The security team at Cloud Solutions Inc. needs to centrally manage AWS WAF rules across various AWS accounts organized under different OUs in their AWS Organizations setup. The team requires a solution that allows administrators to easily add or remove accounts or OUs from managed AWS WAF rule sets, and automatically update and remediate noncompliant AWS WAF rules across all accounts with the least operational overhead. Which solution meets these requirements?