SOA-C02 Cost and Performance Optimization Practice Question
A company uses CloudFront to distribute content globally. They want to reduce data transfer costs and improve performance for users. What feature should they enable?
⚠ Common exam trap
SOA-C02 often tests the confusion between caching optimizations (TTL, Origin Shield) and availability features (multi-origin failover), causing candidates to pick TTL or failover when the question specifically asks about reducing origin load and data transfer cost.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Enable Origin Shield to create a central caching layer.
Origin Shield adds an additional caching layer between CloudFront edge locations and the origin, consolidating origin fetches through a single regional cache. This reduces the number of requests that reach the origin, lowering data transfer costs and improving cache hit ratios and latency for users. It is the specific CloudFront feature designed for this cost-and-performance goal.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✗
Configure multiple origins with failover.
Why it's wrong here
Configuring multiple origins with failover is a high-availability feature: CloudFront routes requests to a secondary origin only when the primary returns an error such as 5xx or a connection timeout. This does nothing to reduce the number of requests sent to your origin or the amount of data transferred, so it cannot lower your cost; in fact, maintaining a second origin adds operational overhead and storage expense, making it a poor choice for cost optimization.
- ✗
Enable Lambda@Edge to modify requests and responses.
Why it's wrong here
Lambda@Edge runs JavaScript functions at CloudFront edge locations for every matched request and response, and you are billed per invocation and per GB-second of compute time used. While it can customize content, manipulate headers, or generate responses, it does not inherently increase cache hit ratios or reduce the data transfer from origin to edge; instead, it introduces an additional compute cost that would raise your overall spend, making it counterproductive when the goal is to reduce costs.
- ✓
Enable Origin Shield to create a central caching layer.
Why this is correct
Origin Shield adds a centralized caching layer in a specific AWS Region, so all CloudFront edge locations forward cache misses to that single regional endpoint rather than directly to your origin. This consolidates requests from multiple edges, dramatically improving the global cache hit ratio and reducing both the volume of origin requests and the data transfer from origin to edges—and because you pay less for data transfer and origin load, it directly lowers your cost. Origin Shield is an AWS-native feature purpose-built for this cost-reduction scenario.
- ✗
Increase the TTL for cache behaviors to the maximum allowed value.
Why it's wrong here
Increasing the TTL for cache behaviors to the maximum allowed value extends how long objects are retained in each edge cache, which can produce more cache hits on a given edge. However, each CloudFront edge location still has its own independent cache, so the same object may be fetched separately at many different edges, limiting the overall reduction in origin requests. Additionally, very long TTLs risk serving stale content to users for extended periods, and for content with unpredictable changes this is unacceptable; Origin Shield achieves a higher hit ratio more safely by centralizing the cache.
Go deeper
Related to this question
About these practice questions
This SOA-C02 question is part of Courseiva's 1,169-question bank — original exam-style content with full explanations and wrong-answer analysis, never real exam questions or exam dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official Amazon Web Services exam blueprint
This SOA-C02 practice question is part of Courseiva's free Amazon Web Services certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the SOA-C02 exam.