nerdexam
AmazonAmazon

SAA-C03 · Question #518

SAA-C03 Question #518: Real Exam Question with Answer & Explanation

Sign in or unlock SAA-C03 to reveal the answer and full explanation for question #518. The question stem and answer options stay visible for context.

Submitted by skyler.x· Mar 4, 2026Design Secure Architectures

Question

A developer creates a web application that runs on Amazon EC2 instances behind an Application Load Balancer (ALB). The instances are in an Auto Scaling group. The developer reviews the deployment and notices some suspicious traffic to the application. The traffic is malicious and is coming from a single public IP address. A solutions architect must block the public IP address. Which solution will meet this requirement?

Options

  • ACreate a security group rule to deny all inbound traffic from the suspicious IP address. Associate
  • BImplement Amazon Detective to monitor traffic and to block malicious activity from the internet.
  • CImplement AWS Resource Access Manager (AWS RAM) to manage traffic rules and to block
  • DAdd the malicious IP address to an IP set in AWS WAF. Create a web ACL. Include an IP set rule

Unlock SAA-C03 to see the answer

You've previewed enough free SAA-C03 questions. Unlock SAA-C03 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full SAA-C03 PracticeBrowse All SAA-C03 Questions