Progress
Select the BEST action for each scenario.
| # | Scenario | Choose Best Action | Confidence | Result | Score |
|---|---|---|---|---|---|
| 1 | Public S3 bucket is accessible from the internet. Prevent public access and enforce server-side encryption. | Not Answered | — / 2 | ||
| 2 | Workload needs private access to S3 from an EC2 instance in a private subnet without internet routing. | Not Answered | — / 2 | ||
| 3 | Reduce storage cost for infrequently accessed application logs while maintaining 90-day retention. | Not Answered | — / 2 | ||
| 4 | EC2 instance needs read access to a DynamoDB table using a least-privilege IAM policy. | Not Answered | — / 2 |
Performance
0%
Accuracy
0 of 4 answered
Time Elapsed
00:00
Rows Answered
0 / 4
Matrix Score
0 / 8
0% — Not started
Partial credit available — each row scores on its own merit.
Row Breakdown
What we're checking
Need a hint?
Guided practice — hints are free. Reveal one to nudge your reasoning.
Reviewing answers may affect scoring.
Once submitted, your choices are locked for this attempt.