nerdexam
AmazonAmazon

SCS-C02 · Question #468

SCS-C02 Question #468: Real Exam Question with Answer & Explanation

Sign in or unlock SCS-C02 to reveal the answer and full explanation for question #468. The question stem and answer options stay visible for context.

Submitted by akirajp· Mar 6, 2026Threat Detection and Incident Response

Question

A company runs workloads that are spread across hundreds of Amazon EC2 instances. During a recent security incident, an EC2 instance was compromised and ran malware code until the company manually terminated the instance. The company is now using Amazon GuardDuty to detect malware on EC2 instances. A security engineer needs to implement a solution that automates a response when GuardDuty determines that an instance is infected. The solution must mitigate the incident and must comply with the AWS Well- Architected Framework guidance for incident response. Which solution will meet these requirements?

Options

  • AConfigure AWS Systems Manager Run Command to run when a GuardDuty scan determines that
  • BCreate an AWS Lambda function that runs when a GuardDuty scan determines that an instance
  • CCreate an AWS Lambda function that runs when a GuardDuty scan determines that an instance
  • DDefine a separate VPC to isolate EC2 instances. Define a security group that does not allow any

Unlock SCS-C02 to see the answer

You've previewed enough free SCS-C02 questions. Unlock SCS-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#GuardDuty#Automated Incident Response#Lambda#EC2 Security
Full SCS-C02 PracticeBrowse All SCS-C02 Questions