Q1easymcq
Which service automatically discovers and classifies sensitive data (like PII) in S3?
Q2easymcq
Which service lets you access AWS services privately from your VPC without traversing the public internet?
Q3easymcq
Under the shared responsibility model, who secures the underlying cloud infrastructure?
Q4easymcq
Which service logs API calls and account activity across AWS services?
Q5easymcq
Which service tracks and evaluates AWS resource configurations against desired rules over time?
Q6easymcq
Which service continuously collects evidence for audits against a chosen compliance framework?
Q7easymcq
Which service gives on-demand access to AWS's own compliance reports (e.g. SOC reports)?
Q8easymcq
Which service provides automated vulnerability scanning for workloads?
Q9easymcq
Which manages identity and access specifically for AI agents?
Q10easymcq
Which technique reduces hallucination risk by anchoring answers in real retrieved documents?
Q11hardmcq
A security team needs a single place to answer 'who called this API and when' during an incident investigation. Best fit?
Q12hardmulti
Which of these are data governance dimensions named in this lesson?
Select all that apply.
Q13hardmcq
An AWS framework that classifies a GenAI workload's risk/responsibility scope based on how much of the stack you control is called:
Q14hardordering
Order these by primary purpose, from 'find vulnerabilities' to 'get AWS's own compliance paperwork'.
Q15hardmatching
Match each service to its one-line purpose.
AWS Config
AWS CloudTrail
AWS Audit Manager
AWS Trusted Advisor
Q16hardmcq
A team wants low-confidence GenAI outputs automatically flagged before reaching users. Which concept from this lesson directly supports that?
Q17hardmcq
A healthcare company must keep patient data from ever leaving a specific legal jurisdiction. Which governance dimension does this fall under?
Q18hardmulti
Which of these are GenAI-specific security/privacy considerations named in this lesson?
Select all that apply.
Q19hardmcq
Under the shared responsibility model, which of these is the CUSTOMER's responsibility, not AWS's?
Q20hardmcq
A company wants automated, ongoing evidence collection to prepare for a SOC 2 audit with minimal manual effort. Best fit?