Amazon
SCS-C02 · Question #392
SCS-C02 Question #392: Real Exam Question with Answer & Explanation
Sign in or unlock SCS-C02 to reveal the answer and full explanation for question #392. The question stem and answer options stay visible for context.
Submitted by ahmad_uae· Mar 6, 2026Threat Detection and Incident Response
Question
An IT department currently has a Java web application deployed on Apache Tomcat running on Amazon EC2 instances. All traffic to the EC2 instances is sent through an internet-facing Application Load Balancer (ALB). The Security team has noticed during the past two days thousands of unusual read requests coming from hundreds of IP addresses. This is causing the Tomcat server to run out of threads and reject new connections Which the SIMPLEST change that would address this server issue?
Options
- ACreate an Amazon CloudFront distribution and configure the ALB as the origin
- BBlock the malicious IPs with a network access list (NACL).
- CCreate an AWS Web Application Firewall (WAF). and attach it to the ALB
- DMap the application domain name to use Route 53
Unlock SCS-C02 to see the answer
You've previewed enough free SCS-C02 questions. Unlock SCS-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#DDoS Mitigation#Application Layer Attack#CloudFront#Caching