Amazon
SCS-C03 · Question #135
A company needs the ability to identify the root cause of security findings in an AWS account. The company has enabled VPC Flow Logs, Amazon GuardDuty, and AWS CloudTrail. The company must investigate
Sign in or unlock SCS-C03 to reveal the answer and full explanation for question #135. The question stem and answer options stay visible for context.
Submitted by anjalisingh· Mar 6, 2026Incident Response
Question
A company needs the ability to identify the root cause of security findings in an AWS account. The company has enabled VPC Flow Logs, Amazon GuardDuty, and AWS CloudTrail. The company must investigate any IAM roles that are involved in the security findings and must visualize the findings. Which solution will meet these requirements?
Options
- AUse Amazon Detective to run investigations on the IAM roles and to visualize the findings.
- BUse Amazon Inspector to run investigations on the IAM roles and visualize the findings.
- CExport GuardDuty findings to Amazon S3 and analyze them with Amazon Athena.
- DEnable AWS Security Hub and use custom actions to investigate IAM roles.
Unlock SCS-C03 to see the answer
You've previewed enough free SCS-C03 questions. Unlock SCS-C03 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.
Topics
#Amazon Detective#IAM investigation#GuardDuty findings#security visualization