A global company needs a managed security service that blocks SQL injection attacks and provides detailed access logging for its e-commerce applications. Which AWS service fulfills these requirements?
Choose an answer
Tap an option to check your answer.
Correct answer: AWS WAF.
Why this is the answer
AWS WAF (Web Application Firewall) is the correct choice because it specifically protects web applications from common web exploits, including SQL injection attacks, by allowing you to define custom rules. It also integrates with other AWS services like Amazon CloudFront, Application Load Balancer, and API Gateway, and provides detailed access logging through AWS WAF logs, which can be sent to Amazon S3 or Amazon CloudWatch Logs. AWS Network Firewall is a stateful managed firewall service for VPCs, but it operates at the network level and doesn't specifically target web application exploits like SQL injection. Amazon RDS for SQL Server is a managed relational database service and does not provide security services for web application attacks. Amazon GuardDuty is a threat detection service that monitors for malicious activity and unauthorized behavior, but it doesn't actively block web application exploits.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed