AWS Certified Solutions Architect Professional SAP-C02 Practice Question

Your company's AWS environment consists of 15 AWS accounts that are organized with AWS Organizations. Workloads are deployed in seven commercial AWS Regions. A dedicated security account in the us-east-1 Region has been configured as the delegated administrator for AWS Security Hub. The security architects must give analysts a single place to search and investigate the complete set of Security Hub findings that originate from every account and Region-both now and as the company opts in to additional AWS Regions in the future. The solution must involve the least operational effort and must not require building or maintaining custom data-replication pipelines.

Which action will meet these requirements?

  • In each workload Region, create an Amazon EventBridge rule that forwards Security Hub findings to an Amazon SQS queue in us-east-1, then process the queue with a custom application.

  • Enable AWS Security Hub cross-Region finding aggregation in the delegated administrator account and choose the ALL_REGIONS linking mode so that findings from all current and future Regions are automatically replicated to us-east-1.

  • Enable Amazon Detective in us-east-1 and configure it to pull Security Hub findings from the other six Regions.

  • In the delegated administrator account, create an AWS Config configuration aggregator that sources from all accounts and Regions, and query the aggregator for Security Hub findings.

AWS Certified Solutions Architect Professional SAP-C02
Design for New Solutions
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot