A development team is building an open-source toolset to manage a company's software-as-a-service (SaaS) application. The company keeps the code in a public repository so that anyone can view and download the toolset code.
The company discovers that the code includes an IAM access key and secret key that allow access to internal resources in the company’s AWS environment.
A security engineer must implement a solution to determine whether the exposed credentials have been used without authorization. The solution must also prevent any further use of the exposed credentials.
Which combination of steps meets these requirements?
Choose two
Community Discussion
No comments yet. Be the first to start the discussion!
Community Discussion