Security & ComplianceQuestion 35 of 100
Which service continuously monitors for malicious activity and unauthorized behavior using account and network telemetry such as CloudTrail and VPC flow logs?
a.AWS Artifact
b.Amazon GuardDuty
c.AWS Certificate Manager
d.Amazon Cognito
Explanation
Amazon GuardDuty is a threat detection service that continuously analyzes logs such as CloudTrail, VPC flow logs, and DNS logs to identify suspicious activity. It generates findings without requiring you to deploy or manage sensors.
Practice all 100 questions free — no signup required.
Related questions on this topic
- Which AWS service provides a managed distributed denial-of-service (DDoS) protection for applications running on AWS?
- Which service helps protect web applications from common exploits such as SQL injection and cross-site scripting by filtering HTTP requests?
- Which service uses machine learning to automatically discover and classify sensitive data such as personally identifiable information stored in Amazon S3?
- Which AWS service records API calls and account activity, providing an audit trail of who did what and when?
- Which service continuously assesses your resource configurations and can evaluate them against desired settings for compliance?
- Which service provides on-demand access to AWS compliance reports and agreements such as SOC and PCI documents?
Last reviewed: · editorial process
PrepPass Editorial Team · Verified against AWS Certified Cloud Practitioner (CLF-C02) · How we review