ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 343 - SCS-C01 discussion

Report
Export

Your company hosts a large section of EC2 instances in AWS. There are strict security rules governing the EC2 Instances. During a potential security breach , you need to ensure quick investigation of the underlying EC2 Instance. Which of the following service can help you quickly provision a test environment to look into the breached instance. Please select:

A.
AWS Cloudwatch
Answers
A.
AWS Cloudwatch
B.
AWS Cloudformation
Answers
B.
AWS Cloudformation
C.
AWS Cloudtrail
Answers
C.
AWS Cloudtrail
D.
AWS Config
Answers
D.
AWS Config
Suggested answer: B

Explanation:

The AWS Security best practises mentions the following

Unique to AWS, security practitioners can use CloudFormation to quickly create a new, trusted environment in which to conduct deeper investigation. The CloudFormation template can preconfigure instances in an isolated environment that contains all the necessary tools forensic teams need to determine the cause of the incident This cuts down on the time it takes to gather necessary tools, isolates systems under examination, and ensures that the team is operating in a clean room.

Option A is incorrect since this is a logging service and cannot be used to provision a test environment Option C is incorrect since this is an API logging service and cannot be used to provision a test environment Option D is incorrect since this is a configuration service and cannot be used to provision a test environment For more information on AWS Security best practises, please refer to below URL:

https://d1.awsstatic.com/whitepapers/architecture/AWS-Security-Pillar.pd1The correct answer is: AWS CloudformationSubmit your Feedback/Queries to our Experts

asked 16/09/2024
Piroon Dechates
35 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first