SCS-C02 · Question #186
A company needs to create a centralized solution to analyze log files. The company uses an organization in AWS Organizations to manage its AWS accounts. The solution must aggregate and normalize…
The correct answer is C. Set up a delegated Amazon Security Lake administrator account in Organizations. Enable and. Amazon Security Lake automatically centralizes security data from AWS environments, SaaS providers, on premises, and cloud sources into a purpose-built data lake stored in your account. With OCSF support, the service normalizes and combines security data from AWS and a broad…
Question
A company needs to create a centralized solution to analyze log files. The company uses an organization in AWS Organizations to manage its AWS accounts. The solution must aggregate and normalize events from the following sources:
- The entire organization in Organizations
- All AWS Marketplace offerings that run in the company's AWS accounts
- The company's on-premises systems
Which solution will meet these requirements?
Options
- AConfigure a centralized Amazon S3 bucket for the logs. Enable VPC Flow Logs, AWS CloudTrail.
- BConfigure log streams in Amazon CloudWatch Logs for the sources that need monitoring Create
- CSet up a delegated Amazon Security Lake administrator account in Organizations. Enable and
- DApply an SCP to configure all member accounts and services to deliver log files to a centralized
How the community answered
(16 responses)- A19% (3)
- B6% (1)
- C69% (11)
- D6% (1)
Explanation
Amazon Security Lake automatically centralizes security data from AWS environments, SaaS providers, on premises, and cloud sources into a purpose-built data lake stored in your account. With OCSF support, the service normalizes and combines security data from AWS and a broad range of enterprise security data sources. https://aws.amazon.com/security-lake/
Topics
Community Discussion
No community discussion yet for this question.