AWSProfessionalRetiring · 17 November 2026

AWS Certified Solutions Architect – Professional

SAP-C02

Advanced design of distributed systems and migration strategies on AWS. SAP-C03 registration opens 27 Oct 2026.

This exam retires on 17 November 2026 — 41 days left

Practice sets and mock exams stay available while the exam can still be sat. After 17 November 2026 it is withdrawn from CertifyCloudx, and the exam details and official syllabus are kept for reference.

Duration
180 min
Exam questions
75
Passing score
750 / 1000
Exam fee
$300
Question formats:Multiple choiceMultiple response
Free plan
3 free papers
Free account
Mocks locked
Pro only
Upgrade to Pro
Every paper and mock exam.
See Pro

Start with free papers Free

You get 3 free practice papers with your plan.

Free
Mixed paper 1
Domain 1 · 25 questions
Free
Mixed paper 2
Domain 1 · 25 questions
Free
Mixed paper 3
Domain 1 · 25 questions

Domain papers 976 questions

Free
Mixed paper 1
25 questions · 60 min
Free
Mixed paper 2
25 questions · 60 min
Free
Mixed paper 3
25 questions · 60 min
Pro
Mixed paper 4
25 questions · 60 min
Pro
Mixed paper 5
25 questions · 60 min
Pro
Mixed paper 6
25 questions · 60 min
Pro
Mixed paper 7
25 questions · 60 min
Pro
Mixed paper 8
25 questions · 60 min
Pro
Mixed paper 9
10 questions · 24 min

Mock exams Pro

Full-length, exam-like practice tests. Available with Pro.

Mock exam 1
75 questions · 180 min
Mock exam 2
75 questions · 180 min
Mock exam 3
75 questions · 180 min

Try a sample question

All 10 sample questions →
Question 1Design Solutions for Organizational Complexity

A analytics platform moved inter-VPC traffic from VPC peering to a transit gateway. The instances were tuned years ago for jumbo frames and still advertise a 9001-byte interface MTU. Small requests and SSH sessions work, but bulk transfers between the two VPCs now stall part-way through, and packet captures show large frames leaving the source and never arriving. Which change resolves this?

  1. A.

    Raise the transit gateway MTU to 9001 in the attachment options and restart the affected instances so the new value is picked up.

  2. B.

    Add a static route for each VPC CIDR in the transit gateway route table so large frames are no longer sent to a propagated route.

  3. C.

    Enable appliance mode on both transit gateway VPC attachments so that each flow is pinned to one Availability Zone.

  4. D.

    Lower the interface MTU on instances in both VPCs to the maximum the transit gateway supports, and change both VPCs together.

Show answer

Answer: D

A transit gateway carries a smaller maximum frame than VPC peering, so instances still set to the peering-era MTU have their large frames silently discarded.

  • A. The transit gateway's maximum frame size is a service property and cannot be raised in attachment options.
  • B. Static versus propagated routes change which attachment is chosen, not the maximum frame the path will carry.
  • C. Appliance mode pins a flow to one Availability Zone for stateful appliances; it has no effect on frame size.
  • D. Aligning the instance MTU with the transit gateway's supported maximum removes the oversized frames, and changing both VPCs together avoids a mismatch.

What's on the exam

4 domains · 20 task statements, straight from the official exam guide (as of 2026-09-29).

