ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 99 - 312-40 discussion

Report
Export

Cindy Williams works as a cloud security engineer in an IT company located in Seattle, Washington. Owing to the cost-effective security, governance, and storage features provided by AWS, her organization adopted AWS cloud-based services. Cindy would like to detect any unusual activity in her organization's AWS account. She would like to obtain the event history of her organization's AWS account activity for security analysis and resource change tracking. Which of the following AWS service enables operational auditing, compliance, governance, and risk auditing for her organization's AWS account?

A.
AWS CloudFormation
Answers
A.
AWS CloudFormation
B.
AWS Security Hub
Answers
B.
AWS Security Hub
C.
AWS Config
Answers
C.
AWS Config
D.
AWS CloudTrail
Answers
D.
AWS CloudTrail
Suggested answer: D

Explanation:

1.AWS CloudTrail: AWS CloudTrail is an AWS service that helps you enable operational and risk auditing, governance, and compliance of your AWS account1.

1.Event History: CloudTrail records actions taken by a user, role, or an AWS service as events. This includes actions taken in the AWS Management Console, AWS Command Line Interface, and AWS SDKs and APIs1.

1.Security Analysis: By providing a history of AWS account activity, CloudTrail enables security analysis and resource change tracking, which is essential for detecting unusual activities1.

1.Compliance: CloudTrail supports compliance by providing an immutable log of all the management events that occurred within the AWS account, which is crucial for audit trails1.

1.Operational Auditing: It allows organizations to conduct operational auditing by keeping track of user and API activity on AWS, which can be used to identify security incidents1.

AWS CloudTrail User Guide1.

asked 18/09/2024
Nogueira Elder
39 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first