A managed service that makes it easy for you to create AWS KMS
and control the encryption keys used to encrypt your data.
A paid service that provides detailed attack diagnostics AWS Shield Advanced
and the ability to detect and mitigate sophisticated DDoS
attacks.
A service that provides intelligent threat detection for your Amazon GuardDuty
AWS infrastructure and resources. It identifies threats by
continuously monitoring the network activity and account
behavior within your AWS environment.
A service that collects log data from your AWS resources Amazon Detective
and uses machine learning, statistical analysis, and graph
theory to build a linked set of data that enables you to
easily conduct faster and more efficient security
investigations.
A CMK that is created and managed by AWS services AWS Managed CMK
integrated with KMS.
A service that provides a comprehensive view of your AWS Security Hub
security posture within AWS as well as your compliance
with security industry standards and best practices.
A process that converts highly sensitive data such as credit Tokenization
card numbers or health care data into a token
Which Amazon EC2 feature allows customers to run a Nitro Enclaves
tokenization process that securely converts highly
sensitive data such as credit card numbers or health care
data?
Which CloudTrail feature can you enable to protect your CloudTrail log file validation
CloudTrail Logs from being tampered and from
unauthorized access?
A feature that identifies unintended network access to your Network Access Analyzer
resources on AWS
A service that helps you to continuously audit your AWS AWS Audit Manager
usage to simplify how you assess risk and compliance with
regulations and industry standards.
Which service can you use to automate the detection of Amazon Inspector
common vulnerabilities and exposures (CVE), software
vulnerabilities and unintended network exposure by
continually scanning your Amazon EC2 instances, AWS
Lambda functions, and container workloads?
Generates IAM policies based on access activity in your IAM Access Analyzer
AWS CloudTrail logs. Identifying resources shared with an
external entity.
Helps you detect and receive alerts on abnormal or AWS Cost Anomaly Detection
sudden spending increases in your AWS account.
, AWS Certified Security Specialty SCS-C03 Test
An SCP named ________ is attached by default to every FullAWSAccess
organization root, OU, and account in AWS Organizations
which allows all actions and all services.
A service that allows you to securely create or connect AWS IAM Identity Center
your workforce identities and manage their access
centrally across AWS accounts and application
A feature in Amazon S3 that allows you to store objects S3 Object Lock
using a write-once-read-many (WORM) model.
A type of S3 Object Lock where the lock has a fixed period Retention Period
of time.
A type of S3 Object Lock where the lock remains in place Legal Hold
until you explicitly remove it.
A CloudFront feature that allows customers to easily Origin Access Control
secure their S3 origins by permitting only designated
CloudFront distributions to access their S3 buckets using
short-term credentials.
It is a unified tool to manage your AWS services. With just AWS Command Line Interface
one tool to download and configure, you can control
multiple AWS services from the command line and
automate them through scripts.
It is a set of platform-specific building tools for developers. AWS Software Development Kits (SDKs)
You require components like debuggers, compilers, and
libraries to create code that runs on a specific platform,
operating system, or programming language.
It is a web application that comprises and refers to a broad AWS Management Console
collection of service consoles for managing AWS
resources.
An AWS service that helps you enable operational and risk AWS CloudTrail
auditing, governance, and compliance of your AWS
account.
A service that monitors applications, responds to Amazon CloudWatch
performance changes, optimizes resource use, and
provides insights into operational health.
Provides a detailed view of the configuration of AWS AWS Config
resources in your AWS account.
An account management service that enables you to AWS Organizations
consolidate multiple AWS accounts into an organization
that you create and centrally manage.
The operations hub for your AWS applications and AWS Systems Manager
resources and a secure end-to-end management solution
for hybrid and multicloud environments that enables
secure operations at scale.