nerdexam
Amazon

SCS-C02 · Question #48

A company uses AWS Organizations and has production workloads across multiple AWS accounts. A security engineer needs to design a solution that will proactively monitor for suspicious behavior across

Sign in or unlock SCS-C02 to reveal the answer and full explanation for question #48. The question stem and answer options stay visible for context.

Submitted by lukas.cz· Mar 6, 2026Threat Detection and Incident Response

Question

A company uses AWS Organizations and has production workloads across multiple AWS accounts. A security engineer needs to design a solution that will proactively monitor for suspicious behavior across all the accounts that contain production workloads. The solution must automate remediation of incidents across the production accounts. The solution also must publish a notification to an Amazon Simple Notification Service (Amazon SNS) topic when a critical security finding is detected. In addition, the solution must send all security incident logs to a dedicated account. Which solution will meet these requirements?

Options

  • AActivate Amazon GuardDuty in each production account. In a dedicated logging account,
  • BActivate AWS Security Hub in each production account. In a dedicated logging account,
  • CActivate Amazon GuardDuty in each production account. In a dedicated logging account,
  • DActivate AWS Security Hub in each production account. In a dedicated logging account,

Unlock SCS-C02 to see the answer

You've previewed enough free SCS-C02 questions. Unlock SCS-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#GuardDuty multi-account#centralized logging#automated remediation#SNS alerts
Full SCS-C02 Practice