AWS Security Specialty Security Logging and Detection Quiz

Reviewed by Editorial Team
The ProProfs editorial team is comprised of experienced subject matter experts. They've collectively created over 10,000 quizzes and lessons, serving over 100 million users. Our team includes in-house content moderators and subject matter experts, as well as a global network of rigorously trained contributors. All adhere to our comprehensive editorial guidelines, ensuring the delivery of high-quality content.
Learn about Our Editorial Process
| By Thames
T
Thames
Community Contributor
Quizzes Created: 8865 | Total Attempts: 106,055
| Questions: 20 | Updated: Aug 11, 2026
Please wait...
Question 1 / 21
🏆 Rank #--
0 %
0/100
Score 0/100

1. True or False: VPC Flow Logs can be sent to CloudWatch Logs or S3 but not both simultaneously.

Submit
Please wait...
About This Quiz
AWS Security Specialty Security Logging and Detection Quiz - Quiz

This quiz assesses your understanding of security logging and detection mechanisms within AWS environments. You will explore CloudTrail, CloudWatch Logs, VPC Flow Logs, and GuardDuty to evaluate your ability to monitor, detect, and respond to security events. Essential for professionals pursuing AWS Security Specialty certification.

2.

What first name or nickname would you like us to use?

You may optionally provide this to label your report, leaderboard, or certificate.

2. True or False: VPC Flow Logs include payload data from network packets.

Submit

3. Which metric would indicate a potential brute-force attack when reviewing CloudWatch Logs?

Submit

4. What is the primary benefit of enabling MFA Delete on a CloudTrail S3 bucket?

Submit

5. True or False: GuardDuty requires you to enable CloudTrail to detect API-based threats.

Submit

6. Which log type would you use to investigate unauthorized API calls to DynamoDB?

Submit

7. What is a primary advantage of using CloudWatch Log Groups with retention policies?

Submit

8. True or False: CloudTrail Insights can automatically detect unusual API activity patterns.

Submit

9. Which AWS service integrates with GuardDuty to provide automated response capabilities?

Submit

10. What does the 'REJECT' action in VPC Flow Logs indicate?

Submit

11. Which AWS service records API calls and account activity across your AWS infrastructure?

Submit

12. Which CloudTrail event type captures data plane activities like S3 object uploads?

Submit

13. What is the minimum log retention period for CloudTrail in S3?

Submit

14. True or False: GuardDuty requires manual configuration of detection rules for each threat type.

Submit

15. Which log source provides visibility into denied network connections at the VPC level?

Submit

16. What does CloudWatch Logs Insights allow you to do?

Submit

17. True or False: CloudTrail can be configured to send logs to multiple AWS regions simultaneously.

Submit

18. Which service provides intelligent threat detection and continuous monitoring for AWS accounts?

Submit

19. CloudTrail logs are stored in which AWS service by default?

Submit

20. What is the primary purpose of VPC Flow Logs?

Submit
×
Saved
Thank you for your feedback!
View My Results
Cancel
  • All
    All (20)
  • Unanswered
    Unanswered ()
  • Answered
    Answered ()
True or False: VPC Flow Logs can be sent to CloudWatch Logs or S3 but...
True or False: VPC Flow Logs include payload data from network...
Which metric would indicate a potential brute-force attack when...
What is the primary benefit of enabling MFA Delete on a CloudTrail S3...
True or False: GuardDuty requires you to enable CloudTrail to detect...
Which log type would you use to investigate unauthorized API calls to...
What is a primary advantage of using CloudWatch Log Groups with...
True or False: CloudTrail Insights can automatically detect unusual...
Which AWS service integrates with GuardDuty to provide automated...
What does the 'REJECT' action in VPC Flow Logs indicate?
Which AWS service records API calls and account activity across your...
Which CloudTrail event type captures data plane activities like S3...
What is the minimum log retention period for CloudTrail in S3?
True or False: GuardDuty requires manual configuration of detection...
Which log source provides visibility into denied network connections...
What does CloudWatch Logs Insights allow you to do?
True or False: CloudTrail can be configured to send logs to multiple...
Which service provides intelligent threat detection and continuous...
CloudTrail logs are stored in which AWS service by default?
What is the primary purpose of VPC Flow Logs?
play-Mute sad happy unanswered_answer up-hover down-hover success oval cancel Check box square blue
Alert!