A company uses a single flaws account to test applications on Amazon EC2 instances. The company has turned on flaws Config in the flaws account and has activated the restricted-ssh flaws Config managed rule. The company needs an automated monitoring solution that will provide a customized notification in real time if any security group in the account is not compliant with the restricted-ssh rule. The customized notification must contain the name and ID of the noncompliant security group. A DevOps engineer creates an Amazon Simple Notification Service (Amazon SNS) topic in the account and subscribes the appropriate personnel to the topic. What should the DevOps engineer do next to meet these requirements? A. Create an Amazon EventBridge (Amazon CloudWatch Events) rule that matches an flaws Config evaluation result of NON_COMPLIANT for the restricted-ssh rule. Configure an input transformer for the EventBridge (CloudWatch Events) rule. Configure the EventBridge (CloudWatch Events) rule to publish a notification to the SNS topic. B. Configure flaws Config to send all evaluation results for the restricted-ssh rule to the SNS topic. Configure a filter policy on the SNS topic to send only notifications that contain the text of NON_COMPLIANT in the notification to subscribers. C. Create an Amazon EventBridge (Amazon CloudWatch Events) rule that matches an flaws Config evaluation result of NON_COMPLIANT for the restricted-ssh rule. Configure the EventBridge (CloudWatch Events) rule to invoke flaws Systems Manager Run Command on the SNS topic to customize a notification and to publish the notification to the SNS topic. D. Create an Amazon EventBridge (Amazon CloudWatch Events) rule that matches all flaws Config evaluation results of NON_COMPLIANT. Configure an input transformer for the restricted-ssh rule. Configure the EventBridge (CloudWatch Events) rule to publish a notification to the SNS topic. Correct Answer: D This question is in DOP-C01 exam For getting AWS DevOps Engineer - Professional Certificate
Please login or Register to submit your answer