AWS Certified Solutions Architect – Professional flashcards
132 free flashcards. Tap a card to flip it.
Aurora Global Database for DR
Flip cardAmazon Aurora Global Database is a single database spanning multiple AWS regions, enabling fast local reads in secondary regions, rapid disaster recovery (RTO/RPO in minutes/seconds), and maintaining strong consistency in the primary region for critical relational workloads.
- Single database spans multiple regions.
- Low-latency global reads from secondary regions.
- RPO in seconds, RTO in minutes for disaster recovery.
- PostgreSQL and MySQL compatible.
Memory trick: Aurora Global Database is the ultimate relational fortress, globally accessible and rapidly recoverable.
AWS Control Tower for Multi-Region Governance
Flip cardAWS Control Tower helps global enterprises establish and govern secure, multi-account AWS environments (landing zones) across multiple regions, ensuring consistent compliance and security policies from initial account provisioning.
- Automates the creation of new AWS accounts with a predefined baseline.
- Enforces preventative and detective guardrails for compliance.
- Provides a centralized dashboard for governance and compliance status.
Memory trick: Control Tower Governs Global Growth with Guardrails.
DynamoDB Global Tables for E-commerce
Flip cardLeveraging Amazon DynamoDB Global Tables to provide a highly scalable, low-latency, and globally distributed database solution for e-commerce product catalogs, supporting millions of requests per second with high availability and eventual consistency.
- Multi-region active-active replication.
- Extremely low-latency global reads and writes.
- Scales to millions of requests per second.
- Supports eventual consistency for updates.
Memory trick: DynamoDB Global Tables: products appear instantly worldwide, like magic.
IoT Time-Series Data Platform
Flip cardAn AWS architecture for ingesting, storing, and analyzing high-volume, high-velocity time-series data from IoT devices, enabling real-time insights and predictive maintenance.
- Uses AWS IoT Core for device connectivity and message routing.
- Leverages Kinesis for data ingestion.
- Employs Amazon Timestream for optimized time-series storage.
- Integrates Lambda/SageMaker for real-time analytics and ML.
Memory trick: IoT Core Streams to Timestream for ML Insights.
AWS Live & VOD Streaming Architecture
Flip cardAn AWS solution for building scalable, highly available video streaming platforms that can ingest live feeds, transcode content, store media assets, and deliver both live and video-on-demand content globally with low latency.
- Supports both live streaming and VOD.
- Includes ingestion, transcoding, storage, and global distribution.
- Requires low latency and high availability.
Memory trick: MediaLive and MediaConvert stream to S3, then CloudFront delivers the global show.
IoT Data Ingestion and Processing Pipeline
Flip cardAn architecture designed to collect, process, and store high volumes of real-time data from IoT devices using serverless and managed AWS services.
- Uses IoT Core for device connectivity.
- Leverages Kinesis for high-throughput streaming ingestion.
- Employs Lambda for real-time event-driven processing.
Memory trick: IoT Core connects, Kinesis streams, Lambda processes, S3 stores.
IoT Predictive Maintenance Architecture
Flip cardAn AWS architecture for ingesting, processing, and analyzing IoT sensor data in real-time to predict equipment failures and optimize maintenance schedules.
- AWS IoT Core for secure device connectivity and data ingestion.
- AWS Lambda for serverless real-time data processing and anomaly detection.
- Amazon S3 for cost-effective, scalable raw data storage (data lake).
- Amazon Redshift for historical analysis, aggregation, and ML model training.
Memory trick: Connect with IoT, process with Lambda, store in S3, analyze with Redshift.
VPC Endpoints (AWS PrivateLink)
Flip cardVPC Endpoints allow you to privately connect your VPC to supported AWS services and VPC endpoint services powered by AWS PrivateLink, without requiring an internet gateway, NAT device, VPN connection, or AWS Direct Connect connection.
- Traffic between your VPC and the service stays within the Amazon network.
- Enhances security by eliminating internet exposure.
- Supports both interface endpoints (ENIs) and gateway endpoints (for S3 and DynamoDB).
Memory trick: VPC Endpoints Keep Data Inside, Safe and Sound.
AWS Live Streaming Architecture
Flip cardA set of AWS services designed for ingesting, processing, packaging, and delivering live video content with low latency and high scalability.
- Uses MediaLive for encoding and MediaPackage for packaging live streams.
- MediaConnect ensures high-quality, reliable transport of live video.
- CloudFront delivers the content globally with low latency.
Memory trick: MediaLive, Connect, Package, and CloudFront Deliver the Stream.
DynamoDB for Gaming
Flip cardAmazon DynamoDB's capabilities, especially Global Tables, make it a strong choice for game backends requiring high scale, low latency, and global availability for player data and game state.
- Handles millions of requests per second.
- Provides single-digit millisecond latency.
- Global Tables enable multi-region, multi-active replication.
Memory trick: DynamoDB Global Tables powers your game with worldwide speed and scale.
Real-time Analytics Data Platform
Flip cardAn AWS architecture designed to ingest, process, and analyze high-volume, continuous data streams in real-time, enabling rapid querying and insights for business intelligence and compliance.
- Real-time data ingestion and processing.
- Petabyte-scale storage and analytics.
- Support for complex SQL queries and BI tools.
- Low-latency query results.
Memory trick: Kinesis streams into Redshift, like a river flowing into a vast, queryable ocean.
Siloed Multi-Tenancy on AWS
Flip cardA multi-tenancy model where each tenant has dedicated, isolated resources, often in separate AWS accounts, providing the highest level of security and compliance.
- Strongest isolation level (logical and physical).
- Each tenant has dedicated compute, storage, and network resources.
- Often implemented with separate AWS accounts per tenant.
- Managed centrally using AWS Organizations for billing and governance.
Memory trick: Siloed is separate, Pooled is shared, Bridge is hybrid, always isolate sensitive data.