Your company requires a service to monitor the state of its cloud resources and flag any deviations from established compliance guidelines. Which service should you deploy to automate this process of configuration tracking and compliance assessment?
The best solution for the given requirements is AWS Config. This service provides the functionality for tracking configurations and assessing compliance against guidelines, making it ideal for the continuous monitoring necessary for governance and compliance tasks. Incorrect options, such as Amazon CloudWatch, are more focused on performance monitoring, not compliance. Amazon GuardDuty, while a security service, is focused on threat detection and does not track compliance per se. Amazon Inspector evaluates the application's security and compliance but not in the continuous configuration monitoring sense that AWS Config offers.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What exactly can AWS Config track about my cloud resources?
Open an interactive chat with Bash
How does AWS Config assess compliance against guidelines?
Open an interactive chat with Bash
How does AWS Config differ from services like Amazon GuardDuty and Amazon Inspector?
Open an interactive chat with Bash
AWS Cloud Practitioner CLF-C02
Security and Compliance
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
IT & Cybersecurity Package Join Premium for Full Access