nerdexam
AmazonAmazon

SCS-C02 · Question #249

SCS-C02 Question #249: Real Exam Question with Answer & Explanation

Sign in or unlock SCS-C02 to reveal the answer and full explanation for question #249. The question stem and answer options stay visible for context.

Submitted by parkjh· Mar 6, 2026Incident Response

Question

A company has created a set of AWS Lambda functions to automate incident response steps for incidents that occur on Amazon EC2 instances. The Lambda functions need to collect relevant artifacts, such as instance ID and security group configuration. The Lambda functions must then write a summary to an Amazon S3 bucket. The company runs its workloads in a VPC that uses public subnets and private subnets. The public subnets use an internet gateway to access the internet. The private subnets use a NAT gateway to access the internet. All network traffic to Amazon S3 that is related to the incident response process must use the AWS network. This traffic must not travel across the internet. Which solution will meet these requirements?

Options

  • ADeploy the Lambda functions to a private subnet in the VPC. Configure the Lambda functions to
  • BDeploy the Lambda functions to a private subnet in the VPC. Create an S3 gateway endpoint to
  • CDeploy the S3 bucket and the Lambda functions in the same private subnet. Configure the
  • DDeploy an Amazon Simple Queue Service (Amazon SOS) queue and the Lambda functions in the

Unlock SCS-C02 to see the answer

You've previewed enough free SCS-C02 questions. Unlock SCS-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Incident Response Automation#VPC Endpoints#AWS Lambda#Private S3 Access
Full SCS-C02 PracticeBrowse All SCS-C02 Questions