ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 50 - SCS-C01 discussion

Report
Export

A company Is building a data lake on Amazon S3. The data consists of millions of small files containing sensitive information. The security team has the following requirements for the architecture:

• Data must be encrypted in transit.

• Data must be encrypted at rest.

• The bucket must be private, but if the bucket is accidentally made public, the data must remain confidential. Which combination of steps would meet the requirements? (Select THREE.)

A.
Enable AES-256 encryption using server-side encryption with Amazon S3-managed encryption keys (SSE-S3) on the S3 bucket
Answers
A.
Enable AES-256 encryption using server-side encryption with Amazon S3-managed encryption keys (SSE-S3) on the S3 bucket
B.
Enable default encryption with server-side encryption with AWS KMS-managed keys (SSE-KMS) on the S3 bucket.
Answers
B.
Enable default encryption with server-side encryption with AWS KMS-managed keys (SSE-KMS) on the S3 bucket.
C.
Add a bucket policy that includes a deny if a PutObject request does not include awsiSecureTcanspoct.
Answers
C.
Add a bucket policy that includes a deny if a PutObject request does not include awsiSecureTcanspoct.
D.
Add a bucket policy with ws: Sourcelpto Allow uploads and downloads from the corporate intranet only.
Answers
D.
Add a bucket policy with ws: Sourcelpto Allow uploads and downloads from the corporate intranet only.
E.
Add a bucket policy that includes a deny if a PutObject request does not include s3:x-amz-sairv9rside- enctyption: "aws: kms".
Answers
E.
Add a bucket policy that includes a deny if a PutObject request does not include s3:x-amz-sairv9rside- enctyption: "aws: kms".
F.
Enable Amazon Macie to monitor and act on changes to the data lake's S3 bucket.
Answers
F.
Enable Amazon Macie to monitor and act on changes to the data lake's S3 bucket.
Suggested answer: B, D, F
asked 16/09/2024
ANDREA SIMONELLI
37 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first