nerdexam
Amazon

SCS-C02 · Question #450

A company runs an application on a fleet of Amazon EC2 instances behind an Application Load Balancer (ALB). A security engineer needs to provide secure access to the application without requiring the

Sign in or unlock SCS-C02 to reveal the answer and full explanation for question #450. The question stem and answer options stay visible for context.

Submitted by layla.eg· Mar 6, 2026Infrastructure Security

Question

A company runs an application on a fleet of Amazon EC2 instances behind an Application Load Balancer (ALB). A security engineer needs to provide secure access to the application without requiring the use of a VPN. Users should be able to access the application only when they meet specific security conditions, including a defined device posture. Which solution will meet these requirements?

Options

  • ACreate an AWS WAF web ACL. Configure a custom response to block traffic that does not align
  • BConfigure AWS Verified Access. Add the application by creating an endpoint for the ALB.
  • CConfigure Amazon Verified Permissions. Use a policy-based access control (PBAC) policy to
  • DConfigure Amazon Verified Permissions. Add the application by creating an endpoint for the ALB.

Unlock SCS-C02 to see the answer

You've previewed enough free SCS-C02 questions. Unlock SCS-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#AWS Verified Access#device posture#zero trust network access#ALB integration
Full SCS-C02 Practice