🔥 3-day streak
Cisco CCNP Security SCOR (350-701)11 / 146
Question 11 of 146
A security engineer at a retail company must continuously detect when engineers modify AWS security group rules or S3 bucket ACLs away from the approved baseline, and automatically flag those changes as non-compliant. The team already collects VPC flow logs and API activity separately. Which native cloud capability should the engineer implement to satisfy this specific requirement?
Reviewed for accuracy · Report an issueNext question