nerdexam
Amazon

SCS-C02 · Question #255

A company is running its application on AWS Malicious users exploited a recent promotion event and created many fake accounts The application currently uses Amazon CloudFront in front of an Amazon API

Sign in or unlock SCS-C02 to reveal the answer and full explanation for question #255. The question stem and answer options stay visible for context.

Submitted by jakub_pl· Mar 6, 2026Infrastructure Security

Question

A company is running its application on AWS Malicious users exploited a recent promotion event and created many fake accounts The application currently uses Amazon CloudFront in front of an Amazon API Gateway API. AWS Lambda functions serve the different API endpoints. The GET registration endpoint is behind the path of /store/registration. The URI for submission of the new account details is at /store/newaccount. A security engineer needs to design a solution that prevents similar exploitations for future promotion events. Which combination of steps will meet these requirements? (Choose two.)

Options

  • ACreate an AWS WAF web ACL. Add the AWSManagedRulesACFPRuleSet rule group to the web
  • BCreate an AWS WAF web ACL. Add a rate limit rule to the web ACL. Include a
  • CSpecify /store/registration as the registration page path Specify /store/newaccount as the account
  • DEnable AWS Shield Advanced for the account that hosts the CloudFront distribution Configure a
  • EEnable Amazon GuardOuty for the account that hosts the CloudFront distribution. Enable

Unlock SCS-C02 to see the answer

You've previewed enough free SCS-C02 questions. Unlock SCS-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#AWS WAF#ACFP rule group#rate limiting#account fraud prevention
Full SCS-C02 Practice