An automotive telemetry platform processes vehicle sensor data using a fleet of Amazon EC2 instances. The security team needs to implement a solution to scan these EC2 instances for known software vulnerabilities and continuously monitor the AWS accounts for malicious activity or unauthorized behavior. Which two AWS services should the platform use to meet these requirements? (Select two.)
- Amazon InspectorCevap
- Amazon GuardDutyCevap
- CAmazon CloudWatch
- DAWS CloudTrail
- EAWS Shield
Cevap
Amazon Inspector and Amazon GuardDuty
The correct services are Amazon Inspector and Amazon GuardDuty. Amazon Inspector performs vulnerability management by scanning EC2 instances for software vulnerabilities and unintended network exposure. Amazon GuardDuty provides intelligent threat detection by continuously monitoring AWS accounts and workloads for malicious activity.
Adım Adım Çözüm
Anahtar Kavram
Identifying AWS services for threat detection and vulnerability management