AWS Certified Data Engineer Associate DEA-C01 Practice Question
In a multi-account AWS environment managed by AWS Organizations, auditors must run ad-hoc SQL queries against the last 12 months of CloudTrail management and data events from every member account. The security team wants the simplest operational approach and does not want to build ETL pipelines or custom indexes. Which solution should a data engineer implement to satisfy these requirements?
Create an organization-level CloudTrail Lake event data store in the central logging account with 12-month retention, ingest activity from all member accounts, and run compliance SQL queries directly in CloudTrail Lake.
Deliver each account's CloudTrail trail to a central S3 bucket, register the bucket in the AWS Glue Data Catalog, and use Amazon Athena to run the required queries.
Enable CloudTrail Insights in every account, stream Insight events to CloudWatch Logs in the logging account, and analyze them with CloudWatch Logs Insights.
Send CloudTrail logs from all accounts to an Amazon OpenSearch Service domain and use the OpenSearch dashboard to search the events.
CloudTrail Lake can create an organization-level event data store that automatically ingests CloudTrail events from every account in an AWS Organizations organization. Because the service optimizes collection and indexing for you, no additional pipelines or indexing layers are required, and retention can be set to the desired period (for example, 365 days). Auditors can issue SQL statements in the console or through the start-query CLI to retrieve the information they need. The alternatives rely on services that either do not aggregate events from all accounts automatically or require engineers to build and maintain delivery streams, Glue catalogs, or search clusters-adding operational overhead and complexity that the scenario explicitly wishes to avoid.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is CloudTrail Lake in AWS?
Open an interactive chat with Bash
How does AWS Organizations enable central event ingestion?
Open an interactive chat with Bash
Why is CloudTrail Lake preferred over Amazon S3 or OpenSearch for audit queries?
Open an interactive chat with Bash
AWS Certified Data Engineer Associate DEA-C01
Data Security and Governance
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99
$19.99/mo
Billed monthly, Cancel any time.
3 Month Pass
$44.99
$14.99/mo
One time purchase of $44.99, Does not auto-renew.
MOST POPULAR
Annual Pass
$119.99
$9.99/mo
One time purchase of $119.99, Does not auto-renew.
BEST DEAL
Lifetime Pass
$189.99
One time purchase, Good for life.
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .