Courseiva
Monitoring and Logging →easyMultiple Choice

DOP-C02 Monitoring and Logging Practice Question

A DevOps engineer needs to centrally collect and analyze logs from multiple AWS accounts and on-premises servers. Which AWS service should be used to aggregate logs in a single dashboard?

⚠ Common exam trap

The trap is that candidates confuse log storage (S3), log query (Athena), and log streaming (Firehose) with the service that actually provides centralized log collection and dashboards — CloudWatch Logs.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Amazon CloudWatch Logs.

Amazon CloudWatch Logs is the correct service for centrally collecting, storing, and analyzing logs from multiple AWS accounts and on-premises servers, with the ability to visualize them in a single dashboard via CloudWatch Logs Insights and CloudWatch dashboards. It supports cross-account log aggregation through subscription filters and centralized log groups.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    Amazon Athena.

    Why it's wrong here

    Amazon Athena is an interactive query service that analyzes data directly in Amazon S3 using standard SQL. While it can query log data stored in S3, it does not provide a centralized log aggregation pipeline, real-time ingestion, or a built-in dashboarding UI; you would need to build custom visualizations with Amazon QuickSight or another tool. For the requirement to centrally collect and analyze logs with dashboards, Athena alone is insufficient because it operates on data you must first land in S3 and does not offer native log management features like metric filters or alarms.

  • ✗

    Amazon S3.

    Why it's wrong here

    Amazon S3 is a highly durable object storage service used as a landing zone for log files, but it provides no native capability to ingest, parse, or visualize logs. Storing logs in S3 is merely a retention/archival strategy; to analyze them you must attach separate services like Athena, Glue, or CloudWatch Logs. Since the requirement is centralized collection and analysis with dashboards, S3 cannot fulfill it by itself—it lacks a query engine and a dashboard interface.

  • ✓

    Amazon CloudWatch Logs.

    Why this is correct

    Amazon CloudWatch Logs is the correct choice because it can centrally aggregate logs from multiple AWS accounts, Regions, and on-premises sources via the CloudWatch Logs agent, Kinesis Data Firehose, or subscription filters. It provides native log analytics with Logs Insights, metric filters to create custom metrics, and CloudWatch Dashboards to visualize log-derived data in real time. This directly satisfies the need for centralized collection, analysis, and dashboard visualization without requiring additional services.

  • ✗

    Amazon Kinesis Data Firehose.

    Why it's wrong here

    Amazon Kinesis Data Firehose is a fully managed streaming delivery service that reliably loads data into S3, Redshift, OpenSearch, or Splunk, but it is not a log storage or analysis service and has no built-in dashboarding capability. It can be part of a log pipeline by buffering and transforming log records, yet it only delivers data—the destination must provide storage, querying, and visualization. Therefore, Firehose alone cannot collect, analyze, and present logs in a centralized dashboard.

About these practice questions

Courseiva writes every DOP-C02 question from scratch — 1,298 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

Same concept, more angles

1 more way this is tested on DOP-C02

These questions test the same concept from different angles. Work through them to make sure you can recognise it however the exam phrases it.

Variation 1. A company wants to collect and analyze logs from on-premises servers and send them to AWS for centralized monitoring. Which combination of AWS services should be used?

medium
  • ✓ A.Amazon CloudWatch Agent on the on-premises servers to send logs to Amazon CloudWatch Logs.
  • B.Amazon Kinesis Agent on the on-premises servers to send logs to Amazon Kinesis Data Firehose, then to Amazon S3.
  • C.Amazon CloudWatch Agent with the awslogs configuration to send logs to Amazon CloudWatch Logs.
  • D.AWS Systems Manager Agent to collect logs and send to Amazon CloudWatch Logs.

Why A: The Amazon CloudWatch Agent can be installed on on-premises servers (including non-EC2 hosts) and configured to send logs to Amazon CloudWatch Logs, providing centralized monitoring without requiring AWS infrastructure on-premises. This is the standard, supported approach for hybrid log collection into CloudWatch.

JA

Written and reviewed by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

Last reviewed September 2026 · checked against the official Amazon Web Services exam blueprint

This DOP-C02 practice question is part of Courseiva's free Amazon Web Services certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the DOP-C02 exam.