<< Prev Question Next Question >>

Question 3/35

A company's web application runs on Amazon EC2 instances behind an Application Load Balancer (ALB) in an Auto Scaling group. An AWS WAF web ACL is associated with the ALB. Instance logs are lost after reboots. The operations team suspects malicious activity targeting a specific PHP file.
Which set of actions will identify the suspect attacker's IP address for future occurrences?

LEAVE A REPLY

Your email address will not be published. Required fields are marked *

Question List (35q)
Question 1: A company must immediately disable compromised IAM users acr...
Question 2: A company has a VPC that has no internet access and has the ...
Question 3: A company's web application runs on Amazon EC2 instances beh...
Question 4: A company needs to deploy AWS CloudFormation templates that ...
Question 5: A security engineer wants to forward custom application-secu...
Question 6: A company must inventory sensitive data across all Amazon S3...
Question 7: A company is running a new workload across accounts in an or...
Question 8: A company has a web application that reads from and writes t...
Question 9: AWS Config cannot deliver configuration snapshots to Amazon ...
Question 10: A company is implementing new compliance requirements to mee...
Question 11: A company sends Apache logs from EC2 Auto Scaling instances ...
Question 12: A company is using AWS CloudTrail and Amazon CloudWatch to m...
Question 13: A security engineer discovers that a company's user password...
Question 14: A security engineer is designing a solution that will provid...
Question 15: A security engineer needs to implement a solution to identif...
Question 16: A company must capture AWS CloudTrail data events and must r...
Question 17: A security engineer needs to control access to data that is ...
Question 18: A company runs an internet-accessible application on several...
Question 19: A security administrator is setting up a new AWS account. Th...
Question 20: A company is running an application in the eu-west-1 Region....
Question 21: A company uses AWS IAM Identity Center with SAML 2.0 federat...
Question 22: A company has a single AWS account and uses an Amazon EC2 in...
Question 23: A company runs a global ecommerce website using Amazon Cloud...
Question 24: A consultant agency needs to perform a security audit for a ...
Question 25: A company is building a secure solution that relies on an AW...
Question 26: A company is attempting to conduct forensic analysis on an A...
Question 27: An AWS Lambda function was misused to alter data, and a secu...
Question 28: A company is operating an open-source software platform that...
Question 29: A company has a PHP-based web application that uses Amazon S...
Question 30: A company has an encrypted Amazon Aurora DB cluster in the u...
Question 31: A company experienced a security incident caused by a vulner...
Question 32: A company stores infrastructure and application code in web-...
Question 33: A company's data scientists use Amazon SageMaker with datase...
Question 34: A company runs an application on an Amazon EC2 instance. The...
Question 35: A company is using AWS Organizations with nested OUs to mana...