Audit Logging with CloudTrail Quiz

5 questions Pass: 70% +25 pts

Quiz covering Governance and Compliance

Audit Logging with CloudTrail Quiz

5 questions | Pass: 70% | Earn 25 points

Questions in this quiz

A preview of the 5 questions covered. Start the quiz above to answer them, check your score, and read the explanations.

  1. 1

    Which AWS service is primarily used to record API activity and related events within your AWS infrastructure?

  2. 2

    You need to ensure that CloudTrail log files have not been modified, deleted, or forged after they were delivered to S3. Which feature should you enable?

  3. 3

    An organization requires that all CloudTrail logs be encrypted at rest using a specific customer-managed key. How can this be achieved?

  4. 4

    What is the difference between 'Management events' and 'Data events' in CloudTrail?

  5. 5

    You are auditing a multi-account environment. You want to aggregate CloudTrail logs from all accounts into a single S3 bucket in a dedicated security account. What is the most efficient architectural pattern to achieve this?