exam questions

Exam AWS Certified Security - Specialty SCS-C02 All Questions

View all questions & answers for the AWS Certified Security - Specialty SCS-C02 exam

Exam AWS Certified Security - Specialty SCS-C02 topic 1 question 288 discussion

A company is migrating container workloads from a data center to Amazon Elastic Container Service (Amazon ECS) clusters. The company must implement a solution to detect potential threats in the workloads and to improve the security posture of the container clusters.

Which solution will meet these requirements?

  • A. Configure Amazon Inspector on the VPC that is running the ECS clusters.
  • B. Enable Amazon GuardDuty Runtime Monitoring on the ECS clusters.
  • C. Audit Amazon ECS API access by using Amazon CloudWatch logs to identify unauthorized access.
  • D. Create container clusters in the same VPC. Use VPC flow logs to centrally monitor network traffic.
Show Suggested Answer Hide Answer
Suggested Answer: B 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
phmeeeee
3 weeks, 1 day ago
Selected Answer: B
B - GuardDuty can detect threats in container workloads.
upvoted 1 times
...
AWSLoverLoverLoverLoverLover
2 months, 1 week ago
Selected Answer: B
To detect potential threats in the workloads and improve the security posture of Amazon ECS clusters, the best approach is: Enable Amazon GuardDuty Runtime Monitoring ✅ GuardDuty Runtime Monitoring provides real-time threat detection for ECS workloads by analyzing runtime activity. It detects suspicious activities like file access anomalies, privilege escalation, or unauthorized network connections. This feature integrates with Amazon ECS Fargate and EC2-based ECS clusters to improve container security.
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago