🔹 AWS Fundamentals (Must-Know)
-
What is AWS?
-
What are the advantages of AWS?
-
Explain Cloud Computing.
-
What are IaaS, PaaS, SaaS?
-
What is the AWS Shared Responsibility Model?
-
What is an AWS Region?
-
What is an Availability Zone?
-
Difference between Region and AZ?
-
What is an Edge Location?
-
What is AWS Free Tier?
🔹 Identity & Security (IAM)
-
What is AWS IAM?
-
Difference between IAM User, Group, Role?
-
What is an IAM Policy?
-
What is MFA?
-
What is STS?
-
What is least privilege access?
-
Difference between IAM Role and User?
-
How do you secure AWS accounts?
-
What is AWS KMS?
-
What is AWS Secrets Manager?
🔹 Compute Services
-
What is Amazon EC2?
-
What are EC2 instance types?
-
What is an AMI?
-
Difference between On-Demand, Reserved, Spot instances?
-
What is Auto Scaling?
-
What is Elastic Load Balancer (ELB)?
-
Types of Load Balancers in AWS?
-
What is AWS Lambda?
-
Difference between EC2 and Lambda?
-
What is a cold start in Lambda?
🔹 Storage Services
-
What is Amazon S3?
-
What is an S3 bucket?
-
What are S3 storage classes?
-
What is S3 versioning?
-
What is S3 lifecycle policy?
-
What is Amazon EBS?
-
Difference between EBS and EFS?
-
What is Amazon Glacier?
-
What is cross-region replication?
-
How do you secure S3 data?
🔹 Networking (High Priority)
-
What is a VPC?
-
What is a Subnet?
-
Difference between Public and Private Subnet?
-
What is an Internet Gateway?
-
What is a NAT Gateway?
-
What is a Route Table?
-
Difference between Security Group and NACL?
-
What is Elastic IP?
-
What is Route 53?
-
What is DNS?
🔹 Database Services
-
What is Amazon RDS?
-
Supported databases in RDS?
-
What is Multi-AZ deployment?
-
What is a Read Replica?
-
Difference between RDS and DynamoDB?
-
What is Amazon DynamoDB?
-
What is a partition key?
-
What is Amazon Aurora?
-
Difference between Aurora and RDS?
-
What is AWS Redshift?
🔹 Monitoring & Management
-
What is Amazon CloudWatch?
-
Difference between CloudWatch and CloudTrail?
-
What is AWS CloudTrail?
-
What is AWS Config?
-
What is AWS Trusted Advisor?
-
What is AWS Systems Manager?
-
What is CloudWatch Alarm?
-
How do you monitor AWS resources?
-
What is AWS Health Dashboard?
-
What is AWS Well-Architected Framework?
🔹 DevOps & Automation
-
What is Infrastructure as Code (IaC)?
-
What is AWS CloudFormation?
-
Difference between CloudFormation and Terraform?
-
What is AWS CodePipeline?
-
What is CodeBuild?
-
What is CodeDeploy?
-
What is Blue-Green Deployment?
-
What is CI/CD?
-
What is AWS Elastic Beanstalk?
-
What is AWS OpsWorks?
🔹 AI / ML & GenAI (Modern AWS)
-
What is Amazon SageMaker?
-
What is Amazon Rekognition?
-
What is Amazon Comprehend?
-
What is Amazon Lex?
-
What is Amazon Textract?
-
What is Amazon Polly?
-
What is Amazon Bedrock?
-
Difference between Bedrock and SageMaker?
-
What are Foundation Models?
-
What is RAG (Retrieval Augmented Generation)?
🔹 High Availability & Disaster Recovery
-
What is High Availability?
-
What is Fault Tolerance?
-
Difference between Backup and DR?
-
What is RTO and RPO?
-
What is Multi-Region architecture?
-
What happens if an AZ fails?
-
What is Auto Scaling with ELB?
-
How does S3 ensure durability?
-
How do you design a fault-tolerant system?
-
How do you reduce AWS cost?
🔹 Rapid-Fire (One-Line)
-
Is IAM global or regional?
-
Is S3 global?
-
Max S3 object size?
-
Can Lambda run inside VPC?
-
Default VPC?
-
What is CIDR?
-
Can Security Groups deny traffic?
-
What is Spot interruption?
-
What is AWS Shield?
-
What is AWS WAF?
