nerdexam
Amazon

SCS-C02 · Question #192

A security administrator has enabled AWS Security Hub for all the AWS accounts in an organization in AWS Organizations. The security team wants near-real-time response and remediation for deployed AWS

Sign in or unlock SCS-C02 to reveal the answer and full explanation for question #192. The question stem and answer options stay visible for context.

Submitted by chen.hong· Mar 6, 2026Threat Detection and Incident Response

Question

A security administrator has enabled AWS Security Hub for all the AWS accounts in an organization in AWS Organizations. The security team wants near-real-time response and remediation for deployed AWS resources that do not meet security standards. All changes must be centrally logged for auditing purposes. The organization has reached the quotas for the number of SCPs attached to an OU and SCP document size. The team wants to avoid making any changes to any of the SCPs. The solution must maximize scalability and cost-effectiveness. Which combination of actions should the security administrator take to meet these requirements? (Choose three.)

Options

  • ACreate an AWS Config custom rule to detect configuration changes to AWS resources. Create an
  • BUse AWS Systems Manager Change Manager to track configuration changes to AWS resources.
  • CCreate a Security Hub custom action to reference in an Amazon EventBridge event rule in the
  • DCreate an Amazon EventBridge event rule to Invoke an AWS Lambda function that will take
  • ECreate an Amazon EventBridge event rule to invoke an AWS Lambda function that will evaluate
  • FCreate an Amazon EventBridge event rule to invoke an AWS Lambda function on a schedule to

Unlock SCS-C02 to see the answer

You've previewed enough free SCS-C02 questions. Unlock SCS-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Automated Remediation#AWS Config#Event-driven Security#Security Logging and Auditing
Full SCS-C02 Practice