New Year Sale Special Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: ac4s65

A company has a requirement that none of its Amazon RDS resources can be publicly...

A company has a requirement that none of its Amazon RDS resources can be publicly accessible. A security engineer needs to set up monitoring for this requirement and must receive a near-real-time notification if any RDS resource is noncompliant.

Which combination of steps should the security engineer take to meet these requirements? (Select THREE.)

A.

Configure RDS event notifications on each RDS resource Target an AWS Lambda function that notifies AWS Config of a change to the RDS public access setting.

B.

Configure the rds-mstance-public-access-check AWS Config managed rule to monitor the RDS resources.

C.

Configure the Amazon EventBridge rule to target an Amazon Simple Notification Service (Amazon SNS) topic to provide a notification to the security engineer.

D.

Configure RDS event notifications to post events to an Amazon Simple Queue Service (Amazon SQS) queue Subscribe the SQS queue to an Amazon Simple Notification Service (Amazon SNS) topic to provide a notification to the security engineer.

E.

Configure an Amazon EventBridge rule that is invoked by a compliance change event from the rds-instance-public-access-check rule.

F.

Configure an Amazon EventBridge rule that is invoked when the AWS Lambda function notifies AWS Config of an RDS event change.

SCS-C02 PDF/Engine
  • Printable Format
  • Value of Money
  • 100% Pass Assurance
  • Verified Answers
  • Researched by Industry Experts
  • Based on Real Exams Scenarios
  • 100% Real Questions
buy now SCS-C02 pdf
Get 65% Discount on All Products, Use Coupon: "ac4s65"