Unapproved changes were previously made to a company's Amazon S3 bucket. A security engineer configured AWS Config to record configuration changes made to the company's S3 buckets. The engineer discovers there are S3 configuration changes being made, but no Amazon SNS notifications are being sent. The engineer has already checked the configuration of the SNS topic and has confirmed the configuration is valid. Which combination of steps should the security engineer take to resolve the issue? (Choose two.)
A) Configure the S3 bucket ACLs to allow AWS Config to record changes to the buckets.
B) Configure policies attached to S3 buckets to allow AWS Config to record changes to the buckets.
C) Attach the AmazonS3ReadOnlyAccess managed policy to IAM User.
D) Verify the security engineer's IAM user has an attached policy that allows all AWS Config actions.
E) Assign the AWSConfigRole managed policy to the AWS Config role.
Correct Answer:
Verified
Q285: A company stores images for a website
Q286: A development team is using an AWS
Q287: A company deployed an Amazon EC2 instance
Q288: A company is using AWS Organizations to
Q289: Example.com is hosted on Amazon EC2 instance
Q291: A company has implemented AWS WAF and
Q292: Amazon GuardDuty has detected communications to a
Q293: A company uses Amazon RDS for MySQL
Q294: A company has an application that uses
Q295: A developer is building a serverless application
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents