Prepare for the AWS Certified AI Practitioner Exam with flashcards and multiple choice questions. Each question includes hints and explanations to help you succeed on your test. Get ready for certification!

Practice this question and more.


Which AWS service should a security company use to identify unauthorized users accessing Amazon Bedrock?

  1. A. AWS Audit Manager

  2. B. AWS CloudTrail

  3. C. Amazon Fraud Detector

  4. D. AWS Trusted Advisor

The correct answer is: B. AWS CloudTrail

The chosen answer, AWS CloudTrail, is the most suitable service for identifying unauthorized users accessing Amazon Bedrock. AWS CloudTrail is designed to monitor and log API calls made in an AWS account, providing a detailed record of user activity. This includes information about which users accessed specific services, the actions they performed, and when those actions occurred. By analyzing the logs generated by CloudTrail, security teams can detect any unauthorized access attempts or anomalies in user behavior that may indicate a security breach. In contrast, the other services listed do not focus primarily on tracking user activities in the same way. AWS Audit Manager helps automate the assessment of governance, risk, and compliance controls but does not provide real-time monitoring of API activity. Amazon Fraud Detector is primarily intended for detecting online fraud through machine learning models, making it more relevant for applications like transactions and user behavior prediction rather than API access logging. Lastly, AWS Trusted Advisor offers insights and best practices for optimizing AWS resources but is not designed for monitoring user access or identifying unauthorized usage. Overall, AWS CloudTrail is the best choice when it comes to tracking who is accessing AWS services, making it pivotal for identifying any unauthorized users accessing Amazon Bedrock.