A startup is deploying a web application on Amazon EC2 instances. The security team needs to continuously scan these EC2 instances for software vulnerabilities and unintended network exposure. Additionally, they need to monitor their AWS accounts for malicious activity and unauthorized behavior.
Which of the following AWS services should the startup use to meet these requirements? (Select two.)
- Amazon InspectorCevap
- Amazon GuardDutyCevap
- CAWS CloudTrail
- DAWS Shield
- EAmazon Macie
Cevap
Amazon Inspector and Amazon GuardDuty
Amazon Inspector is correct because it automates vulnerability management by scanning EC2 instances for software vulnerabilities and network exposure. Amazon GuardDuty is correct because it provides intelligent threat detection by continuously monitoring AWS accounts and workloads for malicious activity.
Adım Adım Çözüm
Anahtar Kavram
Identifying the distinct purposes of Amazon Inspector for vulnerability scanning and Amazon GuardDuty for threat detection.