nerdexam
Palo_Alto_Networks

PSE-PRISMACLOUD · Question #11

Which Amazon Web Services security service can provide host vulnerability information to Prisma Public Cloud?

The correct answer is B. Inspector. Amazon Inspector is correct because it performs host-level vulnerability assessments on EC2 instances, scanning for CVEs, exposed ports, and software weaknesses - exactly the kind of host vulnerability data that Prisma Cloud ingests to enrich its cloud security posture. Shield…

Cloud Security Services Integration

Question

Which Amazon Web Services security service can provide host vulnerability information to Prisma Public Cloud?

Options

  • AShield
  • BInspector
  • CGuardDuty
  • DAmazon Web Services WAF

How the community answered

(35 responses)
  • A
    6% (2)
  • B
    89% (31)
  • C
    3% (1)
  • D
    3% (1)

Explanation

Amazon Inspector is correct because it performs host-level vulnerability assessments on EC2 instances, scanning for CVEs, exposed ports, and software weaknesses - exactly the kind of host vulnerability data that Prisma Cloud ingests to enrich its cloud security posture.

Shield (A) is a DDoS protection service focused on network-layer attack mitigation, not host vulnerability scanning. GuardDuty (C) is a threat detection service that analyzes logs (CloudTrail, VPC Flow, DNS) for behavioral anomalies and malicious activity - it detects threats already occurring, not underlying vulnerabilities. AWS WAF (D) is a web application firewall that filters HTTP traffic based on rules, with no visibility into host-level software vulnerabilities.

Memory tip: Think "Inspector inspects the host" - just as a building inspector examines the structural details of a property, AWS Inspector examines the internals of your EC2 instances for weaknesses before attackers exploit them.

Topics

#AWS Inspector#host vulnerability#Prisma Cloud integration#cloud security services

Community Discussion

No community discussion yet for this question.

Full PSE-PRISMACLOUD Practice