exam questions

Exam AWS Certified Solutions Architect - Associate SAA-C02 All Questions

View all questions & answers for the AWS Certified Solutions Architect - Associate SAA-C02 exam

Exam AWS Certified Solutions Architect - Associate SAA-C02 topic 1 question 574 discussion

A company uses AWS to run all components of its three-tier application. The company wants to automatically detect any potential security breaches within the environment. The company wants to track any findings and notify administrators if a potential breach occurs.
Which solution meets these requirements?

  • A. Set up AWS WAF to evaluate suspicious web traffic. Create AWS Lambda functions to log any findings in Amazon CloudWatch and send email notifications to administrators.
  • B. Set up AWS Shield to evaluate suspicious web traffic. Create AWS Lambda functions to log any findings in Amazon CloudWatch and send email notifications to administrators.
  • C. Deploy Amazon Inspector to monitor the environment and generate findings in Amazon CloudWatch. Configure an Amazon EventBridge (Amazon CloudWatch Events) rule to publish a message to an Amazon Simple Notification Service (Amazon SNS) topic to notify administrators by email.
  • D. Deploy Amazon GuardDuty to monitor the environment and generate findings in Amazon CloudWatch. Configure an Amazon EventBridge (Amazon CloudWatch Events) rule to publish a message to an Amazon Simple Notification Service (Amazon SNS) topic to notify administrators by email.
Show Suggested Answer Hide Answer
Suggested Answer: D 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Ivanyan
Highly Voted 3 years, 1 month ago
Selected Answer: D
The correct answer is D : GuardDuty Inspector only for EC2
upvoted 15 times
...
Dsb86
Highly Voted 3 years, 3 months ago
Selected Answer: D
Inspector seems to be only for EC2, GuardDuty is for the whole environment
upvoted 7 times
etheng1970
2 years, 10 months ago
Not true, see - https://docs.aws.amazon.com/inspector/v1/userguide/inspector_network-reachability.html (if Amazon Inspector Agent is install in EC2. ) so it can address the the whole environment. While Guard duty use case is for Threat detection while the question is to address the concenrn of Vulnerability assessment. Therefore I rule out D.
upvoted 1 times
...
...
Jobair
Most Recent 2 years, 5 months ago
Selected Answer: B
The keyword is "Potential". The company is after potential security beaches. Inspector - Proactive Guard Duty - Reactive 3 tier application is mentioned in the question. You can install a website, app, and RDS in the EC2 instance. Inspector should be good enough for EC2 and ECR to detect potential security breaches. Links in the others are very useful
upvoted 1 times
...
Janan
2 years, 8 months ago
Selected Answer: C
Inspector will detect "potential" security issues. Guarddutty is for suspicious traffic
upvoted 1 times
...
Dimkaaa
2 years, 8 months ago
Selected Answer: D
After reading this article I go with D. https://medium.com/aws-architech/use-case-aws-inspector-vs-guardduty-3662bf80767a
upvoted 1 times
...
cloud_collector
2 years, 9 months ago
D should be better. About "3-tier application", No mentioned that all is belong to EC2 in quesiton. In Logic Tier & Data Tier, its may be the serverless components, such as Lambda/API GW... as belowed link https://docs.aws.amazon.com/whitepapers/latest/serverless-multi-tier-architectures-api-gateway-lambda/three-tier-architecture-overview.html
upvoted 1 times
...
slcheng
2 years, 9 months ago
Selected Answer: C
Vote C. "security vulnerabilities" as meeting the criteria.
upvoted 1 times
...
cloudbumblebeez
2 years, 9 months ago
Amazon Inspector is an automated vulnerability management service that continually scans Amazon Elastic Compute Cloud (EC2) and container workloads for software vulnerabilities and unintended network exposure. Key word here is "inside the environment " GuardDuty generates a finding whenever it detects unexpected and potentially malicious activity in your AWS environment Answer is D
upvoted 2 times
cloudbumblebeez
2 years, 9 months ago
The application is a three-tier component Amazon inspector works with only EC2
upvoted 1 times
...
...
thuyeinaung
2 years, 10 months ago
・three-tier application: all on EC2, ・To identify vulnerabilities so answer is C
upvoted 1 times
...
azi_2021
2 years, 11 months ago
WAF & Shield protect from attack so A & B out "to host all components" while inspector only for EC2 so C out it is D WAF protects from attack
upvoted 4 times
...
esinan
2 years, 12 months ago
Selected Answer: D
Answer D
upvoted 2 times
...
omunoz
3 years ago
C - Inspector is for vulnerabilities = security breaches
upvoted 1 times
...
JuFonAlc
3 years ago
Selected Answer: D
Guardduty is for Intelligent Threat discovery, that is what we're looking for in this use case
upvoted 2 times
...
DriVen
3 years ago
Selected Answer: C
The comment section can somtimes be a real pain in the A$$...why even discuss here, it is obvious that it is C here, Inspector is the thing that should come to mind immediately after looking for detecting vulnerabilities, it is a simple technical question, not a philosophy thesis
upvoted 3 times
...
Visi
3 years ago
Selected Answer: C
AWS Inspector detects vulnerabilities
upvoted 2 times
...
Venki_dev
3 years, 1 month ago
Selected Answer: C
Amazon Inspector : Automated and continual vulnerability management at scale Amazon GuardDuty : Protect your AWS accounts with intelligent threat detection
upvoted 3 times
...
gocoori
3 years, 1 month ago
https://medium.com/aws-architech/use-case-aws-inspector-vs-guardduty-3662bf80767a D가 맞는것 같네요.
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago