Multiple Choice
A company uses federated access for its AWS environment. The available roles are created and managed using AWS CloudFormation from CI/CD pipeline. All changes should be made to the IAM roles through the pipeline. The security team found that changes are being made to the roles out-of-band and would like to detect when this occurs. Which action will accomplish this?
A) Use Amazon Inspector rules to detect and notify when a CloudFormation stack has a configuration change.
B) Use an AWS Trusted Advisor CloudWatch Events rule to detect and notify when a CloudFormation stack has a configuration change.
C) Use AWS CloudTrail to detect and notify when a CloudFormation stack has detected a configuration change.
D) Use an AWS Config rule to detect and notify when a CloudFormation stack has detected a configuration change.
Correct Answer:

Verified
Correct Answer:
Verified
Q9: You have been tasked with deploying a
Q10: A DevOps Engineer is working with an
Q11: A root account has created an IAM
Q12: You run accounting software in the AWS
Q13: A defect was discovered in production and
Q15: Your system uses a multi-master, multi-region DynamoDB
Q16: You are running Amazon CloudTrail on an
Q17: Your serverless architecture using AWS API Gateway,
Q18: You are using Elastic Beanstalk to manage
Q19: How does Amazon RDS multi Availability Zone