
AWSCertified Security - Specialty
Domain 2Objective 1
Task 2.1: Design and Test an Incident Response Plan SCS-C03 Practice Questions (Page 1)
Part of the Content Domain 2: Incident Response domain, which accounts for 14% of the SCS-C03 exam. AWS does not publish an official question count, but from its 170-minute exam (~70–115 total, ~10–16 in this domain), expect 5–8 from this objective — we provide 42 practice questions to prepare you well beyond it. (estimate)
42questions here
9free pages
16concepts
14%of the exam
Questions 1–5
- 1
A security engineer is configuring AWS Shield Advanced for a web application. Which resource can be protected by AWS Shield Advanced?
Select an answer first - 2
A company has an incident response plan but has never tested it. The security team wants to validate the plan's effectiveness without impacting production systems. What should they do first?
Select an answer first - 3
A company wants to improve its detection capabilities for incident response. They need to monitor for unauthorized API calls, detect potential malicious activity, and track resource configuration changes. Which combination of services should they deploy?
Select an answer first - 4
A security engineer is setting up access for incident responders. The engineer wants to ensure that the access is temporary and automatically expires after a set period. Which AWS feature should the engineer use?
Select an answer first - 5
A security engineer wants to use Amazon SageMaker AI notebooks for incident response. What is a primary benefit of using SageMaker AI notebooks for forensic analysis?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by AWS. “SCS-C03” is a trademark of its owner, used for identification only.