
AWSCertified Cloud Practitioner
Domain 2Objective 2
Task Statement 2.2: Understand AWS Cloud Security, Governance, and Compliance Concepts. CLF-C02 Practice Questions (Page 3)
Part of the Security and Compliance domain, which makes up ~24% of our current practice bank. AWS does not publish an official question count, but from its 90-minute exam (~35–60 total, ~8–14 in this domain), expect 2–4 from this objective — we provide 34 practice questions to prepare you well beyond it. (estimate)
34questions here
7free pages
22concepts
Questions 11–15
- 11
Which AWS service provides operational visibility and control, including patch management and compliance scanning?
Select an answer first - 12
Which AWS service aggregates and prioritizes security findings from multiple AWS accounts and services?
Select an answer first - 13
What is the purpose of a Service Control Policy (SCP) in AWS Organizations?
Select an answer first - 14
A company wants to enable encryption on an S3 bucket using a key that they can rotate and manage themselves. Which AWS service should they use?
Select an answer first - 15
What is the primary purpose of an IAM role?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by AWS. “CLF-C02” is a trademark of its owner, used for identification only.