Skip to content

SysOps Administrator - Associate Practice Questions

Prepare for SOA-C02 with more than an answer.

134 questions in the full set12 sample questionsUpdated Jan 28, 2026

Unlock the full exam and previous versions

  • v1AWS Certified CloudOps Engineer - Associate 240 questions Locked
  • SOA-C01Legacy AWS Certified SysOps Administrator 54 questions Locked
  • SOA-C02Legacy AWS Certified SysOps Administrator - Associate 134 questions Current
  • SOA-C02-2Legacy SysOps Administrator Associate - Extended 957 questions Locked
Exam fee
$150 USD
Time limit
130 minutes
Questions on the exam
65
Passing score
720 (scale 100-1000)
Level
Associate
Valid for
3 years
Domains covered on the exam 6
  1. Monitoring, Logging, and Remediation20%
  2. Reliability and Business Continuity16%
  3. Deployment, Provisioning, and Automation18%
  4. Security and Compliance16%
  5. Networking and Content Delivery18%
  6. Cost and Performance Optimization12%
  1. 1

    A company has deployed a web application in a VPC that has subnets in three Availability Zones. The company launches three Amazon EC2 instances from an EC2 Auto Scaling group behind an Application Load Balancer (ALB).

    A SysOps administrator notices that two of the EC2 instances are in the same Availability Zone, rather than being distributed evenly across all three Availability Zones. There are no errors in the Auto Scaling group's activity history.

    What is the MOST likely reason for the unexpected placement of EC2 instances?

    Show answer details

    Correct answer: B

    B

  2. 2

    A SysOps administrator is deploying an application on 10 Amazon EC2 instances. The application must be highly available. The instances must be placed on distinct underlying hardware.

    What should the SysOps administrator do to meet these requirements?

    Show answer details

    Correct answer: B

    B

  3. 3

    A company manages an application that uses Amazon ElastiCache for Redis with two extra-large nodes spread across two different Availability Zones. The company's IT team discovers that the ElastiCache for Redis cluster has 75% freeable memory. The application must maintain high availability.

    What is the MOST cost-effective way to resize the cluster?

    Show answer details

    Correct answer: B

    Deploying a new cluster with smaller instance types (large instead of extra-large) and migrating data addresses the 75% freeable memory issue by rightsizing the cluster for actual usage. Online resizing and reducing node count may impact availability, while backup/restore provides a clean migration path to properly sized infrastructure.

  4. 4

    A company hosts an internal application on Amazon EC2 instances. All application data and requests route through an AWS Site-to-Site VPN connection between the on-premises network and AWS. The company must monitor the application for changes that allow network access outside of the corporate network. Any change that exposes the application externally must be restricted automatically.

    Which solution meets these requirements in the MOST operationally efficient manner?

    Show answer details

    Correct answer: A

    Lambda functions can automatically remediate security group changes by removing non-corporate CIDR ranges when triggered by VPC Flow Logs anomalies through CloudWatch alarms. This provides automated response to unauthorized network access attempts. AWS Config provides compliance monitoring but not automated remediation, and Systems Manager scheduling lacks real-time detection capabilities.

  5. 5

    A SysOps administrator is setting up an automated process to recover an Amazon EC2 instance in the event of an underlying hardware failure. The recovered instance must have the same private IP address and the same Elastic IP address that the original instance had. The SysOps team must receive an email notification when the recovery process is initiated.Which solution will meet these requirements?

    Show answer details

    Correct answer: A

    CloudWatch alarms with StatusCheckFailed_Instance metric can automatically recover EC2 instances during hardware failures while preserving both private IP addresses and attached Elastic IP addresses. The EC2 recover action migrates the instance to new hardware maintaining network configuration, while Auto Scaling groups would launch new instances with different IP addresses. Reference: https://docs.aws.amazon.com/AWSEC2/latest/UserGuide/using-cloudwatch-createalarm.html

  6. 6

    A SysOps Administrator is managing a web application that runs on Amazon EC2 instances behind an Application Load Balancer (ALB). The instances run in an EC2 Auto Scaling group. The administrator wants to set an alarm for when all target instances associated with the ALB are unhealthy.

    Which condition should be used with the alarm?

    Show answer details

    Correct answer: A

    HealthyHostCount = 1 would trigger when at least one instance is unhealthy (not all), and EC2 StatusCheckFailed metrics monitor individual instances rather than ALB target groups.

Create an account to continue.