Quick Answer
Security questions on this certification test your ability to deploy and manage security concepts in scenario-based situations.
Use this page to practise Security questions for this certification. Focus on how the exam tests security in scenario format — understanding the why behind each answer builds more durable knowledge than memorising options.
What the exam tests
Common exam traps
IAM for Developers: Roles and Policies
Objective 2.1 · Security
Amazon Cognito
Objective 2.2 · Security
KMS and Encryption for Developers
Objective 2.3 · Security
Secrets Manager for Applications
Objective 2.4 · Security
API Gateway Authorizers: Lambda and JWT
Objective 2.1 · Security
AWS Systems Manager Parameter Store
Objective 2.4 · Security
AWS STS: AssumeRole and Temporary Credentials
Objective 2.1 · Security
S3 Encryption: SSE-S3, SSE-KMS, SSE-C
Objective 2.3 · Security
VPC Gateway and Interface Endpoints for S3/DynamoDB
Objective 2.1 · Security
Resource-Based Policies vs Identity Policies
Objective 2.1 · Security
IAM Permissions Boundaries
Objective 2.1 · Security
Attribute-Based Access Control (ABAC) in AWS
Objective 2.1 · Security
Cognito Hosted UI and OAuth Flows
Objective 2.2 · Security
Cognito Lambda Triggers: Pre/Post Authentication
Objective 2.2 · Security
API Gateway API Keys and Usage Plans
Objective 2.4 · Security
AWS WAF for API Gateway
Objective 2.4 · Security
AWS PrivateLink for Private APIs
Objective 2.1 · Security
Rate Limiting and Throttling for APIs
Objective 2.4 · Security
Free DVA-C02 practice questions with full explanations. Test what you learn chapter by chapter.
DVA-C02 Practice Questions