DEA-C01 Data Operations and Support Practice Question
Network Topology
A data engineer uses AWS CloudTrail to investigate a security incident. The engineer runs the command shown in the exhibit. What does the output indicate?
⚠ Common exam trap
DEA-C01 often tests the ability to differentiate between S3 API operations based on CloudTrail event names, so candidates must memorize that PutObject corresponds to upload, GetObject to download, and DeleteObject to deletion.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
A file was uploaded to the S3 bucket.
The CloudTrail event shown is an S3 PutObject API call, which is the operation used to upload an object to an S3 bucket. The event name 'PutObject' and the presence of request parameters like 'bucketName' and 'key' confirm that a file was successfully written to the bucket. Therefore, the output indicates that a file was uploaded to the S3 bucket.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
A file was downloaded from the S3 bucket.
Why it's wrong here
The event is PutObject, not GetObject.
- ✗
A file was deleted from the S3 bucket.
Why it's wrong here
CloudTrail logs record the API call itself, not the object's fate: a DeleteObject entry proves deletion was requested, yet the output alone cannot confirm which file, or that it succeeded. This option tempts because CloudTrail genuinely tracks S3 data-plane deletions — the right tool when you need an audit trail of who called DeleteObject and when.
- ✗
A batch of files was listed from the S3 bucket.
Why it's wrong here
The command queries CloudTrail event history, which records management events such as API calls, not S3 object listings. Listing files from a bucket is a data-plane operation captured by S3 access logging or CloudTrail data events, so that output would appear only if data events were enabled for the bucket.
- ✓
A file was uploaded to the S3 bucket.
Why this is correct
The CloudTrail event records an S3 PutObject API call, indicating that a file was uploaded to the bucket. The event source and action name confirm the upload operation rather than a download, deletion or bucket-level configuration change.
Quick reference
AWS S3 Storage Class Comparison
| Storage Class | Min Duration | Retrieval | Use Case |
|---|---|---|---|
| S3 Standard | None | Immediate | Frequently accessed data |
| S3 Standard-IA | 30 days | Immediate | Infrequent access, rapid retrieval |
| S3 One Zone-IA | 30 days | Immediate | Non-critical infrequent data |
| S3 Intelligent-Tiering | None | Immediate–hours | Unknown or changing access patterns |
| S3 Glacier Instant | 90 days | Milliseconds | Archive with instant retrieval |
| S3 Glacier Flexible | 90 days | Minutes–hours | Archive, flexible retrieval |
| S3 Glacier Deep Archive | 180 days | Hours | Long-term compliance archive |
Go deeper
Related to this question
About these practice questions
This DEA-C01 question is part of Courseiva's 1,321-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official Amazon Web Services exam blueprint
This DEA-C01 practice question is part of Courseiva's free Amazon Web Services certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the DEA-C01 exam.