nerdexam
Amazon

SCS-C02 · Question #108

A company is evaluating its security posture. In the past, the company has observed issues with specific hosts and host header combinations that affected the company's business. The company has…

The correct answer is B. Specify Amazon CloudWatch as the destination for the access logs. Use Amazon CloudWatch. https://aws.amazon.com/blogs/mt/analyzing-aws-waf-logs-in-amazon-cloudwatch-logs/

Submitted by haru.x· Mar 6, 2026Security Logging and Monitoring

Question

A company is evaluating its security posture. In the past, the company has observed issues with specific hosts and host header combinations that affected the company's business. The company has configured AWS WAF web ACLs as an initial step to mitigate these issues. The company must create a log analysis solution for the AWS WAF web ACLs to monitor problematic activity. The company wants to process all the AWS WAF logs in a central location. The company must have the ability to filter out requests based on specific hosts. A security engineer starts to enable access logging for the AWS WAF web ACLs. What should the security engineer do next to meet these requirements with the MOST operational efficiency?

Options

  • ASpecify Amazon Redshift as the destination for the access logs. Deploy the Amazon Athena
  • BSpecify Amazon CloudWatch as the destination for the access logs. Use Amazon CloudWatch
  • CSpecify Amazon CloudWatch as the destination for the access logs. Export the CloudWatch logs
  • DSpecify Amazon CloudWatch as the destination for the access logs. Use Amazon Redshift

How the community answered

(54 responses)
  • A
    6% (3)
  • B
    78% (42)
  • C
    4% (2)
  • D
    13% (7)

Explanation

https://aws.amazon.com/blogs/mt/analyzing-aws-waf-logs-in-amazon-cloudwatch-logs/

Topics

#AWS WAF#access logging#CloudWatch Logs#log analysis

Community Discussion

No community discussion yet for this question.

Full SCS-C02 Practice