
Ultimate access to all questions.
A security engineer at a company is tasked with creating an incident response plan to detect and respond to suspicious activities within VPC-hosted resources across multiple AWS Regions. To achieve this effectively and cost-efficiently, which two actions should the engineer implement?
A
Turn on VPC Flow Logs for all VPCs in the account.
B
Activate Amazon GuardDuty across all AWS Regions.
C
Activate Amazon Detective across all AWS Regions.
D
Create an Amazon Simple Notification Service (Amazon SNS) topic and an Amazon EventBridge rule that publishes findings to the SNS topic.
E
Create an AWS Lambda function and an Amazon EventBridge rule that invokes the Lambda function to send findings via Amazon Simple Email Service (Amazon SES).