More Practice / AWS Cloud Practitioner (CLF-C02)
AWS Certified Cloud Practitioner Practice Test
Get ready to experience the actual structure of the official exam. We have distributed these test questions to mirror Amazon's official CLF-C02 blueprint weightings: Cloud Technology and Services accounts for 33%, Cloud Concepts takes 26%, Security and Compliance represents 25%, and Billing, Pricing and Support completes the remaining 16%. You will run into simple recall prompts along with subtle situational queries that test if you can identify which AWS solution matches a real-world scenario.
About this AWS Cloud Practitioner (CLF-C02) AWS practice test
Stepping into the AWS cloud ecosystem for the first time can feel like learning a completely new language, which is why the CLF-C02 exists as a welcoming entry point. It sidesteps complex coding and deep server configuration to focus on the big-picture architecture: how Amazon Web Services organizes its global infrastructure, the core responsibilities shared between you and AWS, and what the baseline services actually accomplish. This practice set mirrors that foundational design, breaking down complex terminology with clear, conversational breakdowns of why one cloud path makes sense over another.
AWS Certified Cloud Practitioner Practice Test sample questions
These starter questions help you launch a aws mock test quickly. Swap them with your own worksheet, notebook, or textbook questions any time.
1. What is the AWS Shared Responsibility Model?
- A) AWS is responsible for all security
- B) The customer is responsible for all security
- C) AWS manages security OF the cloud; customers manage security IN the cloud
- D) Security responsibilities are split 50/50
2. Which AWS service provides object storage?
- A) Amazon EBS
- B) Amazon S3
- C) Amazon EFS
- D) Amazon RDS
3. What is the benefit of AWS Regions?
- A) Lower cost
- B) Deploying closer to users to reduce latency
- C) Free data transfer
- D) Automatic scaling
4. Which pricing model is best for unpredictable workloads?
- A) Reserved Instances
- B) Savings Plans
- C) On-Demand
- D) Spot Instances
5. What does the AWS Free Tier offer?
- A) Free access to all AWS services
- B) Limited free usage of certain services for 12 months
- C) Free EC2 forever
- D) Free support
6. Which service is used to run virtual servers in AWS?
- A) AWS Lambda
- B) Amazon EC2
- C) Amazon S3
- D) Amazon VPC
7. What is Amazon CloudFront?
- A) A DNS service
- B) A CDN that delivers content to users with low latency
- C) A firewall
- D) A database service
8. What does IAM stand for?
- A) Internet Access Management
- B) Identity and Access Management
- C) Infrastructure Administration Module
- D) Instance Application Manager
9. Which support plan provides 24/7 access to Cloud Support Engineers?
- A) Basic
- B) Developer
- C) Business
- D) Free
10. What is a key benefit of cloud computing over traditional on-premises infrastructure?
- A) Higher upfront costs
- B) Fixed capacity
- C) Trade capital expense for operational expense
- D) No internet required
11. Which AWS service provides a managed relational database?
- A) Amazon DynamoDB
- B) Amazon RDS
- C) Amazon S3
- D) Amazon Redshift
12. What is the purpose of AWS Availability Zones?
- A) Reduce costs
- B) Provide high availability and fault tolerance within a Region
- C) Improve DNS resolution
- D) Store archived data
13. Which service helps you estimate AWS costs before deploying?
- A) AWS Cost Explorer
- B) AWS Pricing Calculator
- C) AWS Budgets
- D) AWS Trusted Advisor
14. What is Amazon VPC?
- A) A virtual private cloud — an isolated network within AWS
- B) A content delivery network
- C) A managed database
- D) A monitoring service
15. Which AWS service allows you to run code without managing servers?
- A) Amazon EC2
- B) Amazon ECS
- C) AWS Lambda
- D) Amazon Lightsail
16. What does "elasticity" mean in cloud computing?
- A) The ability to encrypt data
- B) The ability to scale resources up or down automatically based on demand
- C) The ability to replicate data globally
- D) The ability to monitor costs
17. Which AWS service provides DNS (Domain Name System)?
- A) Amazon VPC
- B) AWS Direct Connect
- C) Amazon Route 53
- D) AWS CloudFront
18. What is the difference between horizontal and vertical scaling?
- A) Horizontal = adding more instances; vertical = adding more power to existing instances
- B) Horizontal = adding more power; vertical = adding more instances
- C) They are the same
- D) Only vertical scaling is available in AWS
