AWS Certified Developer – Associate (DVA-C02) practice questions

208 free questions with answers and explanations.

Practice test
  1. 201.A development team is building a new microservice that runs on AWS Fargate. This microservice needs to securely access credentials stored in AWS Secrets Manager and temporary tokens for AWS services. The team wants to ensure that the microservice has only the necessary permissions and that these permissions are not hardcoded into the container image. How should the developer assign these permissions?Security
  2. 202.A development team is building a new application that uses Amazon SQS for message queuing. The messages contain sensitive customer information and must be encrypted at rest. The team requires that the encryption keys are managed by a service that integrates with AWS CloudTrail for auditing key usage and offers centralized control over key policies. Which SQS encryption option should they choose?Security
  3. 203.A developer is building a new application that will use Amazon S3 to store sensitive customer data. The data must be encrypted at rest, and the encryption keys must be rotated automatically without manual intervention. The development team wants to ensure that AWS manages the encryption keys entirely. Which encryption option should the developer choose?Security
  4. 204.A company is developing a serverless application that uses AWS Lambda functions to process highly sensitive data. The Lambda functions need to call a third-party API that requires requests to originate from a fixed, known IP address for whitelisting purposes. How can a developer ensure that the Lambda functions' outbound traffic consistently uses a static IP address?Security
  5. 205.A developer is building a RESTful API using Amazon API Gateway. The API needs to allow authenticated users from an Amazon Cognito User Pool to access specific API resources. The developer wants a solution that natively integrates with API Gateway and automatically manages token validation. Which authorizer type should the developer configure for the API Gateway methods?Security
  6. 206.A developer is building a serverless application that uses AWS Lambda functions to process user-uploaded images. The application needs to store temporary processing data, such as resized image versions, during the Lambda function's execution. This temporary data should not persist beyond the function invocation. Which of the following storage options is MOST appropriate and cost-effective for this use case?Development with AWS Services
  7. 207.A developer is building a high-performance web application that uses Amazon DynamoDB for its primary data store. The application experiences frequent read queries to a subset of its data, leading to increased latency and provisioned throughput consumption. The data is eventually consistent, and the application can tolerate slightly stale data for these read operations. Which AWS service or feature should the developer implement to reduce read latency and throughput costs?Development with AWS Services
  8. 208.A client is developing a mobile application that needs to authenticate users and provide them with temporary, limited-privilege access to AWS services like Amazon S3 for uploading profile pictures. The application uses a third-party identity provider (IdP) for user authentication. Which AWS service should the developer use to facilitate this authentication and authorization flow?Development with AWS Services