
AWSCertified CloudOps Engineer - Associate
Domain 4Objective 1
Task 4.1: Implement and Manage Security and Compliance Tools and Policies. SOA-C03 Practice Questions (Page 1)
Part of the Content Domain 4: Security and Compliance domain, which makes up ~17% of our current practice bank. AWS does not publish an official question count, but from its 130-minute exam (~50–85 total, ~9–14 in this domain), expect 5–7 from this objective — we provide 36 practice questions to prepare you well beyond it. (estimate)
36questions here
8free pages
16concepts
Questions 1–5
- 1
Which AWS Config feature allows you to deploy a collection of managed rules and remediation actions as a single package to enforce compliance across your AWS environment?
Select an answer first - 2
An EC2 instance needs to access an S3 bucket. What is the recommended way to grant the instance permissions without storing long-term credentials on the instance?
Select an answer first - 3
A company's security policy requires that IAM user passwords be at least 14 characters, contain uppercase, lowercase, numbers, and symbols, and expire every 90 days. The security team must enforce this for all IAM users in the account. What should they configure?
Select an answer first - 4
Which type of policy is used in AWS Organizations to restrict the maximum permissions that can be granted to IAM users and roles in member accounts?
Select an answer first - 5
Which AWS service provides security checks and recommendations, such as whether MFA is enabled on the root account or whether S3 buckets are publicly accessible?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by AWS. “SOA-C03” is a trademark of its owner, used for identification only.