aws certified cloud practitioner study guide clf-c01 exam

The AWS Certified Cloud Practitioner exam or AWS CCP is the easiest to achieve among all the AWS certification exams. This certification covers most, if not all, fundamental knowledge that one should know when venturing into the Cloud. 
The AWS CCP course intends to provide practitioners a fundamental understanding of the AWS Cloud without having to dive deep into the technicalities. This includes the AWS Global Infrastructure, best practices in using AWS Cloud, pricing models, technical support options, and many more. You can view the complete details and guidelines for the certification exam


What to review

Currently, AWS offers more than 160+ services and products to their customers. And every year, the list grows longer. You don’t have to memorize every single service and function to pass the exam (although that would be amazing if you did!). What’s important is that you familiarize yourself on the more commonly used services such as those under
networking and content delivery, management and governance,
and a few others
To quickly view over the different categories, you may visit

this link


To help you get started with the familiarization, this AWS


contains an overview of the different AWS services along with their definitions and use cases. It is also important to know what cloud computing introduces into the industry, and how the AWS Global Infrastructure is set up to help you maximize the capabilities of cloud computing. Aside from questions on the different services, questions about Regions and Availability Zones commonly pop up in the exam as well.

This section is highly important and might comprise the bulk of your CCP exam.
Focus on reading the contents of this .
 The best practices are essentially the ways you can take advantage of AWS Cloud’s strengths.
This paper elaborates on the different pillars that make up a well-architected system. Reading through the design principles and core services of each pillar will help you connect the dots between the best practices and AWS services. Lastly, you can visit this


to gather more information and view additional content for your review of this section.

Security in the AWS Cloud is another major part of your CCP Exam. AWS has defined the security controls that they manage and the security controls that you manage through the

Responsibility Model


The primary resource that you should be studying for this section is this


. The AWS Security Best Practices whitepaper discusses the many ways you can secure your applications and services. I suggest you thoroughly review the following:
 1) Data encryption at rest and in transit (EBS, S3, EC2, RDS, etc)
 2) Identity and Access Management (IAM)
 3) VPC and Application Network Security (security groups, ACLs, etc)
 4) Monitoring and Logging of your Infrastructure (Cloudwatch, cloudtrail, etc)
 5) AWS Compliance Programs

One of the advantages of using Cloud is having on-demand capacity provisioning. Therefore, it is also crucial for you to understand the provider’s pricing model. AWS charges you in multiple ways. There is no exact model that applies to all, since different AWS services have their own cost plans. However, AWS has three fundamental drivers of cost that usually apply to any kind of service. They are:

Aside from on-demand capacity provisioning, AWS also offers you multiple ways to lower your total cost, such as the option to reserve capacity or create a savings plan.

Detailed information about each of these costs can be seen in this , which also serves as your main study material for this section. The purpose of studying cost and pricing models is to help you optimize your costs in AWS. AWS provides a great tool to calculate expected monthly costs, known as the .Note that the CCP exam frequently asks scenarios where you’d have to optimize your costs.

AWS offers four types of support plans: Basic, Developer, Business, and Enterprise. It is important to know how each support plan differs from one another. With that said, this


will serve as your primary study material. You might miss the subtle details if you don’t read each support plan properly, so be sure to take note of these details.

In tandem with learning the AWS Support Plans is studying AWS Trusted Advisor. AWS Trusted Advisor is a tool that offers best practice checks and recommendations across five categories: cost optimization, security, fault tolerance, performance, and service limits. You do not need to memorize each check in AWS Trusted Advisor, though browsing through them is an advantage.

How to review

As with any exam, the very first step is always the same –
. Although we have already enumerated them in the previous section, I highly suggest you go over the


again and see the exam contents.

