EC2 is one the services that is covered the most within the certification, and you need to have a solid understanding of all things EC2, which includes the best practices, when it comes to securing them.
EC2 security
Implementing a patching strategy
As we know from the shared responsibility model, when it comes to managing the security of our instances, we, the customers, are responsible for securing the OS itself, and this includes downloading and installing the latest patches that are released by the OS vendors. New patches often have fixes for previously identified security weaknesses. Failure to install the latest patches could cause an unexpected security exposure that could be exploited.
You could leverage the capabilities...