SCS-C02 · Question #138
SCS-C02 Question #138: Real Exam Question with Answer & Explanation
Sign in or unlock SCS-C02 to reveal the answer and full explanation for question #138. The question stem and answer options stay visible for context.
Question
A company has AWS accounts in an organization in AWS Organizations. The organization includes a dedicated security account. All AWS account activity across all member accounts must be logged and reported to the dedicated security account. The company must retain all the activity logs in a secure storage location within the dedicated security account for 2 years. No changes or deletions of the logs are allowed. Which combination of steps will meet these requirements with the LEAST operational overhead? (Choose two.)
Options
- AIn the dedicated security account, create an Amazon S3 bucket. Configure S3 Object Lock in
- BIn the dedicated security account, create an Amazon S3 bucket. Configure S3 Object Lock in
- CIn the dedicated security account, create an Amazon S3 bucket that has an S3 Lifecycle
- DCreate an AWS CloudTrail trail for the organization. Configure logs to be delivered to the logging
- ETurn on AWS CloudTrail in each account. Configure logs to be delivered to an Amazon S3 bucket
Unlock SCS-C02 to see the answer
You've previewed enough free SCS-C02 questions. Unlock SCS-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.