Q: 10
A company creates AWS Lambda functions from container images that are stored in Amazon Elastic
Container Registry (Amazon ECR). The company needs to identify any software vulnerabilities in the
container images and any code vulnerabilities in the Lambda functions.
Which solution will meet these requirements?
Options
Discussion
C/D? Official practice test and whitepapers cover this scenario.
B tbh
GuardDuty with Runtime Monitoring (B) sounds close since it handles Lambda protection, but it won't scan container images in ECR for vulnerabilities. I remember GuardDuty is more about threat detection/runtime anomalies than explicit vulnerability scans. Picking B for the Lambda bit, but it's missing a piece for full coverage.
Pretty sure B covers Lambda protection, but I don’t think it scans container image vulnerabilities in ECR. From exam reports, B seems close but misses the ECR part.
Be respectful. No spam.