nerdexam
Amazon

SCS-C02 · Question #42

A company is using Amazon Elastic Container Service (Amazon ECS) to run its container-based application on AWS. The company needs to ensure that the container images contain no severe…

The correct answer is C. Pull images from the public container registry. Publish the images to Amazon Elastic Container. https://aws.amazon.com/premiumsupport/knowledge-center/secondary-account-access-ecr/

Submitted by jakub_pl· Mar 6, 2026Infrastructure Security

Question

A company is using Amazon Elastic Container Service (Amazon ECS) to run its container-based application on AWS. The company needs to ensure that the container images contain no severe vulnerabilities. The company also must ensure that only specific IAM roles and specific AWS accounts can access the container images. Which solution will meet these requirements with the LEAST management overhead?

Options

  • APull images from the public container registry. Publish the images to Amazon Elastic Container
  • BPull images from the public container registry. Publish the images to a private container registry
  • CPull images from the public container registry. Publish the images to Amazon Elastic Container
  • DPull images from the public container registry. Publish the images to AWS CodeArtifact

How the community answered

(51 responses)
  • A
    4% (2)
  • B
    10% (5)
  • C
    80% (41)
  • D
    6% (3)

Explanation

https://aws.amazon.com/premiumsupport/knowledge-center/secondary-account-access-ecr/

Topics

#Amazon ECR#container vulnerability scanning#image access control#ECS security

Community Discussion

No community discussion yet for this question.

Full SCS-C02 Practice