A company is deploying a new web application on AWS and is using Amazon Elastic Compute Cloud (EC2) instances to host its web servers. The company wants to ensure it follows security best practices. Which of the following actions is the company solely responsible for?
Installing the latest hypervisor security patches on the host system where the EC2 instances are running
Implementing disaster recovery mechanisms for the underlying EC2 service in case of a region failure
Ensuring physical security of the data centers where the EC2 instances are hosted
Configuring security groups for the EC2 instances correctly to ensure only authorized traffic can access the web servers