Courseiva

SOA-C02 Monitoring, Logging, and Remediation Practice Question

An organization is using AWS CloudFormation to deploy infrastructure. The SysOps administrator needs to receive notifications when stack creation fails. What is the simplest way to achieve this?

⚠ Common exam trap

The trap here is that candidates often over-engineer the solution by choosing EventBridge or CloudTrail, missing the fact that CloudFormation has a built-in, one-step SNS notification feature that is the simplest and most direct way to receive stack failure alerts.

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

✓

Provide an SNS topic ARN in the --notification-arns parameter when creating the stack.

The `--notification-arns` parameter in the AWS CLI `create-stack` command directly associates an SNS topic with the stack, causing CloudFormation to publish notifications for all stack events, including failures. This is the simplest method as it requires no additional services or configuration beyond specifying the SNS topic ARN at stack creation.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • ✗

    Create a CloudWatch alarm on the 'StackCreationFailure' metric.

    Why it's wrong here

    CloudFormation does not publish a metric named 'StackCreationFailure' to CloudWatch, and no such predefined metric exists in the AWS/CloudFormation namespace. A CloudWatch alarm can only be configured against an actual metric name; attempting to create one on a nonexistent metric would fail validation or remain permanently in INSUFFICIENT_DATA. Additionally, CloudFormation does not emit operational lifecycle metrics to CloudWatch at all—it communicates stack status changes through stack events, which can be delivered to Amazon SNS topics.

  • ✓

    Provide an SNS topic ARN in the --notification-arns parameter when creating the stack.

    Why this is correct

    The correct approach is to specify an SNS topic ARN in the --notification-arns parameter when creating the stack (or the equivalent NotificationARNs property in the CloudFormation template). CloudFormation publishes all stack-level events, including CREATE_FAILED, to that SNS topic, and subscribers such as email, SMS, or Lambda functions receive immediate notifications. This native integration is purpose-built for CloudFormation lifecycle monitoring and requires no additional resources or custom logic.

  • ✗

    Create an EventBridge rule that triggers on CloudFormation events.

    Why it's wrong here

    Creating an EventBridge rule for CloudFormation events is an overly complex approach for simple notifications. CloudFormation natively integrates with Amazon SNS topics, which is the direct and simplest mechanism for receiving stack status updates, including creation failures. EventBridge is tempting because it can indeed capture CloudFormation events; however, it is primarily designed for triggering complex, event-driven automation, such as invoking a Lambda function or integrating with other AWS services based on specific event patterns, rather than just sending a notification.

  • ✗

    Enable CloudTrail and create a metric filter for 'CreateStack' failures.

    Why it's wrong here

    CloudTrail records API calls and management events for auditing purposes, logging the initial `CreateStack` request. However, it does not directly monitor or emit events for the *operational lifecycle status changes* of a CloudFormation stack, such as `CREATE_FAILED`. CloudFormation itself publishes these specific status events. This option is tempting because CloudTrail metric filters are effective for alerting on specific API call patterns, like unauthorised access attempts or resource deletions, making it suitable for security and compliance monitoring.

About these practice questions

Courseiva writes every SOA-C02 question from scratch — 1,169 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This SOA-C02 practice question is part of Courseiva's free Amazon Web Services certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the SOA-C02 exam.