CV0-004 Operations and Support Practice Question
A cloud operations team supports a latency-sensitive application running on Amazon EC2 instances. Users in a remote region report that responses are slow even though the application's own metrics show normal processing times. The team wants to continuously measure the network path between the users' region and the application endpoint, capturing round-trip latency and packet loss without modifying the application. Which AWS service should they use?
⚠ Common exam trap
The trap here is choosing VPC Flow Logs because they sound like network monitoring, when they actually record connection metadata rather than latency or loss measurements.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
Amazon CloudWatch Network Monitor.
CloudWatch Network Monitor is purpose-built to probe paths between AWS and external or cross-region endpoints, reporting latency and packet loss continuously. Because it operates at the network layer and requires no agent or code change, it fits the scenario where application metrics look healthy but the user-perceived path is slow, allowing the team to correlate network degradation with the reported slowness.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
Amazon CloudWatch Network Monitor.
Why this is correct
CloudWatch Network Monitor continuously probes network paths between source and destination resources in different regions and reports round-trip latency and packet loss. It works without application changes, which fits the requirement to measure the user-to-endpoint path while leaving the workload untouched, making it the correct monitoring service here.
- ✗
AWS Network Manager with a global network configured.
Why it's wrong here
Network Manager provides topology visualization and connectivity management across VPCs, transit gateways, and on-premises links. It can surface some performance data, but its focus is network topology and routing rather than continuous client-to-endpoint latency and loss measurement, so it is not the right tool for this monitoring goal.
- ✗
VPC Flow Logs with a custom metric filter.
Why it's wrong here
VPC Flow Logs capture IP traffic metadata such as accepted and rejected connections, byte counts, and start and end times. They do not compute round-trip latency, and packet loss must be inferred indirectly from retransmissions, so they cannot deliver the continuous latency and loss measurements the scenario demands.
- ✗
AWS CloudTrail with data events enabled on the load balancer.
Why it's wrong here
CloudTrail records API activity and management events, such as who changed a resource or invoked an API. It does not measure network latency or packet loss along a path between clients and an endpoint, so enabling data events on the load balancer would produce an audit trail rather than the continuous path metrics the team needs.
Go deeper
Related to this question
About these practice questions
Courseiva writes every CV0-004 question from scratch — 834 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →
JA
Written and reviewed by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
Last reviewed September 2026 · checked against the official CompTIA exam blueprint
This CV0-004 practice question is part of Courseiva's free CompTIA certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the CV0-004 exam.