ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 119 - DOP-C02 discussion

Report
Export

A company uses Amazon S3 to store proprietary information. The development team creates buckets for new projects on a daily basis. The security team wants to ensure that all existing and future buckets have encryption logging and versioning enabled. Additionally, no buckets should ever be publicly read or write accessible.

What should a DevOps engineer do to meet these requirements?

A.
Enable AWS CloudTrail and configure automatic remediation using AWS Lambda.
Answers
A.
Enable AWS CloudTrail and configure automatic remediation using AWS Lambda.
B.
Enable AWS Conflg rules and configure automatic remediation using AWS Systems Manager documents.
Answers
B.
Enable AWS Conflg rules and configure automatic remediation using AWS Systems Manager documents.
C.
Enable AWS Trusted Advisor and configure automatic remediation using Amazon EventBridge.
Answers
C.
Enable AWS Trusted Advisor and configure automatic remediation using Amazon EventBridge.
D.
Enable AWS Systems Manager and configure automatic remediation using Systems Manager documents.
Answers
D.
Enable AWS Systems Manager and configure automatic remediation using Systems Manager documents.
Suggested answer: B

Explanation:

https://aws.amazon.com/blogs/mt/aws-config-auto-remediation-s3-compliance/ https://aws.amazon.com/blogs/aws/aws-config-rules-dynamic-compliance-checking-for-cloud-resources/

asked 16/09/2024
Armands Vestmanis
45 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first