AWS Certified Cloud Practitioner · Free Practice Question Easy

Question 1

Which AWS service is used to track, record, and audit configuration changes made to AWS resources?
  • A AWS Config
  • B Amazon Inspector
  • C AWS IAM
  • D AWS Shield
Reveal correct answer

Correct answer: A

Explanation

AWS Config is a service that enables you to assess, audit, and evaluate the configurations of your AWS resources. It continuously monitors and records your AWS resource configurations and allows you to automate the evaluation of recorded configurations against desired configurations. With AWS Config, you can track configuration changes, review historical configurations, and get notifications about changes to help ensure compliance and security.

A. The service is designed to track, record, and audit configuration changes made to AWS resources, providing a detailed view of the configuration history and compliance status of resources.

B. Amazon Inspector is not the correct answer because it is a security assessment service that helps improve the security and compliance of applications deployed on AWS by automatically assessing applications for vulnerabilities or deviations from best practices. It does not track, record, or audit configuration changes made to AWS resources.

C. The option is incorrect because AWS IAM (Identity and Access Management) is used for managing access to AWS services and resources securely, not for tracking or auditing configuration changes.

D. AWS Shield is not used to track, record, and audit configuration changes made to AWS resources. It is a managed Distributed Denial of Service (DDoS) protection service that safeguards applications running on AWS.

Discussion

Think the marked answer is wrong, or have a better explanation? Share it below — comments appear after review.

You must be logged in to post a comment.

Preparing For

Your Certification?

255+ certifications
Detailed explanations
Free PDF samples

Has All The Questions You Need