  1. 1.1Architect network connectivity strategies
    • AWS Global Infrastructure
    • AWS networking concepts (for example, Amazon Virtual Private Cloud [Amazon VPC], AWS Direct Connect, AWS VPN, transitive routing, AWS container services)
    • Hybrid DNS concepts (for example, Amazon Route 53 Resolver, on-premises DNS integration)
    • Network segmentation (for example, subnetting, IP addressing, connectivity among VPCs)
    • Network traffic monitoring
    • Evaluating connectivity options for multiple VPCs
    • Evaluating connectivity options for on-premises, co-location, and cloud integration
    • Selecting AWS Regions and Availability Zones based on network and latency requirements
    • Troubleshooting traffic flows by using AWS tools
    • Using service endpoints for service integrations
  2. 1.2Prescribe security controls
    • AWS Identity and Access Management (IAM) and AWS IAM Identity Center
    • Route tables, security groups, and network ACLs
    • Encryption keys and certificate management (for example, AWS Key Management Service [AWS KMS], AWS Certificate Manager [ACM])
    • AWS security, identity, and compliance tools (for example, AWS CloudTrail, AWS Identity and Access Management Access Analyzer, AWS Security Hub, Amazon Inspector)
    • Evaluating cross-account access management
    • Integrating with third-party identity providers
    • Deploying encryption strategies for data at rest and data in transit
    • Developing a strategy for centralized security event notifications and auditing
  3. 1.3Design reliable and resilient architectures
    • Recovery time objectives (RTOs) and recovery point objectives (RPOs)
    • Disaster recovery strategies (for example, using AWS Elastic Disaster Recovery, pilot light, warm standby, and multi-site)
    • Data backup and restoration
    • Designing disaster recovery solutions based on RTO and RPO requirements
    • Implementing architectures to automatically recover from failure
    • Developing the optimal architecture by considering scale-up and scale-out options
    • Designing an effective backup and restoration strategy
  4. 1.4Design a multi-account AWS environment
    • AWS Organizations and AWS Control Tower
    • Multi-account event notifications
    • AWS resource sharing across environments
    • Evaluating the most appropriate account structure for organizational requirements
    • Recommending a strategy for central logging and event notifications
    • Developing a multi-account governance model
  5. 1.5Determine cost optimization and visibility strategies
    • AWS cost and usage monitoring tools (for example, AWS Trusted Advisor, AWS Pricing Calculator, AWS Cost Explorer, AWS Budgets)
    • AWS purchasing options (for example, Reserved Instances, Savings Plans, Spot Instances)
    • AWS rightsizing visibility tools (for example, AWS Compute Optimizer, Amazon Simple Storage Service [Amazon S3] Storage Lens)
    • Monitoring cost and usage with AWS tools
    • Developing an effective tagging strategy that maps costs to business units
    • Understanding how purchasing options affect cost and performance

Outline reproduced from the vendor's public exam guide for study reference.Official guide

SAP-C02 practice — frequently asked questions

Are these real SAP-C02 exam questions?

No. Every question on CertifyCloudx is original, written by us against Amazon Web Services's publicly available SAP-C02 exam guide to rehearse the skills it lists. None are actual exam questions, and CertifyCloudx is not affiliated with or endorsed by Amazon Web Services.

How many SAP-C02 practice questions are there?

976 practice questions, including 3 full-length timed mock exams and 90 domain papers of up to 25 questions (mixed and by topic). Every question has a detailed explanation of why the right answer wins and why each distractor loses.

Is the content up to date with the current SAP-C02 exam guide?

The questions are written against the SAP-C02 exam guide dated 2026-09-29, and we revise them when Amazon Web Services updates the guide.

What question formats are covered?

The same formats the real SAP-C02 uses: Multiple choice, Multiple response. Each is rendered and graded the way the exam does it.

How long is the SAP-C02 exam and how many questions does it have?

According to Amazon Web Services's published exam details: 75 questions, 180 minutes, passing score 750 / 1000. Our mock exams use the same time limit and question count. Always confirm current details with Amazon Web Services before booking.

Can I practise SAP-C02 for free?

Yes. 3 papers are free, with up to 10 questions a day on the free plan and no card needed. Pro unlocks every paper and mock exam with no daily limit.

Does CertifyCloudx guarantee that I will pass?

No practice material can guarantee a result. CertifyCloudx helps you find and close your weak areas — accuracy by exam-guide domain and topic shows what to study next.