The digital revolution has taken the world by storm. Organizations have adapted to these drastic changes by exploring the multi-faceted uses of cloud computing. The immense skill gap in this industry has opened up a gold mine of opportunities in cloud computing. AWS (Amazon Web Services) is one such popular cloud computing platform, it is India’s most extensive and sought-after platform. Professionals trained in AWS are highly in demand. 

The heightened demand has also lead to a very competitive job market. Getting started with a successful career in AWS begins with performing well in technical aws interviews. These aws interview questions and their corresponding answers test your all-round knowledge and are guaranteed to help you ace the toughest of aws interviews. The following questions cover basic questions as well as expert level AWS interview questions:

Q1. Define cloud computing. What are the three basic types of cloud services?

Ans: Cloud computing allows networking of several remote servers enabling centralized data storage and online access to resources. Organizations use this internet-based computing service for shared computing and storage. Three basic cloud services are; computing, storage, and networking. 

Q2. Name some popular AWS products which are based on the different types of cloud services.

Ans: Some of the most widely used AWS products based on cloud services are:

  • Computing –  Amazon EC2 (Amazon Elastic compute cloud), Elastic Beanstalk, Lambda, and Auto-Scaling
  • Storage – Amazon S3 (Amazon simple storage service), Glacier, Elastic Block Storage, and Elastic File System.
  • Networking – These include Amazon CloudFront, VPC (Virtual Private Cloud), and AWS Route53.

Q3. What are the various types of cloud service models?

Ans: There are three types of service models in cloud:

  • IaaS (Infrastructure as a service)
  • PaaS (Platform as a service)
  • SaaS (Software as a service)

Q4. What is the full form of AMI? Can it be shared?

Ans: AMI is short for Amazon Machine Image. It is a virtual appliance used within Amazon EC2 to create virtual machines, software configurations, and templates. Yes, AMI can be shared. The creator can share it with other developers who can customize it easily. 

 Q5. What are the most common aws AMI designs? Elaborate.

Ans: Popular AMI designs are:

  • Fully Baked AMI- This is the most popular AMI design method. It is designed to provide a fully functional instance equipped with all the necessary software.
  • JeOS AMI- Just enough operating system (JeOS) AMI cultivates a minimal operating system connected to a configuration management system.
  • Hybrid AMI- These are partially baked software which have a generic infrastructure. The subset of software can be further configured based on requirements.

Q6. Explain RTO and RPO with respect to AWS.

Ans: RTO (Recovery Time Objective) denotes the greatest amount of time an organization can wait for the completion of a recovery in an outage. RPO (Recovery Point Objective) is the maximum amount of data a company can afford to look as measured in a particular amount of recovery time.

Q7. What are the three different types of load balances in AWS and what are their uses?

Ans: The three types of AWS load balances are:

  • Application Load Balance: Provides flexible application management and transport layer security (TLS) termination.
  • Network Load Balance: This is used when extreme performance is required for applications, also provides static IPs.
  • Classic Load Balance: Used for applications within the EC2 classic network.

Q8. Define Auto-scaling.

Ans: Auto-scaling allows the user to automatically increase or decrease resource capacity in relation to demand. With this function users can launch new instances.

Q9. What are security logging services native to AWS?

Ans: There are two main AWS security logging services are:

  • AWS CloudTrail: This curates a history of the AWS API (application programming interface) calls related to every account, with this you can perform security analysis and resource change tracking of AWS environments.
  • AWS Config: Helps users understand the configuration changes in the AWS environment with the aid of AWS inventory and other related resources.

Q10. What is the difference between stopping instances and terminating instances?

Ans: Stopping an Instance denotes a normal shutdown, the EBS volume is attached and the instance can be easily restarted later. When an Instant is terminated it is permanently deleted along with an EBS volume attached to it.

Q11. If you want to build Amazon VPC (Virtual Private Cloud), what kind of components will you need?

Ans: Essential components required for building Amazon VPC are: sub-networks, Nat gateway, Internet gateway, VPG (Virtual Private Gateway), peering connection, VPC endpoint for S3, egress-only internet gateway.

Q12. What are the differences between the different types of visualizations in AWS?


  • HVM (Hardware Virtual Machine) is fully virtualized. This software is comprised of various virtual machines which act separately from each other.
  • PV (Paravisualisation) relies on PV-GRUB boot loader that boots PV-AMIs. The PV-GRUB loads kernels specified in the menu.

Q13. What are Life Cycle Hooks?

Ans: Auto-scaling uses Life Cycle Hooks, these enable users to carry out custom actions by pausing Auto Scaling group launches. It is possible for an auto-scaling cycle to have several Life Cycle Hooks.

Q14. What are subnets used for?

Ans: Networks usually have multiple hosts, handling so many hosts under a single network is cumbersome. Therefore, these large networks are divided into sub-networks (subnets) so that it is easier to manage hosts.

Q15. What are some VPC security products and their features?

Ans: Virtual Private Clouds have three main security products:

  • Security Groups: These control traffic at the EC2 instance level.
  • Flow Logs: These capture traffic, both inbound and outward, from network interfaces in VPCs.
  • Network Access Control Lists: These are firewalls specially designed for subnets, controlling traffic at the sub network level.

Q16. What will you use to monitor Amazon VPC? 

Ans: Amazon VPC can be monitored by using CloudWatch, CloudWatch logs, and VPC Flow logs.

Q17. What purpose does Route Table serve?

Ans: Network pockets can be routed using the Route Table. For ease of operation, multiple sub networks can be attached to one Route Table.

Q18. What can researchers use to temporarily solve problems?

Ans: Amazon Mechanical Turk can be used to solve problems.

Q19. How to monitor AWS applications using AWS Web Application Firewall (WAF)?

Ans: AWS WAF is instrumental in providing protection to web applications. It helps control traffic flow to applications and help avert web exploitations. To save applications from common attacks by customary WAF.

Q20. How do Domains differ from Hosted Zones?

Ans: A Domain consists of collected data in a technical unit. It is a self-contained administrative fraction. A hosted zone is specially designed to hold information regarding routing internet traffic towards a specific domain.


