
Answer-first summary for fast verification
Answer: AWS CloudTrail
**Explanation:** AWS CloudTrail is the correct answer because it is specifically designed to record API calls and events made in your AWS account. Here's why: 1. **AWS CloudTrail** is a service that enables governance, compliance, operational auditing, and risk auditing of your AWS account. It logs, continuously monitors, and retains account activity related to actions across your AWS infrastructure. 2. **Key features of AWS CloudTrail**: - Records API calls and events from AWS services - Provides event history of your AWS account activity - Enables security analysis and troubleshooting - Helps with compliance auditing - Delivers log files to an Amazon S3 bucket 3. **Comparison with other options**: - **AWS Config**: Monitors and records configuration changes to AWS resources, not API calls - **AWS Trusted Advisor**: Provides recommendations to optimize AWS infrastructure for performance, security, and cost - **Amazon Inspector**: Automated security assessment service that helps improve security and compliance of applications deployed on AWS Therefore, AWS CloudTrail is specifically designed for recording API calls for auditing and security analysis purposes.
Author: Jin H
Ultimate access to all questions.
No comments yet.