19. Which security service helps protect against DDoS attacks?
- A) AWS WAF
- B) AWS Shield
- C) Amazon GuardDuty
- D) AWS IAM
20. What is an AWS S3 bucket?
- A) A virtual machine
- B) A container for storing objects (files) in Amazon S3
- C) A database table
- D) A network subnet
21. Which AWS service provides monitoring and observability?
- A) AWS CloudTrail
- B) Amazon CloudWatch
- C) AWS Config
- D) AWS Trusted Advisor
22. What is the purpose of AWS CloudTrail?
- A) To monitor application performance
- B) To log API calls and user activity for auditing
- C) To deliver content globally
- D) To manage SSL certificates
23. Which instance purchasing option provides the biggest discount for steady-state workloads?
- A) On-Demand
- B) Spot
- C) Reserved Instances (1 or 3 year)
- D) Dedicated Hosts
24. What does "high availability" mean in AWS architecture?
- A) The system is always the fastest
- B) The system is designed to remain operational even during failures
- C) The system costs less
- D) The system is located in one data center
25. Which AWS service is used for sending emails?
- A) Amazon SNS
- B) Amazon SES
- C) Amazon SQS
- D) Amazon Pinpoint
26. What is the AWS Well-Architected Framework?
- A) A pricing tool
- B) A set of best practices for building secure, efficient, resilient cloud systems
- C) A managed service catalogue
- D) A deployment pipeline
27. Which pillar of the AWS Well-Architected Framework focuses on preventing financial overruns?
- A) Security
- B) Reliability
- C) Cost Optimisation
- D) Operational Excellence
28. What is Amazon EBS?
- A) Elastic Block Store — persistent block storage for EC2 instances
- B) Elastic Backup Service
- C) An object storage service
- D) An email service
29. Which service provides automatic distribution of incoming traffic across multiple targets?
- A) Amazon Route 53
- B) Elastic Load Balancing
- C) Amazon CloudFront
- D) AWS Auto Scaling
30. What is the purpose of AWS Trusted Advisor?
- A) To provide 24/7 phone support
- B) To offer real-time guidance to help provision resources following AWS best practices
- C) To manage IAM users
- D) To monitor network traffic
Syllabus & Core Topics
Earning your certification requires bridging the gap between passive reading and active identification. Frequently contrasting common elements like EC2, S3, and IAM across different scenarios cements your knowledge and builds a natural instinct for how AWS measures and charges for cloud usage.
Why this practice page is useful
Many students recognize cloud computing in theory but mix up similar resources like EBS, EFS, and S3 once the timer starts — this test builds the speed needed to map services to workloads instantly.
Memorizing pricing model names is easy; knowing whether a given architecture calls for Spot pricing, Savings Plans, or Reserved Instances is what actually decides your score.
The shared responsibility model is tested from several confusing angles — these practical scenarios pin down exactly where Amazon's security ends and yours begins.
Answer key & quick explanations
Short answers for the sample questions above. Use this to self-check before generating a fresh AI-built mock test.
1. What is the AWS Shared Responsibility Model?
C) AWS manages security OF the cloud; customers manage security IN the cloudAWS secures the infrastructure underneath its services — hardware, data centers, the physical network — while the customer secures what they put on top of it, such as data, IAM configuration, and application settings. It isn't an even split; the exact line depends on the service.
2. Which AWS service provides object storage?
B) Amazon S3Amazon S3 stores data as objects (files) rather than blocks or a file system, which is why it's used for backups, static assets, and media. EBS and EFS are block/file storage for EC2, and RDS is a relational database service, not storage for arbitrary files.
3. What is the benefit of AWS Regions?
B) Deploying closer to users to reduce latencyRunning resources in a Region near your users shortens the network distance data has to travel, which lowers latency. Regions also support data-residency and compliance needs, but the benefit this question is testing is latency.
4. Which pricing model is best for unpredictable workloads?
C) On-DemandOn-Demand has no upfront commitment, so it's the safest choice when you can't predict how much compute you'll need. Reserved Instances and Savings Plans require a 1- or 3-year commitment, and Spot Instances can be reclaimed by AWS with little warning.
