Logo

A company has several production AWS accounts and a central security AWS account. The security account is used for centralized monitoring and has IAM privileges...


Amazon SCS-C01 Exam

Questions Number: 118 out of 160 Questions
73.75%

Question 118
A company has several production AWS accounts and a central security AWS account. The security account is used for centralized monitoring and has IAM privileges to all resources in every corporate account. All of the company's Amazon S3 buckets are tagged with a value denoting the data classification of their contents.
A Security Engineer is deploying a monitoring solution in the security account that will enforce bucket policy compliance. The system must monitor S3 buckets in all production accounts and confirm that any policy change is in accordance with the bucket's data classification. If any change is out of compliance, the Security team must be notified quickly.
Which combination of actions would build the required solution? (Choose three.)







Previous Questions Next Questions