AWS Certified Security – Specialty (SCS-C03) — Question 16

A company uses Amazon EC2 instances to host frontend services behind an Application Load Balancer. Amazon Elastic Block Store (Amazon EBS) volumes are attached to the EC2 instances. The company uses Amazon S3 buckets to store large files for images and music.
The company has implemented a security architecture on AWS to prevent, identify, and isolate potential ransomware attacks. The company now wants to further reduce risk.
A security engineer must develop a disaster recovery solution that can recover to normal operations if an attacker bypasses preventive and detective controls. The solution must meet an RPO of 1 hour.
Which solution will meet these requirements?

Answer options

Correct answer: A

Explanation

Option A is correct because it ensures that backups of both EC2 instances and S3 buckets are created every hour, meeting the RPO requirement of 1 hour. The other options either do not meet the RPO requirement, such as B and D with daily and 4-hour snapshots, or focus on log management and automated responses without addressing the backup frequency necessary for recovery, as seen in option C.