List of questions
Related questions
Question 357 - SCS-C01 discussion
A company has hired a third-party security auditor, and the auditor needs read-only access to all AWS resources and logs of all VPC records and events that have occurred on AWS. How can the company meet the auditor's requirements without comprising security in the AWS environment? Choose the correct answer from the options below Please select:
A.
Create a role that has the required permissions for the auditor.
B.
Create an SNS notification that sends the CloudTrail log files to the auditor's email when CIoudTrail delivers the logs to S3, but do not allow the auditor access to the AWS environment.
C.
The company should contact AWS as part of the shared responsibility model, and AWS will grant required access to th^ third-party auditor.
D.
Enable CloudTrail logging and create an IAM user who has read-only permissions to the required AWS resources, including the bucket containing the CloudTrail logs.
Your answer:
0 comments
Sorted by
Leave a comment first