BBBlue Bat
HomeCloud Practitioner › Exam structure
Exam structure

What's on the Cloud Practitioner exam

Exam code: CLF-C02

65
Questions
90 min
Duration
700 / 1000
To pass
None
Prerequisites

Practice the real format

Do you think you are ready? Put your knowledge to the test with a free, timed practice exam that mirrors the Cloud Practitioner format — with instant scoring, per-domain breakdowns, and full answer explanations.

Start a practice exam →

The AWS Certified Cloud Practitioner (CLF-C02) validates an overall understanding of the AWS Cloud, independent of any specific job role. It is designed for people who are new to the cloud and may not have an IT background at all — including sales, marketing, product, project management, and finance roles — as well as technologists who want a structured grounding before moving to associate-level certifications. AWS suggests the target candidate has up to six months of exposure to AWS, though this is not a requirement.

Domains covered

The exam is organized into weighted domains. The percentages indicate roughly how much of the exam each domain represents, which is a useful guide for allocating study time.

Cloud Concepts 24%

The value proposition of the AWS Cloud, the six pillars of the AWS Well-Architected Framework, cloud adoption and migration strategies including the AWS Cloud Adoption Framework, and cloud economics — fixed versus variable costs, rightsizing, licensing models, and economies of scale.

Security and Compliance 30%

The AWS shared responsibility model and how it shifts between services, governance and compliance concepts including AWS Artifact and AWS Config, identity and access management with IAM and IAM Identity Center, the principle of least privilege, root user protection, MFA, and security services such as GuardDuty, Shield, WAF, and Trusted Advisor.

Cloud Technology and Services 34%

Deployment and operating models, AWS global infrastructure — Regions, Availability Zones, and edge locations — and the core service families: compute (EC2, Lambda, ECS, EKS, Fargate), storage (S3, EBS, EFS, FSx), databases (RDS, Aurora, DynamoDB, ElastiCache), networking (VPC, Route 53, Direct Connect), plus AI/ML, analytics, and application integration services.

Billing, Pricing, and Support 12%

Compute purchasing options including On-Demand, Reserved Instances, Spot, and Savings Plans; billing and cost management tools such as AWS Budgets, Cost Explorer, and the Pricing Calculator; AWS Organizations and consolidated billing; and the AWS Support plan tiers, Trusted Advisor, and the AWS Partner Network.

How to prepare

The exam rewards breadth rather than depth: you need to recognize what each core AWS service does and when it applies, not how to configure it. Coding, architecture design, and troubleshooting are explicitly out of scope. Note that of the 65 questions, 50 are scored and 15 are unscored trial questions that do not affect your result, and there is no penalty for guessing — so answer everything. Working through full timed papers is the fastest way to surface the service-recognition gaps that cost marks.

Cloud concepts mapped to AWS services

Most CLF-C02 questions describe a business need and ask which AWS service meets it. This table maps the concept you will see in a question to the service that answers it, grouped by category. Knowing what each service does — and which neighbouring service it is easily confused with — is most of the exam.

