🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 11 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

Your organization uses the new Amazon Inspector to continuously scan Amazon EC2 instances and container images. Management needs a vulnerability-management reporting solution that (1) notifies DevOps engineers and the compliance manager within one hour whenever a critical finding is generated, (2) includes AWS-provided remediation guidance in the notification, and (3) preserves every finding as a tamper-evident historical record for future audits with minimal ongoing administration.

Which design best satisfies these requirements in alignment with AWS and vulnerability-management best practices?

  • Stream Amazon VPC Flow Logs to Amazon CloudWatch Logs, forward them to Splunk through a subscription filter, and generate vulnerability reports on demand.

  • Schedule a weekly export of Amazon Inspector findings to a CSV file, copy it to a local workstation, and e-mail it manually to stakeholders.

  • Configure an Amazon EventBridge rule for CRITICAL Amazon Inspector findings that invokes an AWS Lambda function; the function appends Inspector remediation guidance, publishes the message to an Amazon SNS topic subscribed by DevOps and compliance, and writes the full finding JSON to a versioned, private Amazon S3 bucket.

  • Enable Amazon GuardDuty and rely on its monthly summary e-mail to inform teams about any high-severity security issues discovered in the environment.

ISC2 Systems Security Certified Practitioner (SSCP)
Risk Identification, Monitoring and Analysis
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot