ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 242 - SAA-C03 discussion

Report
Export

A company recently migrated its entire IT environment to the AWS Cloud. The company discovers that users are provisioning oversized Amazon EC2 instances and modifying security group rules without using the appropriate change control process A solutions architect must devise a strategy to track and audit these inventory and configuration changes. Which actions should the solutions architect take to meet these requirements? (Select TWO )

A.
Enable AWS CloudTrail and use it for auditing
Answers
A.
Enable AWS CloudTrail and use it for auditing
B.
Use data lifecycie policies for the Amazon EC2 instances
Answers
B.
Use data lifecycie policies for the Amazon EC2 instances
C.
Enable AWS Trusted Advisor and reference the security dashboard
Answers
C.
Enable AWS Trusted Advisor and reference the security dashboard
D.
Enable AWS Config and create rules for auditing and compliance purposes
Answers
D.
Enable AWS Config and create rules for auditing and compliance purposes
E.
Restore previous resource configurations with an AWS CloudFormation template
Answers
E.
Restore previous resource configurations with an AWS CloudFormation template
Suggested answer: A, D

Explanation:

A) Enable AWS CloudTrail and use it for auditing. AWS CloudTrail provides a record of API calls and can be used to audit changes made to EC2 instances and security groups. By analyzing CloudTrail logs, the solutions architect can track who provisioned oversized instances or modified security groups without proper approval. D) Enable AWS Config and create rules for auditing and compliance purposes. AWS Config can record the configuration changes made to resources like EC2 instances and security groups. The solutions architect can create AWS Config rules to monitor for non-compliant changes, like launching certain instance types or opening security group ports without permission. AWS Config would alert on any violations of these rules.


asked 16/09/2024
rayan rayanalbanna
44 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first