Courseiva

SAA-C03 Design Resilient Architectures Practice Question

A healthcare provider runs a patient-record API on Amazon EC2 instances behind an Application Load Balancer in one AWS Region. The API reads from an Amazon RDS for MySQL DB instance. The provider must be able to continue serving read traffic if the primary database instance fails, and must minimize the time the application is unavailable. Which change should a solutions architect make?

⚠ Common exam trap

Many exam-takers confuse backups and read replicas with automatic failover, when only a Multi-AZ standby provides it.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Convert the DB instance to an Amazon RDS Multi-AZ DB instance deployment so a standby is maintained in another Availability Zone.

Database high availability with minimal application downtime is achieved by running Amazon RDS Multi-AZ, which keeps a synchronously replicated standby in another Availability Zone and performs automatic failover to it. Because the failover updates the same endpoint, applications reconnect without manual reconfiguration.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    Store the database credentials in AWS Secrets Manager and rotate them automatically on a schedule.

    Why it's wrong here

    Automatic credential rotation improves security posture by limiting the lifetime of secrets, but it has no effect on database availability. If the primary DB instance fails, the application still cannot read data, so this option does not satisfy the resilience requirement described.

  • ✓

    Convert the DB instance to an Amazon RDS Multi-AZ DB instance deployment so a standby is maintained in another Availability Zone.

    Why this is correct

    Amazon RDS Multi-AZ maintains a synchronously replicated standby in a different Availability Zone and automatically fails over by promoting the standby and updating the DNS endpoint, so the application reconnects without operator action. This directly addresses database failure and minimizes application downtime.

  • ✗

    Create a read replica in the same Availability Zone and point read traffic to it using a custom application load-balancing layer.

    Why it's wrong here

    A read replica in the same Availability Zone shares the failure domain of the primary, so an AZ event can remove both. Read replicas use asynchronous replication and must be manually promoted, and application-level routing adds complexity without meeting the requirement to minimize outage time.

  • ✗

    Enable automated backups with a longer retention period and increase the DB instance class size.

    Why it's wrong here

    Automated backups enable point-in-time restore, not failover, and restoring creates a new instance that takes time and changes the endpoint. Increasing the instance class improves capacity but does not protect against an Availability Zone or instance failure, so downtime would still be significant.

About these practice questions

One of 935 original SAA-C03 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written and reviewed by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

Last reviewed September 2026 · checked against the official Amazon Web Services exam blueprint

This SAA-C03 practice question is part of Courseiva's free Amazon Web Services certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the SAA-C03 exam.