CertyRush
Đang tải...
C CertyRush
Câu hỏi free preview

Câu 130: AWS Certified Security - Specialty(Old)

A recent security audit found that AWS CloudTrail logs are insufficiently protected from tampering and unauthorized access. Which actions must the Security Engineer take to access these audit findings? (Choose three.)

Nội dung câu hỏi

A recent security audit found that AWS CloudTrail logs are insufficiently protected from tampering and unauthorized access. Which actions must the Security Engineer take to access these audit findings? (Choose three.)

Các lựa chọn

Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.

  1. A. Ensure CloudTrail log file validation is turned on. — đáp án hiện tại
  2. B. Configure an S3 lifecycle rule to periodically archive CloudTrail logs into Glacier for long-term storage.
  3. C. Use an S3 bucket with tight access controls that exists in a separate account. — đáp án hiện tại
  4. D. Use Amazon Inspector to monitor the file integrity of CloudTrail log files.
  5. E. Request a certificate through ACM and use a generated certificate private key to encrypt CloudTrail log files.
  6. F. Encrypt the CloudTrail log files with server-side encryption AWS KMS-managed keys (SSE-KMS). — đáp án hiện tại

Cộng đồng

0 bình luận công khai. Tên thành viên được ẩn một phần.

Chưa có bình luận. Mở giao diện tương tác để bắt đầu thảo luận.

Câu hỏi liền kề