5. What does the AWS Free Tier offer?
B) Limited free usage of certain services for 12 monthsThe Free Tier gives capped free usage of specific services — like 750 hours a month of a t2.micro EC2 instance — for the first 12 months, plus a small set of always-free services. It isn't unlimited or permanent access to everything AWS offers.
6. Which service is used to run virtual servers in AWS?
B) Amazon EC2Amazon EC2 (Elastic Compute Cloud) provisions resizable virtual machines. Lambda is serverless compute with no managed instance, S3 is object storage, and VPC is networking, not compute.
7. What is Amazon CloudFront?
B) A CDN that delivers content to users with low latencyCloudFront is AWS's content delivery network — it caches content at edge locations around the world so users get faster access to both static and dynamic content.
8. What does IAM stand for?
B) Identity and Access ManagementIAM is the AWS service that controls identity (who you are) and access (what you're allowed to do), through users, groups, roles, and policies.
9. Which support plan provides 24/7 access to Cloud Support Engineers?
C) BusinessThe Business plan (and the tiers above it) includes 24/7 phone, chat, and email access to Cloud Support Engineers. Developer support is business-hours email only, and Basic/Free include no technical support.
10. What is a key benefit of cloud computing over traditional on-premises infrastructure?
C) Trade capital expense for operational expenseInstead of buying and depreciating hardware upfront (capital expense), the cloud lets you pay for what you actually use as you use it (operational expense) — one of AWS's core cost arguments.
11. Which AWS service provides a managed relational database?
B) Amazon RDSAmazon RDS manages relational engines like MySQL, PostgreSQL, and SQL Server, handling patching, backups, and scaling for you. DynamoDB is NoSQL, S3 is object storage, and Redshift is a data warehouse rather than a general-purpose relational database.
12. What is the purpose of AWS Availability Zones?
B) Provide high availability and fault tolerance within a RegionAvailability Zones are physically separate data centers within a Region, linked by low-latency connections. Spreading resources across more than one AZ protects you if a single data center has a problem.
13. Which service helps you estimate AWS costs before deploying?
B) AWS Pricing CalculatorThe AWS Pricing Calculator lets you model the cost of a proposed architecture before you build it. Cost Explorer and Budgets analyse spending you've already incurred, and Trusted Advisor gives broader best-practice checks rather than cost estimates.
14. What is Amazon VPC?
A) A virtual private cloud — an isolated network within AWSA VPC is a logically isolated section of AWS where you define your own IP address range, subnets, and routing — effectively your own private network inside the AWS cloud.
15. Which AWS service allows you to run code without managing servers?
C) AWS LambdaLambda runs your code in response to events without you provisioning or managing any servers. EC2 and Lightsail still require you to manage instances, and ECS needs you to manage underlying compute unless it's paired with Fargate.
16. What does "elasticity" mean in cloud computing?
B) The ability to scale resources up or down automatically based on demandElasticity means capacity automatically grows or shrinks to match real-time demand, so you're not stuck permanently over-provisioned or under-provisioned.
17. Which AWS service provides DNS (Domain Name System)?
C) Amazon Route 53Route 53 is AWS's DNS and domain registration service, and it also supports health checks and several traffic-routing policies.
18. What is the difference between horizontal and vertical scaling?
A) Horizontal = adding more instances; vertical = adding more power to existing instancesHorizontal scaling (scaling out) adds more instances to share the load; vertical scaling (scaling up) increases the CPU, memory, or other resources on an existing instance.
19. Which security service helps protect against DDoS attacks?
B) AWS ShieldAWS Shield is purpose-built to protect against Distributed Denial of Service attacks. WAF filters malicious web requests, GuardDuty detects broader threats from logs, and IAM manages access rather than attack traffic.
20. What is an AWS S3 bucket?
B) A container for storing objects (files) in Amazon S3A bucket is the top-level container that holds the objects you store in S3, similar in concept to a globally-named folder.
21. Which AWS service provides monitoring and observability?
B) Amazon CloudWatchCloudWatch collects metrics, logs, and alarms for monitoring resource performance and health. CloudTrail logs API activity for auditing and Config tracks configuration changes — related jobs, but not the same one.
