List of questions
Related questions
Question 265 - SCS-C01 discussion
A security team is creating a response plan in the event an employee executes unauthorized actions on AWS infrastructure. They want to include steps to determine if the employee's IAM permissions changed as part of the incident. What steps should the team document in the plan?
Please select:
A.
Use AWS Config to examine the employee's IAM permissions prior to the incident and compare them to the employee's current IAM permissions.
B.
Use Made to examine the employee's IAM permissions prior to the incident and compare them to the employee's A current IAM permissions.
C.
Use CloudTrail to examine the employee's IAM permissions prior to the incident and compare them to the employee's current IAM permissions.
D.
Use Trusted Advisor to examine the employee's IAM permissions prior to the incident and compare them to the employee's current IAM permissions.
Your answer:
0 comments
Sorted by
Leave a comment first