Which action should the SOC take to follow security best practices?
A manager informs the SOC that one or more RDS instances have been compromised and the SOC needs to make sure production RDS instances are NOT publicly accessible.
Which action should the SOC take to follow security best practices?
A . Enable “AWS S3 bucket is publicly accessible” policy and manually remediate each alert.
B . Enable “AWS RDS database instance is publicly accessible” policy and for each alert, check that it is a production instance, and then manually remediate.
C . Enable “AWS S3 bucket is publicly accessible” policy and add policy to an auto-remediation alert rule.
D . Enable “AWS RDS database instance is publicly accessible” policy and add policy to an auto-remediation alert rule.
Answer: D
Latest PCCSE Practice Questions with 85 Q&As
Updated Study Material | Instant Download | Detailed Answers and Explanations