22. What is the purpose of AWS CloudTrail?
B) To log API calls and user activity for auditingCloudTrail records who did what, when, and from where by logging API calls across your account, which makes it central to security auditing and incident investigation.
23. Which instance purchasing option provides the biggest discount for steady-state workloads?
C) Reserved Instances (1 or 3 year)Reserved Instances give the largest discount when you already know a workload will run continuously for one or three years. Spot can be cheaper but is interruptible, and On-Demand carries no discount at all.
24. What does "high availability" mean in AWS architecture?
B) The system is designed to remain operational even during failuresHigh availability describes an architecture — often spanning multiple Availability Zones — built to keep running through individual component failures. It's not a claim about speed, cost, or location.
25. Which AWS service is used for sending emails?
B) Amazon SESAmazon SES (Simple Email Service) is built specifically for sending and receiving email at scale. SNS handles pub/sub notifications and SQS is a message queue — neither is an email-sending service.
26. What is the AWS Well-Architected Framework?
B) A set of best practices for building secure, efficient, resilient cloud systemsThe Well-Architected Framework is a collection of best practices, organised into pillars such as Security, Reliability, Performance Efficiency, Cost Optimisation, and Operational Excellence, for designing and running cloud workloads well.
27. Which pillar of the AWS Well-Architected Framework focuses on preventing financial overruns?
C) Cost OptimisationThe Cost Optimisation pillar is specifically about avoiding unnecessary spend and getting the best return on cloud investment — the pillar most directly tied to keeping budgets in check.
28. What is Amazon EBS?
A) Elastic Block Store — persistent block storage for EC2 instancesEBS provides persistent block-storage volumes that attach to EC2 instances, behaving much like a virtual hard drive that survives an instance being stopped and started again.
29. Which service provides automatic distribution of incoming traffic across multiple targets?
B) Elastic Load BalancingElastic Load Balancing automatically spreads incoming application traffic across multiple targets — EC2 instances, containers, or IP addresses — in one or more Availability Zones.
30. What is the purpose of AWS Trusted Advisor?
B) To offer real-time guidance to help provision resources following AWS best practicesTrusted Advisor inspects your account and surfaces recommendations across cost optimisation, performance, security, fault tolerance, and service limits, based on AWS best practices.
Curriculum Mapping & Learning Guide
Use this breakdown to identify which skills each question tests and guide post-test review.
Cloud Concepts
Exploring cloud economics, comparing SaaS, PaaS, and IaaS models, and outlining the architectural pillars of the AWS Well-Architected Framework.
Security & Compliance
Understanding IAM access boundaries, dissecting global security frameworks, and allocating responsibility for databases, networks, and guest OS layers.
Cloud Technology & Services
Touring fundamental compute engines like EC2 and Lambda, managing databases with RDS, and configuring VPC endpoints.
Billing, Pricing & Support
Navigating support tier categories, setting budget alerts with Cost Explorer, and comparing diverse instances purchasing options.
AWS Cloud Practitioner (CLF-C02) AWS units covered
- Chapter 1: Global Infrastructure & Cloud Principles: Cloud advantages, distinguishing SaaS/PaaS/IaaS models, and migration considerations.
- Chapter 2: Account Security: Resolving access questions using IAM roles, threat detection basics, and the shared security responsibility boundary.
- Chapter 3: AWS Core Services: Comparing core compute resources (EC2, Lambda), storage options (S3, EFS), and managed networking (VPCs).
- Chapter 4: Cost Control & Support Plans: Setting cost alerts, navigating support tiers, and comparing compute pricing options.
How to use this aws certified cloud practitioner practice test page
1. Click the Start AWS Certified Cloud Practitioner Practice Test button to launch the setup.
2. Use the slider to choose your number of questions (from 5 to 30, default is 10).
3. Take your test, submit your answers, and let our AI analyze your performance.
4. Select Practice Weak Areas or Generate More Like This to have the AI create custom, targeted questions just for you.
Explore more for AWS Cloud Practitioner (CLF-C02)
Move between subjects in the same exam to build a balanced AWS Cloud Practitioner (CLF-C02) revision routine.