A company has several accounts between different teams and wants to increase its auditing and compliance capabilities. The accounts are managed through flaws Organizations. Management wants to provide the security team with secure access to the account logs while also restricting the possibility for the logs to be modified. How can a SysOps administrator achieve this is with the LEAST amount of operational overhead?

QuestionsCategory: SOA-C01A company has several accounts between different teams and wants to increase its auditing and compliance capabilities. The accounts are managed through flaws Organizations. Management wants to provide the security team with secure access to the account logs while also restricting the possibility for the logs to be modified. How can a SysOps administrator achieve this is with the LEAST amount of operational overhead?
Admin Staff asked 7 months ago
A company has several accounts between different teams and wants to increase its auditing and compliance capabilities. The accounts are managed through
flaws Organizations. Management wants to provide the security team with secure access to the account logs while also restricting the possibility for the logs to be modified.
How can a SysOps administrator achieve this is with the LEAST amount of operational overhead?
A. Store flaws CloudTrail logs in Amazon S3 in each account. Create a new account to store compliance data and replicate the objects into the newly created account. B. Store flaws CloudTrail logs in Amazon S3 in each account. Create an IAM user with read-only access to the CloudTrail logs. C. From the master account, create an organization trail using flaws CloudTrail and apply it to all Regions. Use IAM roles to restrict access. D. Use an flaws CloudFormation stack set to create an flaws CloudTrail trail in every account and restrict permissions to modify the logs. Correct Answer: C This question is in SOA-C01 AWS Certified SysOps Administrator – Associate Exam For getting AWS Certified SysOps Administrator – Associate Certificate

Disclaimers:
The website is not related to, affiliated with, endorsed or authorized by Amazon.
Trademarks, certification & product names are used for reference only and belong to Amazon.
The website does not contain actual questions and answers from Amazon's Certification Exam.
Question Tags:

Next Post

Recommended

Welcome Back!

Login to your account below

Create New Account!

Fill the forms below to register

Retrieve your password

Please enter your username or email address to reset your password.