🔹 Advanced IAM & Security
-
How does IAM policy evaluation logic work?
-
Difference between identity-based and resource-based policies?
-
What is explicit deny?
-
What is AWS Organizations?
-
What is Service Control Policy (SCP)?
-
How do you secure a multi-account AWS setup?
-
What is cross-account access?
-
How does STS AssumeRole work?
-
What is AWS Shield Standard vs Advanced?
-
How does AWS WAF protect applications?
-
What is AWS GuardDuty?
-
What is Amazon Inspector?
-
What is AWS Macie?
-
How do you protect against DDoS attacks?
-
How do you manage secrets securely?
🔹 Advanced Networking (Very Important)
-
Difference between VPC Peering and Transit Gateway?
-
What is AWS Transit Gateway?
-
What is VPC Endpoint?
-
Difference between Interface and Gateway Endpoint?
-
What is PrivateLink?
-
What is Hybrid Cloud?
-
What is Direct Connect?
-
Difference between Direct Connect and VPN?
-
What is Global Accelerator?
-
How does Route 53 failover routing work?
-
What is Latency-based routing?
-
What is Split-horizon DNS?
-
What is IPv6 support in AWS?
-
What is Network Firewall?
-
How do you isolate workloads in VPC?
🔹 Advanced Compute & Containers
-
What is AWS ECS?
-
Difference between ECS, EKS, and Kubernetes?
-
What is AWS EKS?
-
What is Fargate?
-
What is Node Group in EKS?
-
What is Cluster Autoscaler?
-
How does Lambda scale internally?
-
What are Lambda limits?
-
What is Step Functions?
-
When do you use Step Functions vs Lambda?
🔹 Advanced Storage & Data Management
-
What is S3 Strong Consistency?
-
What is S3 Object Lock?
-
What is S3 Access Point?
-
What is S3 Select?
-
Difference between Glacier Instant, Flexible, Deep Archive?
-
What is EBS Snapshot lifecycle?
-
What is AWS Backup?
-
What is Storage Gateway?
-
What is Snowball / Snowmobile?
-
How do you migrate petabyte-scale data?
🔹 Advanced Databases & Analytics
-
What is Amazon DynamoDB Global Tables?
-
What is DynamoDB Streams?
-
What is DAX?
-
What is Amazon Aurora Serverless?
-
What is Amazon ElastiCache?
-
Difference between Redis and Memcached?
-
What is Amazon Redshift Spectrum?
-
What is Amazon Athena?
-
What is AWS Glue?
-
What is Lake Formation?
🔹 Observability & Reliability Engineering
-
What is AWS X-Ray?
-
How do you trace distributed systems?
-
What are SLI, SLO, SLA?
-
What is Chaos Engineering?
-
What is Fault Injection Simulator?
-
What is Auto Healing?
-
What is CloudWatch Logs Insights?
-
How do you reduce MTTR?
-
What is event-driven architecture?
-
What is Amazon EventBridge?
🔹 DevOps & Platform Engineering
-
What is GitOps?
-
How does CodePipeline integrate with IaC?
-
What is Canary deployment?
-
How do you do zero-downtime deployments?
-
What is AWS CDK?
-
Difference between CDK and CloudFormation?
-
How do you manage secrets in CI/CD?
-
What is Immutable Infrastructure?
-
What is Amazon ECR?
-
What is Amazon EKS Blueprints?
🔹 Cost Optimization & Governance
-
What is AWS Cost Explorer?
-
What are Savings Plans?
-
Difference between Savings Plans and Reserved Instances?
-
What is AWS Budgets?
-
What is Compute Optimizer?
-
How do you design cost-optimized architectures?
-
What is rightsizing?
-
What is spot fleet?
-
How do you manage unused resources?
-
What is chargeback / showback?
🔹 GenAI & AI (Senior Level)
-
How do you build RAG using Bedrock?
-
What is vector similarity search?
-
How does OpenSearch vector indexing work?
-
What is Bedrock Agents?
-
How do you prevent hallucinations?
-
What is Guardrails for Bedrock?
-
Bedrock vs OpenAI vs Azure OpenAI?
-
How do you secure GenAI APIs?
-
How do you monitor GenAI cost?
-
How do you productionize GenAI?
🔹 Cloud Architecture & Design
-
How do you design a globally distributed, low-latency system on AWS?
