nerdexam
Amazon

SCS-C02 · Question #409

Your company manages thousands of EC2 Instances. There is a mandate to ensure that all servers don't have any critical security flaws. Which of the following can be done to ensure this? Choose 2…

The correct answer is B. Use AWS inspector to ensure that the servers have no critical flaws. D. Use AWS SSM to patch the servers. The AWS Documentation mentions the following on AWS Inspector Amazon Inspector is an automated security assessment service that helps improve the security and compliance of applications deployed on AWS. Amazon Inspector automatically assesses applications for vulnerabilities or…

Submitted by khalil_dz· Mar 6, 2026Infrastructure Security

Question

Your company manages thousands of EC2 Instances. There is a mandate to ensure that all servers don't have any critical security flaws. Which of the following can be done to ensure this? Choose 2 answers from the options given below.

Options

  • AUse AWS Config to ensure that the servers have no critical flaws.
  • BUse AWS inspector to ensure that the servers have no critical flaws.
  • CUse AWS inspector to patch the servers
  • DUse AWS SSM to patch the servers

How the community answered

(68 responses)
  • A
    4% (3)
  • B
    82% (56)
  • C
    13% (9)

Explanation

The AWS Documentation mentions the following on AWS Inspector Amazon Inspector is an automated security assessment service that helps improve the security and compliance of applications deployed on AWS. Amazon Inspector automatically assesses applications for vulnerabilities or deviations from best practices. After performing an assessment, Amazon Inspector produces a detailed list of security findings prioritized by level of severity. These findings can be reviewed directly or as part of detailed assessment reports which are available via the Amazon Inspector console or API. Option A is invalid because the AWS Config service is not used to check the vulnerabilities on Option C is invalid because the AWS Inspector service is not used to patch servers

Topics

#Amazon Inspector#AWS SSM patch manager#vulnerability scanning#EC2 security

Community Discussion

No community discussion yet for this question.

Full SCS-C02 Practice