Ultimate access to all questions.
A security engineer is tasked with managing a traditional three-tier web application deployed on Amazon EC2 instances. The application is experiencing a surge in malicious attacks from the internet. To enhance security, the engineer needs to implement two specific measures to identify and mitigate known vulnerabilities and reduce the application's exposure to attacks. What should these measures be?