-
How do you choose between Multi-AZ vs Multi-Region?
-
What are cell-based architectures?
-
What is blast radius and how do you minimize it?
-
How do you design for eventual consistency?
-
How do you handle idempotency in distributed systems?
-
How do you design stateless vs stateful services?
-
What is back-pressure and how do you handle it?
-
How do you design for throttling and rate limiting?
-
How do you avoid single points of failure?
🔹 Distributed Systems & Scalability
-
What is the CAP theorem and how does AWS handle it?
-
How does DynamoDB achieve scalability?
-
How does S3 achieve 11 nines durability?
-
What is sharding?
-
What is hot partition problem?
-
How do you design globally consistent databases?
-
How does Aurora Global Database work?
-
What is event sourcing?
-
What is CQRS?
-
What is saga pattern?
🔹 Advanced Networking & Traffic Management
-
When would you use Global Accelerator vs CloudFront?
-
How does Anycast routing work?
-
What is cross-region load balancing?
-
How does AWS Shield mitigate DDoS?
-
What is TLS termination?
-
How do you implement mTLS on AWS?
-
How do you do zero-trust networking?
-
What is egress-only internet gateway?
-
How do you monitor network latency?
-
How do you design secure service-to-service communication?
🔹 Deep Security & Compliance
-
How does AWS support PCI-DSS, HIPAA, SOC2?
-
What is defense in depth?
-
How do you rotate secrets automatically?
-
What is customer-managed vs AWS-managed KMS keys?
-
What is envelope encryption?
-
How do you prevent privilege escalation?
-
How do you audit IAM at scale?
-
What is security posture management?
-
What is zero-trust security in AWS?
-
How do you secure serverless applications?
🔹 Serverless at Scale
-
How does Lambda concurrency work?
-
What is reserved vs provisioned concurrency?
-
How do you handle Lambda throttling?
-
How do you design serverless workflows?
-
Step Functions vs EventBridge vs SQS?
-
How do you guarantee exactly-once processing?
-
What is dead-letter queue (DLQ)?
-
How do you handle poison messages?
-
How do you ensure idempotent Lambda execution?
-
How do you debug serverless systems?
🔹 Data Engineering & Analytics
-
How do you design a data lake on AWS?
-
What is Lambda architecture vs Kappa architecture?
-
How does Glue handle schema evolution?
-
How do you optimize Athena query cost?
-
How do you design real-time analytics pipelines?
-
Kinesis vs Kafka (MSK)?
-
How do you handle late-arriving data?
-
What is time-series data?
-
What is Amazon Timestream?
-
How do you manage data governance?
🔹 DevOps, Platform & SRE
-
How do you implement progressive delivery?
-
What is feature flagging?
-
How do you measure deployment health?
-
What is error budget?
-
What is mean time to recovery (MTTR)?
-
How do you automate rollbacks?
-
What is policy-as-code?
-
How does AWS Config Rules help compliance?
-
What is infrastructure drift?
-
How do you manage multi-region CI/CD?
🔹 Cost, Performance & Optimization
-
How do you design cost-aware architectures?
-
How do you decide compute vs serverless?
-
What is request-based pricing impact?
-
How do you optimize network egress cost?
-
How do you design SLA-aware systems?
-
What is performance isolation?
-
How do you handle noisy neighbor problem?
-
What is Graviton and why use it?
-
How do you benchmark AWS workloads?
-
What is capacity planning in cloud?
🔹 GenAI & Future AWS (Principal Level)
-
How do you design enterprise GenAI platforms?
-
How does Bedrock isolate customer data?
-
How do you do secure RAG at scale?
-
How do you evaluate foundation models?
-
What is prompt versioning?
-
How do you prevent prompt injection?
-
What is LLMOps?
-
How do you do A/B testing for prompts?
-
How do you control GenAI hallucinations?
-
How do you ensure regulatory compliance for GenAI?
🔹 Bar-Raiser / Behavioral + System Design
-
Design Netflix-like streaming platform on AWS.
-
Design Uber-like real-time tracking system.
-
Design high-throughput payment system.
-
Design global chat application.
-
Design secure healthcare data platform.
-
Design IoT ingestion pipeline.
-
Design AI search engine.
-
Design multi-tenant SaaS platform.
-
Design zero-downtime migration strategy.
-
Explain a production outage you handled.