exam questions

Exam AWS Certified Security - Specialty SCS-C02 All Questions

View all questions & answers for the AWS Certified Security - Specialty SCS-C02 exam

Exam AWS Certified Security - Specialty SCS-C02 topic 1 question 200 discussion

A company hosts an application on Amazon EC2 instances. The application also uses Amazon S3 and Amazon Simple Queue Service (Amazon SQS). The application is behind an Application Load Balancer (ALB) and scales with AWS Auto Scaling.

The company's security policy requires the use of least privilege access, which has been applied to all existing AWS resources. A security engineer needs to implement private connectivity to AWS services.

Which combination of steps should the security engineer take to meet this requirement? (Choose three.)

  • A. Use an interface VPC endpoint for Amazon SQS.
  • B. Configure a connection to Amazon S3 through AWS Transit Gateway.
  • C. Use a gateway VPC endpoint for Amazon S3.
  • D. Modify the IAM role applied to the EC2 instances in the Auto Scaling group to allow outbound traffic to the interface endpoints.
  • E. Modify the endpoint policies on all VPC endpoints. Specify the SQS and S3 resources that the application uses.
  • F. Configure a connection to Amazon S3 through AWS Firewall Manager.
Show Suggested Answer Hide Answer
Suggested Answer: ACE 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
IPLogic
4 months, 2 weeks ago
Selected Answer: ACE
These steps ensure that the application can securely access Amazon S3 and Amazon SQS without traversing the public internet, while also maintaining fine-grained control over which resources can be accessed
upvoted 2 times
...
dhewa
6 months ago
Selected Answer: ACE
A - This allows private connectivity to Amazon SQS without traversing the public internet. C - This provides private connectivity to Amazon S3. E-This ensures that only the necessary resources are accessible, adhering to the least privilege principle.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago