Solved

A Company Uses Federated Access for Its AWS Environment

Question 581

Multiple Choice

A company uses federated access for its AWS environment. The company creates and manages IAM roles by using AWS CloudFormation from a CI/CD pipeline. All changes should be made to the IAM roles through the pipeline. The company's security team discovers that out-of-band changes are being made to the IAM roles. The security team needs a way to detect when these out-of-band changes occur. What should a DevOps engineer do to meet this requirement?


A) Use Amazon Inspector rules to detect and notify when an AWS CloudFormation stack has a configuration change.
B) Use AWS Trusted Advisor to detect and notify when an AWS CloudFormation stack has a configuration change.
C) Use AWS CloudTrail to detect and notify when an AWS CloudFormation stack detects a configuration change.
D) Use an AWS Config rule to detect and notify when AWS CloudFormation drift detection identifies a configuration change.

Correct Answer:

verifed

Verified

Unlock this answer now
Get Access to more Verified Answers free of charge

Related Questions

Unlock this Answer For Free Now!

View this answer and more for free by performing one of the following actions

qr-code

Scan the QR code to install the App and get 2 free unlocks

upload documents

Unlock quizzes for free by uploading documents