AWS already has a vast number of available for you to prepare for the exam.
I suggest you first read

Overview of
Amazon Web Services whitepaper

, and gain a good understanding of the different AWS concepts and services. Again, you don’t need to memorize every single AWS service and function there. Rather, focus on the services that are more commonly used by the industry. You can check out the amazing

Tutorials Dojo cheat sheets

to supplement your review for this section.

After reviewing the services whitepaper, I recommend reading the whitepaper

How Pricing Works

next. The AWS CCP exam frequently throws out tricky questions about pricing, TCO and cost optimization. Be extra careful in answering questions that ask for the most cost effective solution. Always prioritize utility over pricing, since there might be a choice in the question where it is the cheapest solution, but is not appropriate for the scenario’s needs. You can compare the pricing of the different services here on this




AWS Security Best Practices

discusses what you’ll need to know for AWS Security. Also, familiarize yourself with the

Shared Responsibility Model

. This frequently comes up in the AWS CCP exam. With security, you should know the following:

The last whitepaper you need to review is the
whitepaper. The material nicely wraps up all the AWS services, products, features, and pricing that you’ve learned. It is very important to understand what the best practices are, since scenario questions in the exam always revolve around these topics. You can open up an AWS Management Console to help you visualize what is being discussed in this paper.

After reading through all the whitepapers, the last section of your review is the AWS Support Plans. This is a quick browse of a webpage, and shouldn’t take you long in studying. Take note of what support plans are available, and how they differ from each other. There might be questions in the exam that ask which support plan offers some specific service.

AWS also provides a free, online virtual course called

AWS Cloud Practitioner Essentials

which you can take to better prepare yourself for the AWS CCP exam. This course contains a set of video lectures that summarize everything you’ve read so far in your review, and discuss on subjects you might have missed.

Also check out this article: .

Common Exam Scenarios

A key financial benefit of migrating systems hosted on your on-premises data center to AWS.

 – Replaces upfront capital expenses (CAPEX) with low variable operational expense (OPEX).

A cloud architecture for mission-critical workloads in AWS which must be highly-available.

A change or a failure in one component should not cascade to other components.

You need to enable your Amazon EC2 instances in the public subnet to connect to the public Internet.

You need to enable your EC2 instances in the private subnet to connect to the public Internet.

A security management tool to configure your AWS WAF rules across your accounts.

A company needs to download the compliance-related documents in AWS such as Service Organization Controls (SOC) reports

An IAM identity that uses access keys to manage cloud resources via AWS CLI.

Apply and easily manage the common access permissions to a large number of IAM users in AWS.

You must provide temporary AWS credentials for users who have authenticated via their social media logins as well as for guest users who do not require any authentication.

A service that discovers, classifies, and protects sensitive data such as personally identifiable information (PII) or intellectual property.

A threat detection service that continuously monitors for malicious activity to protect your AWS account.

A company needs to control the traffic going in and out of their VPC subnets.

What acts as a virtual firewall in AWS that controls the traffic at the EC2 instance level?

Set up an automated security assessment service to improve the security and compliance of your applications.

A company needs to use the AWS global network to improve availability of deployed applications on AWS using an anycast static IP address.

You need to securely transfer hundreds of petabytes of data into and out of the AWS Cloud.

A type of an EC2 instance that allows you to use your existing server-bound software licenses.

A service that allows you to continuously monitor and log account activities such as the user actions made from the AWS Management Console and AWS SDKs.

A highly available and scalable cloud DNS web service in AWS.

Store the results of I/O-intensive SQL database queries to improve the application performance.

A combination of AWS services that allows you to serve the static files with lowest possible latency.

Automatically scale the capacity of an AWS cloud resource based on the incoming traffic to improve availability and reduce failures

A company needs to migrate on-premises MySQL database to Amazon RDS.

Automatically transfer your infrequently accessed data in your S3 bucket to a more cost-effective storage class.

You need to upload a single object as a set of parts to improve throughput and have a quicker recovery from any network issues.

A company needs to establish a dedicated connection between their on-premises network and their AWS VPC.

