Ultimate access to all questions.
A company has deployed a popular application in a production VPC within a single AWS account, experiencing heavy usage. The security team seeks to enhance the application's security by potentially integrating AWS WAF. However, the product manager is hesitant due to cost considerations and requires evidence of the necessity for additional security measures. The security team suspects that some traffic may originate from IP addresses listed on a deny list. They provide this list to a DevOps engineer, who is tasked with setting up a system that will automatically notify the security team in near real-time if any IP addresses from the deny list attempt to access the application. This notification is intended to help the security team document the need for enhanced security. The DevOps engineer has already created a VPC flow log for the production VPC. What is the most cost-effective approach for the DevOps engineer to implement this notification system?