AWS Certified CloudOps Engineer Associate SOA-C03 Practice Question

Your security team enabled AWS Shield Advanced on several Application Load Balancers and CloudFront distributions. They must receive near-real-time records for every DDoS event-including the attack vector (metric dimension), protected resource ARN, and the start and end timestamps-and forward them to the company-wide SIEM that ingests data from an Amazon Kinesis Data Firehose delivery stream in a separate AWS account. Which approach meets the requirement with the least custom code and ongoing maintenance?

  • Use an EventBridge schedule to trigger an AWS Lambda function every minute. The function calls ListAttacks and DescribeAttack APIs, formats the response, and sends it to the Firehose stream in the SIEM account.

  • Subscribe an Amazon SNS topic to Shield Advanced DDoS notifications and configure an HTTPS subscription that posts the messages directly to the SIEM endpoint in the other account.

  • Enable AWS Config recording for the AWSShieldProtection resource type and stream configuration snapshots to the SIEM account.

  • Create CloudWatch alarms for the Shield Advanced metrics DDoSDetected and DDoSAttack* on each protected resource. Configure an Amazon EventBridge rule that forwards CloudWatch Alarm State Change events to an Amazon Kinesis Data Firehose delivery stream in the SIEM account.

AWS Certified CloudOps Engineer Associate SOA-C03
Networking and Content Delivery
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot