AWS Certified Security – Specialty (SCS-C03) — Question 5

A company runs several applications on Amazon Elastic Kubernetes Service (Amazon EKS). The company needs a solution to detect any Kubernetes security risks by monitoring Amazon EKS audit logs in addition to operating system, networking, and file events. The solution must send email alerts for any identified risks to a mailing list that is associated with a security team.
Which solution will meet these requirements?

Answer options

Correct answer: C

Explanation

The correct answer is C because it utilizes Amazon GuardDuty, which specifically provides threat detection and monitoring for EKS. This solution includes the necessary components to alert the security team via SNS. Options A and B do not focus on GuardDuty, which is essential for the specified requirements, while D does not effectively address the need for real-time threat detection and alerting.