A Machine Learning service that allows you to add visual analysis feature to your applications.

A source control service that allows you to host Git-based repositories.

A company needs to retrieve the instance ID, public keys, and public IP address of their EC2 instance.

You need to speed up the content delivery of static assets to your customers around the globe

You have to encrypt the log data that is stored and managed by AWS CloudTrail.

A database service that can be used to store JSON documents.

A designated technical point of contact that will maintain an operationally healthy AWS environment.

A tool that inspects your AWS environment and makes recommendations that follows AWS best practices.

A startup needs to estimate the costs of moving their application to AWS.

A type of Reserved Instance that allows you to change its instance family, instance type, platform, scope, or tenancy.

Take advantage of unused EC2 capacity in the AWS Cloud and provides up to 90% discount.

You need to centrally manage policies and consolidate billing across multiple AWS accounts.

The most cost-efficient storage option for retaining database backups that allows occasional data retrieval in minutes.

Forecast future costs and usage of your AWS resources based on your past consumption.

A company launched a new VPC which is way beyond the default service limit.

The most cost-effective option when you purchase a Reserved Instance for a 1-year term.

You have to combine usage volume discounts of your multiple AWS accounts.

Validate Your Knowledge

When you are feeling confident with your review, it is best to validate your knowledge through sample exams. offers a very useful and well-reviewed set of practice tests for the Cloud Practitioner exam takers


. Each test contains many unique questions which will surely help you verify if you have missed out on anything important that might appear on your exam. You can also pair our practice exams with our .

If you have scored well on the

Tutorials Dojo AWS Certified Cloud Practitioner practice tests

and you think you are ready, then go earn your certification with your head held high. If you think you are lacking in certain areas, better go review them again, and take note of any hints in the questions that will help you select the correct answers. If you are not that confident that you’ll pass, then it would be best to reschedule your exam to another day, and take your time preparing for it. In the end, the efforts you have put in for this will surely reward you.

Sample Practice Test Questions:

Question 1

Which of the following is true on how AWS lessens the time to provision your IT resources?

Cloud computing is the on-demand delivery of compute power, database, storage, applications, and other IT resources via the internet with pay-as-you-go pricing.

Whether you are using it to run applications that share photos to millions of mobile users or to support business critical operations, a cloud services platform provides rapid access to flexible and low cost IT resources. With cloud computing, you don’t need to make large upfront investments in hardware and spend a lot of time on the heavy lifting of managing that hardware. Instead, you can provision exactly the right type and size of computing resources you need to power your newest idea or operate your IT department. You can access as many resources as you need, almost instantly, and only pay for what you use.

AWS provides you various ways and tools to programmatically provision IT resources such as AWS CLI, AWS API and the web-based AWS Management Console.

Hence, the correct answer is: 

The option that says: is incorrect because AWS doesn’t have this kind of ticketing platform. What AWS actually does is it allows you to programmatically provision IT resources using AWS CLI, AWS API, and the web-based AWS Management Console.

The option that says:  is incorrect because AWS primarily is the cloud vendor and it doesn’t rely on third-party vendors to provision your resources.

The option that says:  is incorrect because AWS actually handles the underlying servers needed to run the cloud resources you requested. Remember that Cloud Computing is the on-demand delivery of compute power, database, storage, applications, and other IT resources via the Internet and not from your on-premises data centers.


Check out this AWS Overview Cheat Sheet:

Question 2

Which among the options below can you use to launch a new Amazon RDS database cluster to your VPC? (Select TWO)

Amazon Relational Database Service (Amazon RDS) makes it easy to set up, operate, and scale a relational database in the cloud. It provides cost-efficient and resizable capacity while automating time-consuming administration tasks such as hardware provisioning, database setup, patching and backups. It frees you to focus on your applications so you can give them the fast performance, high availability, security, and compatibility they need.

