New Year Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Amazon Web Services AWS Certified CloudOps Engineer - Associate SOA-C03 Question # 25 Topic 3 Discussion

Amazon Web Services AWS Certified CloudOps Engineer - Associate SOA-C03 Question # 25 Topic 3 Discussion

SOA-C03 Exam Topic 3 Question 25 Discussion:
Question #: 25
Topic #: 3

A company uses AWS Organizations to manage multiple AWS accounts. A CloudOps engineer must identify all IPv4 ports open to 0.0.0.0/0 across the organization’s accounts.

Which solution will meet this requirement with the LEAST operational effort?


A.

Use the AWS CLI to print all security group rules for review.


B.

Review AWS Trusted Advisor findings in an organizational view for the Security Groups – Specific Ports Unrestricted check.


C.

Create an AWS Lambda function to gather security group rules from all accounts. Aggregate the findings in an Amazon S3 bucket.


D.

Enable Amazon Inspector in each account. Run an automated workload discovery job.


Get Premium SOA-C03 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.