
AWSCertified Security - Specialty
Domain 3Objective 1
Task 3.1: Design, Implement, and Troubleshoot Security Controls for Network Edge Services SCS-C03 Practice Questions (Page 3)
Part of the Content Domain 3: Infrastructure Security domain, which accounts for 18% of the SCS-C03 exam. AWS does not publish an official question count, but from its 170-minute exam (~70–115 total, ~13–21 in this domain), expect 4–7 from this objective — we provide 26 practice questions to prepare you well beyond it. (estimate)
26questions here
6free pages
11concepts
18%of the exam
Questions 11–15
- 11
A company wants to protect its Amazon CloudFront distribution from sophisticated DDoS attacks and get access to DDoS response team (DRT) support. Which AWS service should be enabled?
Select an answer first - 12
A security engineer wants to identify clients that are using a headless browser to scrape content from a website. Which client fingerprinting technique would be most effective?
Select an answer first - 13
A web application hosted on domain example.com needs to make authenticated requests to an S3 bucket. What must be configured on the S3 bucket to allow these cross-origin requests?
Select an answer first - 14
What is the primary purpose of client fingerprinting in edge security?
Select an answer first - 15
A company wants to restrict access to its CloudFront distribution so that users in a specific country are blocked. Which CloudFront feature should be used?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by AWS. “SCS-C03” is a trademark of its owner, used for identification only.