
Answer-first summary for fast verification
Answer: Amazon Inspector activation with agent deployment on EC2 and Lambda for automated reporting.
The correct answer is D. Amazon Inspector is a security assessment service specifically designed for identifying vulnerabilities or deviations from best practices in applications running on Amazon EC2. By deploying the Amazon Inspector agent on EC2 instances, it can scan for vulnerabilities and generate detailed reports. This solution meets the company's requirement for active vulnerability scanning and automated report generation. Options A and B do not specialize in vulnerability scanning for EC2 instances. GuardDuty, mentioned in option C, focuses more on threat detection and monitoring rather than detailed vulnerability assessments.
Author: LeetQuiz Editorial Team
Ultimate access to all questions.
A company, post-breach due to on-premises vulnerabilities, is migrating to Amazon EC2. They require a solution for active vulnerability scanning on EC2 with automated reporting. Which solution should be implemented?
A
AWS Shield deployment for vulnerability scanning and AWS Lambda for CloudTrail logging.
B
Amazon Macie with AWS Lambda for EC2 vulnerability scanning and CloudTrail logging.
C
Amazon GuardDuty activation with agent deployment on EC2 and Lambda for automated reporting.
D
Amazon Inspector activation with agent deployment on EC2 and Lambda for automated reporting.
No comments yet.