The Cloud Solutions team at TechCorp is deploying a new microservices application on AWS using EKS and ECR, and security mandates continuous vulnerability scanning of all AWS resources. Which solution will meet this requirement with the LEAST operational overhead?