New Year Sale 2026! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Amazon SCS-C02 Exam - Topic 8 Question 33 Discussion

Actual exam question for Amazon's SCS-C02 exam
Question #: 33
Topic #: 8
[All SCS-C02 Questions]

A company needs to create a centralized solution to analyze log files. The company uses an organization in AWS Organizations to manage its AWS accounts.

The solution must aggregate and normalize events from the following sources:

* The entire organization in Organizations

* All AWS Marketplace offerings that run in the company's AWS accounts

* The company's on-premises systems

Which solution will meet these requirements?

Show Suggested Answer Hide Answer
Suggested Answer: C

Amazon Security Lake, when configured with a delegated administrator account in AWS Organizations, provides a centralized solution for aggregating, organizing, and prioritizing security data from multiple sources including AWS services, AWS Marketplace solutions, and on-premises systems. By enabling Security Lake for the organization and adding the necessary AWS accounts, the solution centralizes the collection and analysis of log data. This setup leverages the organization's structure to streamline log aggregation and normalization, making it an efficient solution for the specified requirements. The use of Amazon Athena for querying the log data further enhances the ability to analyze and respond to security findings across the organization.


Contribute your Thoughts:

0/2000 characters
Fernanda
3 months ago
Wait, can Security Lake really work across on-prem systems too?
upvoted 0 times
...
Lemuel
3 months ago
D looks like a good choice for centralized management.
upvoted 0 times
...
Glory
3 months ago
C is interesting, but can it really handle all those sources?
upvoted 0 times
...
Nadine
4 months ago
I think B is better for real-time monitoring!
upvoted 0 times
...
Adrianna
4 months ago
Option A seems solid for log aggregation.
upvoted 0 times
...
Naomi
4 months ago
I think option D could work too, especially with the SCP for log delivery to S3. But I’m not entirely clear on how OpenSearch would handle querying the logs from S3.
upvoted 0 times
...
Martin
4 months ago
I practiced a similar question where we had to aggregate logs, and I think option B might be too limited since it focuses on CloudWatch Logs. I wonder if it can handle all the sources listed.
upvoted 0 times
...
Kattie
4 months ago
I feel like option C could be a good fit since it mentions Security Lake, which I recall is designed for aggregating logs across accounts. But I’m a bit hazy on the specifics of how it integrates with on-premises systems.
upvoted 0 times
...
Jade
5 months ago
I remember studying about centralized logging solutions, and I think option A makes sense with using S3 and Athena for querying. But I'm not sure if it covers all the sources mentioned.
upvoted 0 times
...
Jules
5 months ago
Alright, I got this. The key is to set up a centralized S3 bucket and configure all the different log sources to send their data there. Then use Athena and OpenSearch to query and analyze the logs. Shouldn't be too hard, just need to make sure I get all the configuration steps right.
upvoted 0 times
...
Nell
5 months ago
Hmm, this is a tricky one. I'm not super familiar with all the AWS services mentioned, so I'll need to do some research on things like Amazon Security Lake and how it integrates with the other AWS tools. Gonna have to think this through step-by-step.
upvoted 0 times
...
Helga
5 months ago
This looks like a pretty straightforward question, I think I can handle this. I'll need to carefully review the requirements and make sure I understand all the different log sources they need to aggregate.
upvoted 0 times
...
Wynell
5 months ago
Okay, let's see here. They want a centralized solution to analyze logs from the entire AWS organization, AWS Marketplace offerings, and on-premises systems. That's a lot of different sources to pull together. I think option C with the Amazon Security Lake might be the way to go, but I'll need to double-check the details.
upvoted 0 times
...
Jerry
5 months ago
I was struggling with the question about root certificates in the phone trust store; it sounds familiar, but I can't quite place it.
upvoted 0 times
...
Colton
1 year ago
I'm not sure, I think option D could also work well by configuring all member accounts to deliver log files to a centralized S3 bucket.
upvoted 0 times
...
Chuck
1 year ago
Wait, we're supposed to analyze log files? I thought this was a baking exam. Hmm, let me think... I'll go with Option B, because who doesn't love a good 'CloudWatch Logs' cake?
upvoted 0 times
Aretha
1 year ago
I'm with you on Option B! Let's bake that CloudWatch Logs cake together.
upvoted 0 times
...
Johnetta
1 year ago
I think Option A might be more practical for analyzing log files. But I do love the idea of a CloudWatch Logs cake!
upvoted 0 times
...
Vilma
1 year ago
Option B sounds delicious! I'm all in for that CloudWatch Logs cake.
upvoted 0 times
...
...
Anna
1 year ago
I agree with Kristofer. Option A seems to be the most comprehensive solution for analyzing log files.
upvoted 0 times
...
Kristofer
1 year ago
I think option A is the best solution because it enables VPC Flow Logs, CloudTrail, and Route 53 logs in all accounts.
upvoted 0 times
...
Cruz
1 year ago
Whoa, this question is like a log lover's dream! I'm torn between Options C and D, but I think I'll go with C since it seems to have a more dedicated log management service in the form of Security Lake.
upvoted 0 times
...
Novella
1 year ago
I like how the question covers different aspects of log management, like centralization, normalization, and querying. Option B looks like a good choice, but I'm not sure if it can handle the on-premises systems requirement.
upvoted 0 times
...
William
1 year ago
This question is a classic case of 'read the question carefully'. The solution needs to aggregate and normalize logs from multiple sources, including the entire AWS Organizations and on-premises systems. Option C seems to be the most comprehensive solution.
upvoted 0 times
Jennie
1 year ago
Using Amazon Athena to query the log data makes it easier to analyze the logs from different sources.
upvoted 0 times
...
Meghann
1 year ago
Enabling and configuring Security Lake for the organization will help in aggregating and normalizing the log data.
upvoted 0 times
...
Gaston
1 year ago
I agree, setting up a delegated Amazon Security Lake administrator account in Organizations is a good approach.
upvoted 0 times
...
Ryann
1 year ago
Option C seems like the best choice as it covers all the required sources.
upvoted 0 times
...
...

Save Cancel