AWS Certified Solutions Architect Professional SAP-C02 Practice Question

A company uses AWS Organizations with several hundred AWS accounts. A central security team operates from a dedicated "Security" account and must receive real-time email alerts whenever any account in the organization:

  • turns off AWS CloudTrail logging,
  • changes an Amazon S3 bucket policy, or
  • makes an API call with the root user.

The solution must be centralized, highly scalable, and guarantee that no matching events are lost even if downstream processing is temporarily unavailable.

Which combination of AWS services and configurations provides the MOST efficient and scalable solution?

  • Deploy a scheduled AWS Lambda function in the Security account that iterates through all member accounts, assumes a role in each, queries CloudTrail Event History for the critical events, and sends findings to an Amazon SNS topic.

  • Enable an organization trail and create a single EventBridge rule in the management account that filters the critical events and forwards them to a custom event bus in the Security account. In the Security account, forward the events to an Amazon SNS topic.

  • Enable an organization trail. In every member account, create an EventBridge rule (distributed by AWS CloudFormation StackSets) that matches the critical events and forwards them to a custom event bus in the Security account. In the Security account, add a rule that sends the events to an Amazon SNS topic for email notification.

  • Enable an organization trail that delivers logs to a central Amazon S3 bucket. Configure S3 event notifications to trigger a Lambda function in the Security account that scans each log file for the critical events and publishes messages to an Amazon SNS topic.

AWS Certified Solutions Architect Professional SAP-C02
Design Solutions for Organizational Complexity
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot