The suggested answer is A, D.
When using AWS Lambda, the company is responsible for the security inside of the code and the writing and updating of that code. AWS Lambda abstracts and manages the underlying infrastructure, including server maintenance, capacity provisioning, and scaling, allowing the company to focus on developing and securing their application. The company does not need to manage CPU resources, patch the operating system, or ensure the security of the underlying infrastructure, as these are handled by AWS Lambda.