A food delivery platform is preparing for an audit and needs to download official AWS compliance documents, such as SOC and PCI DSS reports, while also verifying its security responsibilities. Which of the following actions should the company take to meet these requirements? (Select TWO.)
- Download the required AWS compliance reports directly using AWS Artifact.Cevap
- Rely on AWS to manage the physical security and environmental compliance of the data center facilities.Cevap
- CUse Amazon Inspector to request and retrieve the physical security audit reports of AWS data centers.
- DManage and apply security patches to the physical hypervisors and host operating systems running their EC2 instances.
- EConfigure AWS CloudTrail to monitor physical access logs for the AWS data centers hosting their applications.
Cevap
The correct options are the one to download compliance reports using AWS Artifact and the one relying on AWS to manage physical security and environmental compliance.
To meet compliance auditing needs, a customer uses the self-service AWS Artifact portal to download compliance documents (such as SOC and PCI DSS reports). Additionally, under the Shared Responsibility Model, AWS is responsible for security 'of' the cloud, which includes maintaining physical data center security and environmental compliance.
Adım Adım Çözüm
Anahtar Kavram
AWS compliance reports retrieval via AWS Artifact and boundary of physical security in the Shared Responsibility Model.