ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 260 - ANS-C00 discussion

Report
Export

Under increased cybersecurity concerns, a company is deploying a near real-time intrusion detection system (IDS) solution.

A system must be put in place as soon as possible. The architecture consists of many AWS accounts, and all results must be delivered to a central location. Which solution will meet this requirement, while minimizing downtime and costs?

A.
Deploy a third-party vendor solution to perform deep packet inspection in a transit VPC.
Answers
A.
Deploy a third-party vendor solution to perform deep packet inspection in a transit VPC.
B.
Enable VPC Flow Logs on each VP
Answers
B.
Enable VPC Flow Logs on each VP
C.
Set up a stream of the flow logs to a central Amazon Elasticsearch cluster.
Answers
C.
Set up a stream of the flow logs to a central Amazon Elasticsearch cluster.
D.
Enable Amazon Macie on each AWS account and configure central reporting.
Answers
D.
Enable Amazon Macie on each AWS account and configure central reporting.
E.
Enable Amazon GuardDuty on each account as members of a central account.
Answers
E.
Enable Amazon GuardDuty on each account as members of a central account.
Suggested answer: D

Explanation:

Explanation:

References: https://aws.amazon.com/blogs/security/how-to-manage-amazon-guardduty-security-findings-across-multipleaccounts/

asked 16/09/2024
Fthcx Fgghn
33 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first