The Security team believes that a former employee may have gained unauthorized access to AWS resources sometime in the past 3 months by using an identified access key. What approach would enable the Security team to find out what the former employee may have done within AWS?
A) Use the AWS CloudTrail console to search for user activity.
B) Use the Amazon CloudWatch Logs console to filter CloudTrail data by user.
C) Use AWS Config to see what actions were taken by the user.
D) Use Amazon Athena to query CloudTrail logs stored in Amazon S3.
Correct Answer:
Verified
Q124: A Security Engineer is setting up an
Q125: A company has enabled Amazon GuardDuty in
Q126: An organization receives an alert that indicates
Q127: A Security Administrator at a university is
Q128: A corporate cloud security policy states that
Q130: An organization is using Amazon CloudWatch Logs
Q131: What are the MOST secure ways to
Q132: The Security Engineer for a mobile game
Q133: A Security Engineer discovered a vulnerability in
Q134: An Amazon EC2 instance is part of
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents