Ultimate access to all questions.
In a multi-tenant VPC environment, a company has set up Amazon GuardDuty and forwards all its findings to AWS Security Hub. Due to a surge in findings from suspicious sources, a DevOps engineer is tasked with implementing a solution to automatically block traffic across the entire VPC upon detection of a new suspicious source by GuardDuty. Which of the following solutions would effectively address this requirement?