Home Quizzes Quiz Detail
Practice Quiz

AWS Security Specialty Practice Questions - AWS Certified Security - Specialty (SCS-C02) Exam

100 questions 5.0 rating Mobile friendly
$69.00

Unlock the full practice quiz

Get complete access to the questions, explanations and printable quiz resources.

Full access: unlock all quiz questions and explanations.
Printable review: access the full quiz PDF with correct answers after purchase.

About this Exam

Prepare with the AWS Security Specialty Practice Questions - AWS Certified Security - Specialty (SCS-C02) Exam practice quiz. This question bank includes 100 questions covering security, needs, team, service, and company. Use it to review important concepts, identify knowledge gaps, and build confidence for the related exam, course, or assessment.

Sample Questions

Question 1
A security team needs to detect potentially malicious activity in their AWS environment, including compromised EC2 instances and unauthorized API calls. Which AWS service should they enable?
AWS Config
Amazon GuardDuty
AWS CloudTrail
Amazon Inspector
Question 2
GuardDuty detected suspicious API calls from a compromised IAM user credential. The security team wants to automatically block access from the source IP and revoke the IAM user active sessions. What is the recommended approach?
Manually delete the IAM user from the console
Use Amazon EventBridge to trigger a Lambda function that adds the IP to an NACL deny rule and revokes active sessions
Disable the IAM user access keys in the IAM console
Create a support case with AWS to block the IP
Question 3
A company uses GuardDuty to monitor their multi-account AWS environment. They need to aggregate all GuardDuty findings to a central security account for analysis. Which configuration should they use?
Enable GuardDuty in each account and configure S3 bucket replication
Use GuardDuty administrator account with member accounts
Create a CloudWatch Logs subscription filter in each account
Enable GuardDuty only in the central security account
Question 4
Which data sources does GuardDuty use by default when enabled for an AWS account?
VPC Flow Logs, CloudTrail management events, and Route 53 DNS query logs
VPC Flow Logs only
CloudTrail data events and S3 access logs
GuardDuty requires manual configuration of all data sources
Question 5
A security team needs a centralized dashboard to view security findings from multiple AWS security services including GuardDuty, Inspector, and Macie, as well as check compliance against security standards. Which service should they use?
Amazon CloudWatch
AWS Security Hub
AWS Config
Amazon OpenSearch Service

Ready to test your knowledge?

Buy Now to Access

Additional Information

AWS Security Specialty Practice Questions - AWS Certified Security - Specialty (SCS-C02) Exam

This practice set contains 100 questions from the matching question bank and focuses on security, needs, team, service, and company. Work through each question carefully, review the provided solutions, and revisit topics that need more study before your next attempt.

This is an independent study resource intended for practice and review; it is not an official examination or an endorsement by any organization named in the title.

Frequently Asked Questions

This quiz contains a total of 100 practice questions carefully selected to test your knowledge on this subject.
Yes, you will have exactly 0 minutes to complete the exam. A countdown timer will be visible once you start.
Yes, you can retake this practice test as many times as you need. The questions and options may be randomized on subsequent attempts to ensure comprehensive learning.

Reviews

5.0

Based on 0 reviews

Leave a Review

No reviews yet. Be the first to review!