
Ultimate access to all questions.
A company's security team mandates that all external Application Load Balancers (ALBs) and Amazon API Gateway APIs must be associated with AWS WAF web ACLs. The company manages hundreds of AWS accounts within a single AWS Organizations setup and has implemented AWS Config across the organization. During a recent audit, the company identified some external ALBs that lack AWS WAF web ACL associations. What actions should a DevOps engineer implement to ensure compliance with the security requirement for future ALB and API Gateway deployments?
A
Delegate AWS Firewall Manager to a security account.
B
Delegate Amazon GuardDuty to a security account.
C
Create an AWS Firewall Manager policy to attach AWS WAF web ACLs to any newly created ALBs and API Gateway APIs.
D
Create an Amazon GuardDuty policy to attach AWS WAF web ACLs to any newly created ALBs and API Gateway APIs.
E
Configure an AWS Config managed rule to attach AWS WAF web ACLs to any newly created ALBs and API Gateway APIs.