nerdexam
Amazon

SCS-C02 · Question #61

A company hosts a web application on an Apache web server. The application runs on Amazon EC2 instances that are in an Auto Scaling group. The company configured the EC2 instances to send the Apache w

Sign in or unlock SCS-C02 to reveal the answer and full explanation for question #61. The question stem and answer options stay visible for context.

Submitted by haru.x· Mar 6, 2026Security Logging and Monitoring

Question

A company hosts a web application on an Apache web server. The application runs on Amazon EC2 instances that are in an Auto Scaling group. The company configured the EC2 instances to send the Apache web server logs to an Amazon CloudWatch Logs group that the company has configured to expire after 1 year. Recently, the company discovered in the Apache web server logs that a specific IP address is sending suspicious requests to the web application. A security engineer wants to analyze the past week of Apache web server logs to determine how many requests that the IP address sent and the corresponding URLs that the IP address requested. What should the security engineer do to meet these requirements with the LEAST effort?

Options

  • AExport the CloudWatch Logs group data to Amazon S3. Use Amazon Macie to query the logs for
  • BConfigure a CloudWatch Logs subscription to stream the log group to an Amazon OpenSearch
  • CUse CloudWatch Logs Insights and a custom query syntax to analyze the CloudWatch logs for
  • DExport the CloudWatch Logs group data to Amazon S3. Use AWS Glue to crawl the S3 bucket for

Unlock SCS-C02 to see the answer

You've previewed enough free SCS-C02 questions. Unlock SCS-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#CloudWatch Logs Insights#log analysis#Apache web server logs#IP request analysis
Full SCS-C02 Practice