An automobile manufacturer is migrating its web applications to AWS and wants to establish automated security checks. The manufacturer needs to implement software vulnerability assessments on its application hosts and monitor AWS account activity for potential security threats. Which AWS services should be selected to fulfill these requirements? (Select two.)
- Amazon InspectorAnswer
- Amazon GuardDutyAnswer
- CAWS CloudTrail
- DAmazon CloudWatch
- EAWS Artifact
Answer
Amazon Inspector and Amazon GuardDuty should be selected to meet the requirements.
Amazon Inspector is the correct choice for host and software vulnerability scanning on instances and containers. Amazon GuardDuty is the correct choice for continuous threat detection and monitoring of malicious activity across AWS accounts.
Step-by-Step Solution
Key Concept
AWS threat detection and vulnerability management services