nerdexam
AmazonAmazon

DOP-C02 · Question #53

DOP-C02 Question #53: Real Exam Question with Answer & Explanation

Sign in or unlock DOP-C02 to reveal the answer and full explanation for question #53. The question stem and answer options stay visible for context.

Submitted by ricky.ec· Mar 6, 2026Incident & Event Response

Question

A new zero-day vulnerability was found in OpenSSL requiring the immediate patching of a production web fleet running on Amazon Linux. Currently, OS updates are performed manually on a monthly basis and deployed using updates to the production Auto Scaling Group's launch configuration. Which method should a DevOps Engineer use to update packages in-place without downtime?

Options

  • AUse AWS CodePipline and AWS CodeBuild to generate new copies of these packages, and
  • BUse AWS Inspector to run "yum upgrade" on all running production instances, and manually
  • CUse Amazon EC2 Run Command to issue a package update command to all running production
  • DDefine a new AWS OpsWorks layer to match the running production instances, and use a recipe

Unlock DOP-C02 to see the answer

You've previewed enough free DOP-C02 questions. Unlock DOP-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Systems Manager Run Command#Emergency patching#OS updates#Zero downtime
Full DOP-C02 PracticeBrowse All DOP-C02 Questions