exam questions

Exam AWS Certified DevOps Engineer - Professional DOP-C02 All Questions

View all questions & answers for the AWS Certified DevOps Engineer - Professional DOP-C02 exam

Exam AWS Certified DevOps Engineer - Professional DOP-C02 topic 1 question 312 discussion

A company uses Amazon Elastic Container Registry (Amazon ECR) private registries to store container images.

A DevOps team needs to ensure that the container images are regularly scanned for software package vulnerabilities.

Which solution will meet this requirement?

  • A. Enable enhanced scanning for private registries in Amazon ECR.
  • B. Enable basic continuous scanning for private registries in Amazon ECR.
  • C. Create an AWS System Manager Automation document to scan images by using the AWS SDK. Configure the Automation document to run when a new image is pushed to an ECR registry.
  • D. Create an AWS Lambda function that scans all images in Amazon ECR by using the AWS SDK. Create an Amazon EventBridge rule to invoke the Lambda function each day.
Show Suggested Answer Hide Answer
Suggested Answer: A 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Srikantha
1 month ago
Selected Answer: A
Why is Option A the Best Choice? Enhanced scanning provides the most comprehensive security coverage. It uses AWS-provided and third-party scanning tools (e.g., Amazon Inspector). It scans continuously and provides detailed vulnerability reports. Supports automatic scanning on image push and periodic rescanning. This ensures new images and existing images are continuously monitored. No need for custom scripts or Lambda functions. Fully managed by AWS → low operational overhead.
upvoted 1 times
...
phu0298
5 months, 1 week ago
Selected Answer: A
Amazon ECR offers two levels of image scanning: 1. Basic Scanning: Detects vulnerabilities when images are pushed to the repository. 2. Enhanced Scanning: Provides continuous scanning of images, including detailed reports and automatic rescans when vulnerabilities are published.
upvoted 4 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago