ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 281 - SAA-C03 discussion

Report
Export

A company is building a new web-based customer relationship management application. The application will use several Amazon EC2 instances that are backed by Amazon Elastic Block Store (Amazon EBS) volumes behind an Application Load Balancer (ALB). The application will also use an Amazon Aurora database. All data for the application must be encrypted at rest and in transit. Which solution will meet these requirements?

A.
Use AWS Key Management Service (AWS KMS) certificates on the ALB to encrypt data in transit.Use AWS Certificate Manager (ACM) to encrypt the EBS volumes and Aurora database storage at rest.
Answers
A.
Use AWS Key Management Service (AWS KMS) certificates on the ALB to encrypt data in transit.Use AWS Certificate Manager (ACM) to encrypt the EBS volumes and Aurora database storage at rest.
B.
Use the AWS root account to log in to the AWS Management Console. Upload the company’s encryption certificates. While in the root account, select the option to turn on encryption for all data at rest and in transit for the account.
Answers
B.
Use the AWS root account to log in to the AWS Management Console. Upload the company’s encryption certificates. While in the root account, select the option to turn on encryption for all data at rest and in transit for the account.
C.
Use a AWS Key Management Service (AWS KMS) to encrypt the EBS volumes and Aurora database storage at rest. Attach an AWS Certificate Manager (ACM) certificate to the ALB to encrypt data in transit.
Answers
C.
Use a AWS Key Management Service (AWS KMS) to encrypt the EBS volumes and Aurora database storage at rest. Attach an AWS Certificate Manager (ACM) certificate to the ALB to encrypt data in transit.
D.
Use BitLocker to encrypt all data at rest. Import the company’s TLS certificate keys to AWS key Management Service (AWS KMS). Attach the KMS keys to the ALB to encrypt data in transit.
Answers
D.
Use BitLocker to encrypt all data at rest. Import the company’s TLS certificate keys to AWS key Management Service (AWS KMS). Attach the KMS keys to the ALB to encrypt data in transit.
Suggested answer: C
asked 16/09/2024
Chris Abunin
28 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first