You can launch a new RDS database cluster using the AWS Management Console, AWS CLI, AWS SDK and AWS CloudFormation. The AWS Management Console provides a web-based way to administer AWS services. You can sign in to the console and create, list, and perform other tasks with AWS services for your account. These tasks might include starting and stopping Amazon EC2 instances and Amazon RDS databases, creating Amazon DynamoDB tables, creating IAM users, and so on. The AWS Command Line Interface (CLI), on the other hand, is a unified tool to manage your AWS services.

AWS CloudFormation provides a common language for you to describe and provision all the infrastructure resources in your cloud environment. CloudFormation allows you to use programming languages or a simple text file to model and provision, in an automated and secure manner, all the resources needed for your applications across all regions and accounts.

AWS Concierge
is incorrect because this is actually a senior customer service agent who is assigned to your account when you subscribe to an Enterprise or qualified Reseller Support plan. This customer service agent is not authorized to launch an RDS cluster on your behalf.

AWS CodePipeline
is incorrect because this is just a fully managed continuous delivery service that helps you automate your release pipelines for fast and reliable application and infrastructure updates.

AWS Systems Manager
 is incorrect because this is just a unified user interface so you can view operational data from multiple AWS services, and allows you to automate operational tasks across your AWS resources.


Check out this AWS CloudFormation Cheat Sheet:

Click for more .

There are a few top rated AWS Certified Cloud Practitioner video courses on Udemy that you can check out as well, which can complement your exam preparations especially if you are the type of person who can learn better through visual courses instead of reading long whitepapers:

Once you have finished studying all the aforementioned sections, it is time to validate your knowledge. You can try answering the

AWS Certified Cloud Practitioner Sample Exam

found in the exam guide, or purchase the actual practice exam (Exam Code
in the AWS Training website. A few days before your exam, you can choose to reread all the whitepapers or rewatch the video lectures, or you can simply study the reviewer you made. Since the AWS CCP is not meant to be technical, the exam itself should be straightforward.

What to expect from the exam

Distractors, or incorrect answers, are response options that an examinee with incomplete knowledge or skill would likely choose. However, they are generally plausible responses that fit in the content area defined by the test objective.

Unanswered questions are scored as incorrect; there is no penalty for guessing. 

Majority of questions are usually scenario based. Some will ask you to identify a specific service or concept. While others will ask you to select multiple responses that fit the given requirements. No matter the style of the question, as long as you understand what is being asked, then you will do fine.

Your examination may include unscored items that are placed on the test by AWS to gather statistical information. These items are not identified on the form and do not affect your score.

The AWS Certified Cloud Practitioner (CLF-C01) examination is a pass or fail exam. Your results for the examination are reported as a scaled score from 100 through 1000, with a minimum passing score of 700. Right after the exam, you will immediately know whether you passed or you failed. And in the succeeding business days, you should receive your complete results with the score breakdown (and hopefully the certificate too).

Save More with Our SAA, CDA, and SysOps Triple Bundle Reviewers!

AWS Certified SysOps Administrator Associate Video Course – Early Access Discount Ends Soon!

Pass your AWS, Azure, and Google Cloud Certifications with the Tutorials Dojo Portal

Our Bestselling AWS Certified Solutions Architect Associate Practice Exams

Enroll Now – Our AWS Practice Exams with 95% Passing Rate

FREE AWS Cloud Practitioner Essentials Course!

Enroll Now – Our Azure Certification Exam Reviewers

Enroll Now – Our Google Cloud Certification Exam Reviewers

Tutorials Dojo Exam Study Guide eBooks

Subscribe to our YouTube Channel

FREE Intro to Cloud Computing for Beginners

FREE AWS, Azure, GCP Practice Test Samplers

Tutorials Dojo Study Guide and Cheatsheet

Tutorials Dojo Study Guide and Cheatsheet

Tutorials Dojo Study Guide and Cheatsheet

Browse Other Courses

Recent Posts

Written by: Adrian Formaran