Courseiva
SDLC Automation →hardMultiple Choice

DOP-C02 SDLC Automation Practice Question

A company uses AWS CodeStar to manage software development projects. The team wants to integrate a third-party issue tracking system with CodeStar. Which AWS service should they use to achieve this integration?

⚠ Common exam trap

Many candidates confuse the purpose of AWS services like SNS or CloudWatch Events, thinking they can directly receive external HTTP callbacks, but they lack native webhook support for third-party systems, whereas CodePipeline webhooks are specifically designed for this integration.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

AWS CodePipeline webhooks

AWS CodePipeline webhooks allow you to connect external systems, such as a third-party issue tracking system, to your CodePipeline pipeline. When the external system triggers an event (e.g., an issue status change), the webhook sends an HTTP POST request to a configured endpoint in CodePipeline, which then starts the pipeline. This is the native integration mechanism for CodeStar to receive events from outside AWS.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    Amazon API Gateway

    Why it's wrong here

    Amazon API Gateway is a service for creating, publishing, and managing REST or WebSocket APIs that front-end applications and backend services. It has no native mechanism to receive CodePipeline lifecycle events or to authenticate and validate a webhook from an external issue tracker, so using it would require building a custom Lambda-based proxy with manual secret handling and payload mapping. Even then, API Gateway would only add an unnecessary HTTP layer rather than provide the built-in pipeline integration and webhook verification that CodePipeline itself offers.

  • ✗

    Amazon CloudWatch Events

    Why it's wrong here

    Amazon CloudWatch Events (now Amazon EventBridge) is an event bus that routes events between AWS services and supported targets, but it cannot accept incoming HTTP calls from an external issue tracker to trigger or resume a pipeline. It only ingests events generated by AWS services and invokes targets based on rules, which is a one-way, internal flow rather than a bidirectional integration with an external system. While it could react to a CodePipeline state change and send a notification, it cannot be the entry point for an external tool to control the pipeline, making it unsuitable for this requirement.

  • ✓

    AWS CodePipeline webhooks

    Why this is correct

    AWS CodePipeline webhooks are the native, built-in mechanism for external systems to trigger pipeline executions via an HTTPS POST request. When you create a webhook, CodePipeline generates a dedicated URL and registers a secret token; the external service, such as an issue tracker or a third-party version control system, includes that token in its HTTP call so CodePipeline can verify the request and map the payload to the appropriate pipeline and input variables. This provides secure, bidirectional integration with external tools, enabling an issue tracker to start a pipeline when a pull request or issue is updated, and is the correct service for this scenario.

  • ✗

    Amazon Simple Notification Service (SNS)

    Why it's wrong here

    Amazon Simple Notification Service (SNS) is a fully managed pub/sub messaging service designed to send notifications from publishers to subscribers, such as email, SMS, Lambda, or HTTP endpoints. It can send messages outward when a pipeline state changes, but it does not accept inbound HTTP requests from an external issue tracker to trigger or resume a pipeline, and it lacks webhook authentication and payload validation capabilities. To use SNS, you would need a custom subscriber, such as a Lambda function, to call the CodePipeline StartPipelineExecution API, which is an indirect workaround rather than a direct or native integration.

About these practice questions

This DOP-C02 question is part of Courseiva's 1,298-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This DOP-C02 practice question is part of Courseiva's free Amazon Web Services certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the DOP-C02 exam.