ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 12 - SCS-C01 discussion

Report
Export

A company hosts a web-based application that captures and stores sensitive data in an Amazon DynamoDB table. A security audit reveals that the application does not provide end-to-end data protection or the ability to detect unauthorized data changes The software engineering team needs to make changes that will address the audit findings. Which set of steps should the software engineering team take?

A.
Use an AWS Key Management Service (AWS KMS) CMK. Encrypt the data at rest.
Answers
A.
Use an AWS Key Management Service (AWS KMS) CMK. Encrypt the data at rest.
B.
Use AWS Certificate Manager (ACM) Private Certificate Authority Encrypt the data in transit.
Answers
B.
Use AWS Certificate Manager (ACM) Private Certificate Authority Encrypt the data in transit.
C.
Use a DynamoDB encryption client. Use client-side encryption and sign the table items
Answers
C.
Use a DynamoDB encryption client. Use client-side encryption and sign the table items
D.
Use the AWS Encryption SDK. Use client-side encryption and sign the table items.
Answers
D.
Use the AWS Encryption SDK. Use client-side encryption and sign the table items.
Suggested answer: A
asked 16/09/2024
Hans Walter Katzengruber
27 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first