Multiple Choice
Which of the following minimizes the potential attack surface for applications?
A) Use security groups to provide stateful firewalls for Amazon EC2 instances at the hypervisor level.
B) Use network ACLs to provide stateful firewalls at the VPC level to prevent access to any specific AWS resource.
C) Use AWS Direct Connect for secure trusted connections between EC2 instances within private subnets.
D) Design network security in a single layer within the perimeter network (also known as DMZ, demilitarized zone, and screened subnet) to facilitate quicker responses to threats.
Correct Answer:

Verified
Correct Answer:
Verified
Q111: A company is migrating its legacy workloads
Q112: A company has several workloads running on
Q113: A company's on-premises data center forwards DNS
Q114: Which of the following are valid event
Q115: An organizational must establish the ability to
Q117: A user is implementing a third-party web
Q118: A security engineer is defining the controls
Q119: A Security Engineer is looking for a
Q120: A company's AWS CloudTrail logs are all
Q121: A company has an IAM group. All