Soru

Zorluk: OrtaThreat Detection and Vulnerability Management

A mobile gaming studio hosts its backend matchmaking services on a fleet of Amazon EC2 instances. Before releasing a major update, the development team wants to scan these virtual servers for known software vulnerabilities, unintended network accessibility, and packages that do not comply with security best practices. Which AWS service is designed to automatically perform these vulnerability assessments?

  1. A
    Amazon GuardDuty
  2. B
    AWS CloudTrail
  3. Amazon InspectorCevap
  4. D
    AWS Shield

Cevap

Amazon Inspector
The correct answer is Amazon Inspector. Amazon Inspector is an automated security assessment service that helps improve the security and compliance of applications deployed on AWS. It automatically scans Amazon EC2 instances, container images, and AWS Lambda functions for software vulnerabilities and unintended network exposure.

Adım Adım Çözüm

1
Identify the primary requirement in the scenario.
The studio needs to scan Amazon EC2 instances for software vulnerabilities, unintended network exposure, and security best practice deviations.
This establishes the scope of the tool needed (vulnerability management at the host/software level).
2
Evaluate the AWS security services that match the requirement.
Amazon Inspector is designed specifically for automated vulnerability management and scanning of EC2 instances and container images.
Amazon Inspector analyzes the software package vulnerabilities and network reachability of EC2 instances, making it the correct choice.

Anahtar Kavram

Vulnerability management and host-level security assessments in AWS.
Tahmini Süre:1m 0s
Bu soruyu puanla