Publish SES event logs to S3 through Data Firehose and query them with Athena
A travel company built a web application that uses Amazon Simple Email Service (Amazon SES) to send email notifications to users. The company needs to enable logging to help troubleshoot email delivery issues. The company also needs the ability to do searches that are based on recipient, subject, and time sent. Which combination of steps should a solutions architect take to meet these requirements? (Choose two.)
Community Votes
100% of anonymous learners picked answer AC. Votes are pick records left by other test-takers — they are not the verified answer.
Community Insight
An SES configuration set publishes email sending event data to a destination, Amazon Data Firehose is a supported destination that delivers to S3, and Athena can query those S3 logs directly without loading them into a database.
A travel company sends notifications through Amazon SES and needs logging to troubleshoot delivery, plus the ability to search the logs by recipient, subject, and time sent. The logs need to be retained in a queryable store.
Sending SES logs to CloudWatch Logs and querying with Athena. Athena queries data in S3, and CloudWatch Logs stores log events in its own indexed store, so the Athena path requires the logs to land in S3, which is why the Firehose-to-S3 configuration set is the required first step.
Community Discussion (9 comments)
Comments & Corrections
No comments yet — spotted an error or have a note? Share it below.
Expert Analysis
Why the Answer Is Correct
Creating an SES configuration set with Amazon Data Firehose as the destination causes SES to publish email sending event data, including delivery, bounce, and complaint events, and Firehose delivers that data into an S3 bucket where it is retained durably. Amazon Athena then queries the log data in S3 using standard SQL, so the team can filter by recipient, subject, and time sent to troubleshoot a specific message, and no data warehouse or log analytics service needs to be provisioned or operated.Why the Other Options Are Wrong
B: AWS CloudTrail records API calls made to AWS services, not the email sending events for each SES message, so it does not produce per-message delivery logs with recipient and subject. D: Sending SES event data to a CloudWatch log group is a supported configuration set destination, but Amazon Athena does not query CloudWatch Logs. E: Athena queries S3, so combining a CloudWatch log group destination with Athena is internally inconsistent and cannot work. That leaves the Firehose to S3 path in A paired with the Athena queries in C.Community Comment Notes
The community voted 80 to 0 in favour of A and C, and one commenter linked the SES documentation on adding Firehose as an event destination while another linked the Athena guide for querying SES logs, which independently confirms both halves of the pair.Official Reference
Related Analysis
Practice All SAP-C02 Questions
Access 85 questions with complete answers and detailed explanations.
View Full SAP-C02 Practice Test →