🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 10 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

Your team operates a fleet of Amazon EC2 instances in an Auto Scaling group behind an Application Load Balancer. CloudWatch alarms suddenly show a surge in outbound SMTP traffic from one instance, and GuardDuty flags the same instance for possible mass-mailing worm activity. To contain the threat while keeping the application available, which action should you take first?

  • Deregister the suspicious instance from the load balancer target group and apply a restrictive security group that blocks all outbound connections.

  • Enable Amazon GuardDuty across the account to gather additional threat intelligence before taking further action.

  • Use AWS Systems Manager Patch Manager to immediately push the latest operating-system patches to every instance in the Auto Scaling group.

  • Terminate the entire Auto Scaling group and redeploy the application from a clean, patched Amazon Machine Image (AMI).

ISC2 Systems Security Certified Practitioner (SSCP)
Systems and Application Security
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot