nerdexam
Amazon

SOA-C02 · Question #279

A company needs to view a list of security groups that are open to the internet on port 3389. What should a SysOps administrator do to meet this requirement?

The correct answer is D. Use AWS Trusted Advisor to find security groups that allow unrestricted access on port 3389. See the full explanation below for the reasoning.

Submitted by naveen.iyer· Mar 30, 2026Security and Compliance

Question

A company needs to view a list of security groups that are open to the internet on port 3389. What should a SysOps administrator do to meet this requirement?

Options

  • AConfigure Amazon GuardDuty to scan security groups and report unrestricted access on port
  • BConfigure a service control policy (SCP) to identify security groups that allow unrestricted
  • CUse AWS Identity and Access Management Access Analyzer to find any instances that have
  • DUse AWS Trusted Advisor to find security groups that allow unrestricted access on port 3389

How the community answered

(28 responses)
  • A
    4% (1)
  • C
    4% (1)
  • D
    93% (26)

Topics

#AWS Trusted Advisor#Security Groups#Network Security#Security Auditing

Community Discussion

No community discussion yet for this question.

Full SOA-C02 Practice