Soru

Zorluk: KolayThreat Detection and Vulnerability Management

A startup is designing a secure architecture on AWS. The security team wants to implement a solution that continuously monitors the AWS environment for unauthorized behavior, such as unusual API calls or potential database attacks. Additionally, they need to run automated scans on their container images to check for known software vulnerabilities before deployment. Which AWS services should the startup use to meet these requirements? (Select two.)

  1. Amazon GuardDutyCevap
  2. Amazon InspectorCevap
  3. C
    AWS Artifact
  4. D
    Amazon CloudTrail
  5. E
    AWS CloudHSM

Cevap

Amazon GuardDuty and Amazon Inspector are the correct services. Amazon GuardDuty provides continuous threat detection, while Amazon Inspector provides automated vulnerability scanning for container images.
Amazon GuardDuty is the correct choice for threat detection because it continuously monitors log sources for malicious or unauthorized activities. Amazon Inspector is the correct choice for vulnerability management because it automatedly scans container images in Amazon ECR for software vulnerabilities.

Adım Adım Çözüm

1
Identify the service responsible for continuous monitoring and active threat detection in the AWS environment.
Amazon GuardDuty is identified as the service that monitors logs (like CloudTrail and VPC Flow Logs) to detect unauthorized behavior and threats.
The requirement specifies the need to continuously monitor the AWS environment for unauthorized behavior.
2
Identify the service responsible for automated software vulnerability scanning of container images.
Amazon Inspector is identified as the service that scans container images in Amazon ECR for known vulnerabilities.
The requirement specifies the need to run automated scans on container images for software vulnerabilities.

Anahtar Kavram

AWS threat detection and vulnerability management services
Tahmini Süre:1m 0s
Bu soruyu puanla