Domain 1: Threat Detection and Incident Response

Design and implement incident response plans and mitigate threats.

This domain covers 20% of the exam. It focuses on designing and implementing incident response plans, mitigating potential threats and vulnerabilities, and responding to compromised resources such as EC2 instances and IAM credentials.
5 minutes 5 Questions

Domain 1: Threat Detection and Incident Response is a critical component of the AWS Certified Security – Specialty (SCS-C02) exam, comprising approximately 14% of the total exam content. This domain focuses on a candidate's ability to design and implement robust monitoring, detection, and response …

Concepts covered: AWS Security Hub, Incident Response in AWS, Compromised IAM Credentials, Amazon GuardDuty, Amazon Macie, Compromised EC2 Instances, AWS WAF and Shield

Test mode:
More Domain 1: Threat Detection and Incident Response questions
420 questions (total)