Soru

Zorluk: KolayThreat Detection and Vulnerability Management

A startup is deploying a web application on Amazon EC2 instances. The security team needs to continuously scan these EC2 instances for software vulnerabilities and unintended network exposure. Additionally, they need to monitor their AWS accounts for malicious activity and unauthorized behavior.

Which of the following AWS services should the startup use to meet these requirements? (Select two.)

  1. Amazon InspectorCevap
  2. Amazon GuardDutyCevap
  3. C
    AWS CloudTrail
  4. D
    AWS Shield
  5. E
    Amazon Macie

Cevap

Amazon Inspector and Amazon GuardDuty
Amazon Inspector is correct because it automates vulnerability management by scanning EC2 instances for software vulnerabilities and network exposure. Amazon GuardDuty is correct because it provides intelligent threat detection by continuously monitoring AWS accounts and workloads for malicious activity.

Adım Adım Çözüm

1
Identify the requirement for scanning hosts (Amazon EC2 instances) for software vulnerabilities and network exposure.
Amazon Inspector is identified as the service designed to automate host-level vulnerability assessments and network reachability scans.
This matches the AWS service definition for host and container vulnerability scanning.
2
Identify the requirement for continuously monitoring the AWS account for malicious activity and unauthorized access.
Amazon GuardDuty is identified as the service that analyzes logs (such as CloudTrail and VPC Flow Logs) to detect active threats and anomalies.
This matches the AWS service definition for intelligent threat detection.

Anahtar Kavram

Identifying the distinct purposes of Amazon Inspector for vulnerability scanning and Amazon GuardDuty for threat detection.
Bu soruyu puanla