Cloud ConceptAWS ServiceHow It Links
Global Infrastructure & Networking
AWS RegionsAWS Global InfrastructureGeographic locations where AWS operates data centers
High availabilityAvailability Zones (AZs)Isolated data centers within a Region for fault tolerance
Global content deliveryAmazon CloudFrontDelivers content with low latency using edge locations
DNS managementAmazon Route 53Highly available and scalable DNS service
Virtual networkingAmazon VPCCreates isolated networks in AWS
Hybrid connectivityAWS Direct ConnectDedicated private network connection to AWS
Site-to-site connectivityAWS VPNSecure encrypted connection between on-premises and AWS
Compute Services
Virtual serversAmazon EC2Resizable virtual machines in the cloud
Serverless computingAWS LambdaRuns code without managing servers
Container orchestrationAmazon ECSManaged container deployment and management
Kubernetes managementAmazon EKSManaged Kubernetes service
Automatic scalingEC2 Auto ScalingAutomatically adjusts compute capacity
Traffic distributionElastic Load Balancing (ELB)Distributes incoming traffic across resources
Storage Services
Object storageAmazon S3Highly durable and scalable object storage
Block storageAmazon EBSPersistent block storage for EC2 instances
Shared file storageAmazon EFSManaged network file system for Linux workloads
Long-term archivalAmazon S3 GlacierLow-cost storage for backup and archiving
Hybrid storageAWS Storage GatewayConnects on-premises environments to AWS storage
Database Services
Relational databasesAmazon RDSManaged relational databases (MySQL, PostgreSQL, and others)
Enterprise relational databaseAmazon AuroraHigh-performance cloud-native relational database
NoSQL databaseAmazon DynamoDBFully managed key-value and document database
Data warehousingAmazon RedshiftPetabyte-scale data warehouse service
In-memory cachingAmazon ElastiCacheImproves application performance through caching
Security & Identity
Identity and access managementAWS IAMControls access to AWS resources
Multi-factor authenticationAWS IAM MFAAdditional security layer for user authentication
Temporary accessIAM RolesGrants temporary permissions to users and services
Data encryptionAWS KMSCreates and manages encryption keys
Secret managementAWS Secrets ManagerSecure storage for passwords, API keys, and credentials
DDoS protectionAWS ShieldProtects applications from DDoS attacks
Web application securityAWS WAFProtects web applications from common exploits
Threat detectionAmazon GuardDutyContinuous threat detection and monitoring
Security posture managementAWS Security HubCentralized view of security findings
Monitoring & Management
Resource monitoringAmazon CloudWatchMonitors metrics, logs, and alarms
API activity auditingAWS CloudTrailTracks and records AWS API activity
Configuration complianceAWS ConfigTracks resource configurations and compliance
Best-practice recommendationsAWS Trusted AdvisorProvides cost, security, and performance recommendations
Infrastructure automationAWS CloudFormationDeploys infrastructure as code
Centralized governanceAWS OrganizationsManages multiple AWS accounts centrally
Migration & Application Integration
Server migrationAWS Application Migration Service (MGN)Migrates servers to AWS with minimal downtime
Database migrationAWS Database Migration Service (DMS)Migrates databases to AWS
Application integrationAmazon SQSManaged message queuing service
Event-driven integrationAmazon EventBridgeRoutes events between AWS services and applications
Workflow orchestrationAWS Step FunctionsCoordinates distributed application workflows
Cost Management & Billing
Cost visibilityAWS Cost ExplorerAnalyzes AWS spending and usage patterns
Budget monitoringAWS BudgetsSets cost and usage thresholds with alerts
Cost optimization recommendationsAWS Compute OptimizerRecommends optimal AWS resource sizing
Centralized billingAWS OrganizationsConsolidated BillingCombines billing across multiple AWS accounts
Pricing calculatorAWS Pricing CalculatorEstimates AWS service costs before deployment
Business Continuity & Reliability
Backup managementAWS BackupCentralized backup management across AWS services
Disaster recoveryMulti-AZ RDSCross-Region ReplicationImproves availability and disaster recovery
High availabilityElastic Load BalancingEC2 Auto ScalingEnsures applications remain available during failures
Data durabilityAmazon S3Provides 99.999999999% (11 nines) durability
Customer Support & Governance
Technical supportAWS Support PlansAccess to AWS support engineers and guidance
Operational insightsAWS Health DashboardPersonalized alerts on AWS service issues
Compliance reportingAWS ArtifactAccess to AWS compliance reports and agreements
Service documentation & guidanceAWS DocumentationAWS Knowledge CenterOfficial AWS learning and troubleshooting resources

Not every service listed here is heavily tested, but each one appears in the CLF-C02 in-scope list. Focus first on the pairs that are easily confused — CloudWatch versus CloudTrail, EBS versus EFS, RDS versus DynamoDB, and Shield versus WAF.

Exam formats and passing scores are updated periodically by AWS. Always confirm the current details on the official AWS certification page before booking your exam.

Ready to test yourself?

Do you think you are ready? Put your knowledge to the test with a free, timed practice exam that mirrors the Cloud Practitioner format — with instant scoring, per-domain breakdowns, and full answer explanations.

Start a practice exam →