Amazon Macie
28. What is the purpose of AWS Secrets Manager?
To rotate, manage, and retrieve secrets
To manage IAM users
To monitor network traffic
To store encryption keys
✅ Correct Answer: To rotate, manage, and retrieve secrets
29. Which AWS service provides threat detection using machine learning?
Amazon GuardDuty
AWS Shield
AWS WAF
AWS Config
✅ Correct Answer: Amazon GuardDuty
30. What is the maximum number of access keys allowed per IAM user?
2
5
10
20
✅ Correct Answer: 2
31. Which AWS service provides a centralized view of security alerts?
AWS Security Hub
AWS Shield
AWS WAF
AWS Config
✅ Correct Answer: AWS Security Hub
32. What is the purpose of AWS Certificate Manager?
To provision, manage, and deploy SSL/TLS certificates
To manage IAM users
To monitor network traffic
To store encryption keys
✅ Correct Answer: To provision, manage, and deploy SSL/TLS certificates
33. Which AWS service provides network security for EC2 instances?
Security Groups
AWS Shield
AWS WAF
AWS Config
✅ Correct Answer: Security Groups
34. What is the maximum number of security groups that can be attached to an EC2 instance?
5
10
20
50
✅ Correct Answer: 5
35. Which AWS service provides a web application firewall?
AWS WAF
AWS Shield
Amazon Inspector
AWS Config
✅ Correct Answer: AWS WAF
36. What is the purpose of AWS Organizations SCPs?
To control permissions across multiple AWS accounts
To manage IAM users
To monitor network traffic
To store encryption keys
✅ Correct Answer: To control permissions across multiple AWS accounts
37. Which AWS service provides compliance monitoring?
AWS Config
AWS Shield
AWS WAF
Amazon Inspector
✅ Correct Answer: AWS Config
38. What is the maximum number of rules allowed in a single AWS WAF web ACL?
100
200
500
1000
✅ Correct Answer: 500
39. Which AWS service provides database authentication without passwords?
IAM Database Authentication
AWS Shield
AWS WAF
AWS Config
✅ Correct Answer: IAM Database Authentication
40. What is the purpose of AWS Artifact?
To access compliance reports and agreements
To manage IAM users
To monitor network traffic
To store encryption keys
✅ Correct Answer: To access compliance reports and agreements
41. Which AWS service provides network security for VPCs?
Network ACLs
AWS Shield
AWS WAF
AWS Config
✅ Correct Answer: Network ACLs
42. What is the maximum number of policies that can be attached to an IAM role?
10
20
50
100
✅ Correct Answer: 10
43. Which AWS service provides encryption for data at rest?
AWS KMS
AWS Shield
AWS WAF
AWS Config
✅ Correct Answer: AWS KMS
44. What is the purpose of AWS CloudHSM?
To manage hardware security modules
To manage IAM users
To monitor network traffic
To store encryption keys
✅ Correct Answer: To manage hardware security modules
45. Which AWS service provides encryption for data in transit?
AWS Certificate Manager
AWS Shield
AWS WAF
AWS Config
✅ Correct Answer: AWS Certificate Manager
46. What is the maximum number of rules allowed in a security group?
50
60
100
200
✅ Correct Answer: 60
47. Which AWS service provides encryption for S3 objects?
S3 Encryption
AWS Shield
AWS WAF
AWS Config
✅ Correct Answer: S3 Encryption
48. What is the purpose of AWS Single Sign-On (SSO)?
To manage access to multiple AWS accounts
To manage IAM users
To monitor network traffic
To store encryption keys
✅ Correct Answer: To manage access to multiple AWS accounts
49. Which AWS service provides encryption for EBS volumes?
EBS Encryption
AWS Shield
AWS WAF
AWS Config
✅ Correct Answer: EBS Encryption
50. What is the maximum number of rules allowed in a network ACL?
20
40
100
200
✅ Correct Answer: 20
51. Which AWS service provides encryption for RDS databases?
RDS Encryption
AWS Shield
AWS WAF
AWS Config
✅ Correct Answer: RDS Encryption
52. What is the purpose of AWS Control Tower?
To set up and govern a secure multi-account AWS environment
To manage IAM users
To monitor network traffic
To store encryption keys
✅ Correct Answer: To set up and govern a secure multi-account AWS environment
53. Which AWS service provides encryption for DynamoDB tables?
DynamoDB Encryption
AWS Shield
AWS WAF
AWS Config
✅ Correct Answer: DynamoDB Encryption
54. What is the maximum number of AWS accounts that can be managed by AWS Organizations?
1000
5000
10000
20000
✅ Correct Answer: 5000
55. Which AWS service provides encryption for Lambda functions?
Lambda Encryption
AWS Shield
AWS WAF
AWS Config
✅ Correct Answer: Lambda Encryption
56. What is the purpose of AWS Detective?
To analyze security findings
To manage IAM users
To monitor network traffic
To store encryption keys
✅ Correct Answer: To analyze security findings
57. Which AWS service provides encryption for API Gateway?
API Gateway Encryption
AWS Shield
AWS WAF
AWS Config
✅ Correct Answer: API Gateway Encryption
58. What is the maximum number of AWS Organizations SCPs that can be attached to an account?
5
10
20
50
✅ Correct Answer: 5
59. Which AWS service provides encryption for CloudFront distributions?
CloudFront Encryption
AWS Shield
AWS WAF
AWS Config
✅ Correct Answer: CloudFront Encryption
60. What is the purpose of AWS Audit Manager?
To assess compliance with regulations and standards
To manage IAM users
To monitor network traffic
To store encryption keys
✅ Correct Answer: To assess compliance with regulations and standards
The Aws Certified Security Specialty Scs C02 certification is a globally recognized credential for IT professionals.
This practice test helps you prepare by covering key topics like hardware, networking, troubleshooting, and security.
Want more practice? Check out our other mock exams: