The Security team has decided that there will be no public internet access to HTTP (TCP port 80) because it is moving to HTTPS for all incoming web traffic. The team has asked a SysOps Administrator to provide a report on any security groups that are not compliant. What should the SysOps Administrator do to provide near real-time compliance reporting?
A) Enable AWS Trusted Advisor and show the Security team that the Security Groups unrestricted access check will alarm.
B) Schedule an AWS Lambda function to run hourly to scan and evaluate all security groups, and send a report to the Security team.
C) Use AWS Config to enable the restricted-common-ports rule, and add port 80 to the parameters.
D) Use Amazon Inspector to evaluate the security groups during scans, and send the completed reports to the Security team.
Correct Answer:
Verified
Q374: On a weekly basis, the Administrator for
Q375: A SysOps Administrator has configured a CloudWatch
Q376: An existing data management application is running
Q377: A company's application stores documents within an
Q378: A fleet of servers must send local
Q380: Which of the following steps are required
Q381: A company stores thousands of non-critical log
Q382: A web application runs on Amazon EC2
Q383: A SysOpsAdministrator is managing a large organization
Q384: A SysOps Administrator implemented the following bucket
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents