
AWSCertified Security - Specialty
Domain 6Objective 2
Task 6.2: Implement a Secure and Consistent Deployment Strategy for Cloud Resources SCS-C03 Practice Questions (Page 1)
Part of the Content Domain 6: Security Foundations and Governance domain, which accounts for 14% of the SCS-C03 exam. AWS does not publish an official question count, but from its 170-minute exam (~70–115 total, ~10–16 in this domain), expect 3–5 from this objective — we provide 30 practice questions to prepare you well beyond it. (estimate)
30questions here
6free pages
10concepts
14%of the exam
Questions 1–5
- 1
What is the primary purpose of cfn-lint?
Select an answer first - 2
Which AWS service allows you to centrally configure and manage AWS WAF rules across all accounts in an AWS Organization?
Select an answer first - 3
A DevOps engineer is building a CI/CD pipeline that deploys AWS CloudFormation templates. The security team requires that no S3 bucket in any template be publicly accessible, and that all EC2 instances have the 'Environment' tag. The engineer wants to catch violations before the templates are deployed. Which combination of tools should be used in the pipeline?
Select an answer first - 4
A developer wants to catch errors in a CloudFormation template before submitting it for deployment. Which tool should they use?
Select an answer first - 5
A company has a centralized networking account that hosts a shared transit gateway and a set of subnets. Multiple application accounts need to use these shared resources to connect to a central VPC. The company wants to avoid duplicating the transit gateway and subnets in each account. What is the MOST efficient way to share these resources?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by AWS. “SCS-C03” is a trademark of its owner, used for identification only.