ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 306 - CLF-C02 discussion

Report
Export

Which AWS service provides threat detection by monitoring for malicious activities and unauthorized actions to protect AWS accounts, workloads, and data that is stored in Amazon S3?

A.
AWS Shield
Answers
A.
AWS Shield
B.
AWS Firewall Manager
Answers
B.
AWS Firewall Manager
C.
Amazon GuardDuty
Answers
C.
Amazon GuardDuty
D.
Amazon Inspector
Answers
D.
Amazon Inspector
Suggested answer: C

Explanation:

Amazon GuardDuty is a service that provides intelligent threat detection and continuous monitoring for your AWS accounts, workloads, and data. Amazon GuardDuty analyzes and processes data sources, such as VPC Flow Logs, AWS CloudTrail event logs, and DNS logs, to identify malicious activities and unauthorized actions, such as reconnaissance, instance compromise, account compromise, and data exfiltration. Amazon GuardDuty can also detect threats to your data stored in Amazon S3, such as API calls from unusual locations or disabling of preventative controls. Amazon GuardDuty generates findings that summarize the details of the detected threats and provides recommendations for remediation. AWS Shield, AWS Firewall Manager, and Amazon Inspector are not the best services to meet this requirement. AWS Shield is a service that provides protection against distributed denial of service (DDoS) attacks. AWS Firewall Manager is a service that allows you to centrally configure and manage firewall rules across your accounts and resources. Amazon

Inspector is a service that assesses the security and compliance of your applications running on EC2 instances.

asked 16/09/2024
Hendrik Woldhuis
50 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first