List of questions
Related questions
Question 298 - SCS-C01 discussion
Company policy requires that all insecure server protocols, such as FTP, Telnet, HTTP, etc be disabledon all servers. The security team would like to regularly check all servers to ensure compliance withthis requirement by using a scheduled CloudWatch event to trigger a review of the currentinfrastructure. What process will check compliance of the company's EC2 instances? Please select:
A.
Trigger an AWS Config Rules evaluation of the restricted-common-ports rule against every EC2 instance.
B.
Query the Trusted Advisor API for all best practice security checks and check for "action recommened" status.
C.
Enable a GuardDuty threat detection analysis targeting the port configuration on every EC2 instance.
D.
Run an Amazon inspector assessment using the Runtime Behavior Analysis rules package against every EC2 instance.
Your answer:
0 comments
Sorted by
Leave a comment first