// amazon · scs-c03
SCS
amazon

// aws certified security - specialty scs-c03

SCS-C03

Master key domains like cryptography and threat modeling for the AWS Certified Security - Specialty exam.

52
questions
65
in exam
120m
duration
Choose your mode
at a glance

What you get

PDF US$10.00Sub US$10/mopass 720

Free practice questions are available without payment; anyone can start practicing at no cost.

tùy chọn truy cập

PDF ngân hàng hay đăng ký nền tảng?

Hai lựa chọn mua riêng: PDF một lần cho SCS-C03, hoặc đăng ký hàng tháng để luyện tập và mô phỏng trực tuyến trên toàn nền tảng. Đăng ký không bao gồm tải PDF.

tùy chọn / 01 · file pdf

PDF toàn bộ ngân hàng câu hỏi

US$10.00· một lần
  • Toàn bộ ngân hàng đề dưới dạng PDF sẵn in
  • Truy cập trọn đời chỉ cho kỳ thi này
  • Câu hỏi gắn lĩnh vực kèm giải thích
  • Tách khỏi luyện tập trực tuyến — mua một lần

tùy chọn / 02 · đăng ký

Mọi kỳ thi · luyện tập & mô phỏng

US$10.00· mỗi tháng
  • Luyện tập & mô phỏng thi trên mọi ngân hàng đề
  • Bao gồm mọi kỳ thi hiện tại và tương lai
  • Phân tích cá nhân và công cụ ghi nhớ
  • Hủy bất cứ lúc nào — không upsell từng kỳ thi
Đăng ký để truy cập nền tảng
mẫu · 1/52Xáo trộn

Xem ngân hàng đề có gì.

Monitoring and Responsemedium

2 phiếu · xác nhận gần đây

A security engineer for a company needs to design an incident response plan that addresses compromised IAM user account credentials. The company uses an organization in AWS Organizations and AWS IAM Identify Center to manage user access. The company uses a delegated administrator account to implement AWS Security Hub. The delegated administrator account contains an organizational trail in AWS CloudTrail that logs all events to an Amazon S3 bucket. The company has also configured an organizational event data store that captures all events from the trail.
The incident response plan must provide steps that the security engineer can take to immediately disable any compromised IAM user when the security engineer receives a notification of a security incident.
The plan must prevent the IAM user from being used in any AWS account. The plan must also collect all AWS actions that the compromised IAM user performed across all accounts in the previous 7 days.
Which solution will meet these requirements?
A
Disable the compromised IAM user in the organization management account. Use Amazon Athena to query the organizational CloudTrail logs in the S3 bucket for actions that the IAM user performed in the previous 7 days.
0%
B
Remove all IAM policies that are attached to the IAM user in the organization management account. Use Security Hub to query the CloudTrail logs for actions that the IAM user performed in the previous 7 days.
0%
C
Remove any permission sets that arc assigned to the IAM user in IAM Identity Center. Use Amazon CloudWatch Logs Insights to directly query the organizational CloudTrail logs in the S3 bucket for actions that the IAM user performed m the previous 7 days.
0%
D
Disable the IAM user's access in IAM Identity Center. Use CloudTrail to query the organizational event data store for actions that the IAM user performed in the previous 7 days.
100%
tiếp →
04 · coverage

Exam domains

Cryptography25%
10 q
Identity and Access Management15%
14 q
Threat Modeling20%
3 q
Risk Management15%
8 q
Monitoring and Response30%
17 q
câu hỏi cộng đồngview all →

Câu hỏi từ cộng đồng

Đóng góp được bình chọn cao và duyệt cho bài thi này, trước khi vào ngân hàng đề.

// câu hỏi cộng đồng hàng đầuview all →
0.0 · 0 reviews

What candidates say

no reviews yet

related

You may also like

More exams based on your interests.

Loading...

52 questions

PDF US$10.00 one-time·Sub US$10/mo

Practice