APURV
  • Home
  • Journey
  • Projects
  • Blogs
  • Interview
  • Exams
Resume
APURV

Building scalable, secure, and production-ready cloud infrastructure. Automation first.

NAVIGATION

HomeExperienceProjectsCertificationsSkills

TECH STACK

AWSGCPK8sCI/CDLinuxDocker

CONNECT

LinkedInGitHubEmailResume

© 2026 Apurv Gujjar. All rights reserved.
Apurv Gujjar
Apurv GujjarDevOps & Cloud Engineer
|Interview Documentation
Portfolio
Handbooks
🎯Linux🐙Git & GitHub🤖GitHub Actions🌐Networking☁AWS🛠Terraform🐳Docker☸Kubernetes📊Monitoring🛡DevSecOps💰Cost Optimization🚨Incident Scenarios👤HR & Behavioral☁GCP🐍Python
Interview DocumentationAWS

AWS

Core AWS Cloud Services, Architecture & Infrastructure Guide

Q1

What is cloud computing?

💬Answer

Cloud computing is the on-demand delivery of IT resources (including compute, databases, storage, and networking) over the internet with pay-as-you-go pricing. Instead of buying, owning, and maintaining physical data centers, you rent technology services from cloud providers like AWS.

Q2

What is the difference between CapEx and OpEx?

Q3

Explain elasticity with a real-world example.

Q4

What is the difference between Public, Private, and Hybrid cloud models?

Q5

Compare IaaS, PaaS, and SaaS with AWS service examples.

Q6

Why is Amazon EC2 considered IaaS?

Q7

Why is AWS Lambda considered PaaS?

Q8

What is an AWS Spot Instance and how does its pricing work?

Q9

When would you choose to use Reserved Instances over On-Demand?

Q10

Why are Spot Instances not suitable for production databases?

Q11

What is the AWS Shared Responsibility Model?

Q12

What is AWS WAF?

Q13

How does AWS WAF prevent SQL Injection?

Q14

What is the difference between AWS WAF and a Security Group?

Q15

What is IAM?

Q16

Explain the difference between an IAM User, Group, Role, and Policy.

Q17

What is the Principle of Least Privilege?

Q18

Why should you avoid using the Root Account for daily tasks?

Q19

How do you securely give an EC2 instance access to an S3 bucket?

Q20

What are IAM Roles and why are temporary credentials safer than permanent access keys?

Q21

Secrets Manager vs Parameter Store. Which should you use?

Q22

What is KMS? Explain envelope encryption.

Q23

Explain AWS Organizations and Service Control Policies (SCPs).

Q24

What is Amazon S3 and why is it called object storage?

Q25

What is a Bucket and what is an Object in S3?

Q26

What is the fundamental difference between EBS and S3?

Q27

Why is EBS better for databases than S3?

Q28

Are S3 buckets public by default?

Q29

What are S3 Bucket Policies and how do they work?

Q30

How does CloudFront securely work with an S3 bucket origin?

Q31

What is the AWS CLI and how does it communicate with AWS?

Q32

What is the difference between AWS CLI and the AWS Console?

Q33

What is Infrastructure as Code (IaC)?

Q34

How do you automate AWS infrastructure, and what is the difference between Terraform and CloudFormation?

Q35

Compare RDS vs Aurora.

Q36

Compare Multi-AZ vs Read Replicas in RDS.

Q37

Explain DynamoDB partition key design and autoscaling.

Q38

Why Use Lambda? What are its benefits?

Q39

Compare SNS vs SQS.

Q40

Compare Standard Queue vs FIFO Queue in SQS.

Q41

What is EventBridge and Step Functions?

Q42

What is a VPC and what is CIDR notation?

Q43

Why does AWS reserve 5 IP addresses per subnet?

Q44

What is the difference between Public and Private Subnets?

Q45

What is an Internet Gateway?

Q46

Why is a NAT Gateway needed and why MUST it be in a Public Subnet?

Q47

What is the difference between a Security Group and a NACL?

Q48

What does "Stateful" and "Stateless" mean in the context of firewalls?

Q49

When would you use VPC Peering versus a Transit Gateway? Which is more cost-effective?

Q50

What is a NAT Gateway, and how does it differ from an Internet Gateway (IGW)?

Q51

What is CloudWatch and how do CloudWatch Alarms work?

Q52

Does CloudWatch monitor EC2 RAM by default? If not, how do you monitor it?

Q53

What is a container and why do we need container orchestration?

Q54

What is Amazon ECR?

Q55

What is Amazon ECS?

Q56

What is the difference between ECS and EKS?

Q57

Explain the difference between an ECS Task Definition, a Task, and a Service.

Q58

What is AWS Fargate and how does it compare to the EC2 Launch Type?

Q59

Why would you choose Fargate over standard EC2 for containers?

Q60

What is Route 53 and what are its routing policies?

Q61

What is CloudFront, and what is a CDN?

Q62

How does CloudFront reduce global latency?

Q63

What are AWS Edge Locations?

Q64

How would you improve website performance for global users complaining about slow image loading?

Q65

Explain EKS architecture.

Q66

Compare Managed Node Groups vs Self-Managed Node Groups in EKS.

Q67

How does IAM Roles for Service Accounts (IRSA) work in AWS EKS?

Q68

Explain a highly available production architecture using Route 53, CloudFront, and ECS.

Q69

What is CI/CD?

Q70

What is the difference between Continuous Delivery and Continuous Deployment?

Q71

What is CodeCommit?

Q72

What is CodeBuild?

Q73

What is `buildspec.yml`?

Q74

What is CodeDeploy?

Q75

What is `appspec.yml`?

Q76

What is CodePipeline?

Q77

What is the difference between CodeBuild and CodePipeline?

Q78

What is an Artifact?

Q79

Explain a full AWS CI/CD pipeline.

Q80

What is In-Place Deployment?

Q81

What is Blue/Green Deployment, and why is it safer?

Q82

How do you achieve zero-downtime deployment?

Q83

How do you rollback a failed deployment in Blue/Green?

Q84

What are deployment lifecycle hooks?

Q85

What happens after a Git push in a modern CI/CD flow?

Q86

Explain a production-grade AWS deployment architecture.

Apurv Gujjar - DevOps & Cloud Engineer
Created by

Apurv Gujjar

DevOps & Cloud Engineer

Specialized in:DevOpsAWSGCPKubernetesTerraformDocker
View Portfolio