ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 634 - CLF-C02 discussion

Report
Export

A company needs to perform an audit of recent AWS account activity. The audit will investigate who initiated an event and what actions were performed.

Which AWS service should the company use to meet these requirements?

A.
AWS Config
Answers
A.
AWS Config
B.
Amazon Rekognition
Answers
B.
Amazon Rekognition
C.
AWS CloudTrail
Answers
C.
AWS CloudTrail
D.
Amazon Simple Notification Service (Amazon SNS)
Answers
D.
Amazon Simple Notification Service (Amazon SNS)
Suggested answer: C

Explanation:

AWS CloudTrail is a service that enables governance, compliance, and operational and risk auditing of an AWS account. It logs, continuously monitors, and retains account activity related to actions across an AWS infrastructure.

For auditing purposes:

CloudTrail records AWS API calls made in the account, including details about who made the request, the services used, the actions performed, and the response elements returned by AWS.

This information is critical for understanding user activity, detecting anomalous behavior, and performing security analysis and compliance auditing.

Why other options are not suitable:

A . AWS Config: AWS Config provides a detailed view of the configuration of AWS resources, including how resources are related and their compliance with internal policies, but it does not provide a comprehensive audit trail of user actions.

B . Amazon Rekognition: A service for image and video analysis, not relevant to auditing AWS account activity.

D . Amazon SNS: A notification service for sending alerts and messages, not used for auditing purposes.

References:

AWS CloudTrail Documentation


asked 16/09/2024
Yahya Ozer
35 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first