nerdexam
AmazonAmazon

DOP-C02 · Question #323

DOP-C02 Question #323: Real Exam Question with Answer & Explanation

Sign in or unlock DOP-C02 to reveal the answer and full explanation for question #323. The question stem and answer options stay visible for context.

Submitted by alyssa_d· Mar 6, 2026Security and Compliance

Question

During a security audit, a company discovered that some security groups allow SSH traffic from 0.0.0.0/0. A security team must implement a solution to detect and remediate this issue as soon as possible. The company uses one organization in AWS Organizations to manage all the company's AWS accounts. Which solution will meet these requirements?

Options

  • AEnable AWS Config for all AWS accounts. Use a periodic trigger to activate the vpe-sg-port-
  • BCreate an AWS Lambda function in each AWS account to delete all the security group rules.
  • CEnable AWS Config for all AWS accounts. Create a custom AWS Config rule to run on the
  • DCreate an AWS Systems Manager Automation document in each account to inspect all security

Unlock DOP-C02 to see the answer

You've previewed enough free DOP-C02 questions. Unlock DOP-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#AWS Config#Security Groups#SSH#Auto-remediation
Full DOP-C02 PracticeBrowse All DOP-C02 Questions