ExamGecko
Question list
Search
Search

List of questions

Search

Question 132 - ARA-C01 discussion

Report
Export

When activating Tri-Secret Secure in a hierarchical encryption model in a Snowflake account, at what level is the customer-managed key used?

A.
At the root level (HSM)
Answers
A.
At the root level (HSM)
B.
At the account level (AMK)
Answers
B.
At the account level (AMK)
C.
At the table level (TMK)
Answers
C.
At the table level (TMK)
D.
At the micro-partition level
Answers
D.
At the micro-partition level
Suggested answer: B

Explanation:

Tri-Secret Secure is a feature that allows customers to use their own key, called the customer-managed key (CMK), in addition to the Snowflake-managed key, to create a composite master key that encrypts the data in Snowflake. The composite master key is also known as the account master key (AMK), as it is unique for each account and encrypts the table master keys (TMKs) that encrypt the file keys that encrypt the data files. The customer-managed key is used at the account level, not at the root level, the table level, or the micro-partition level.The root level is protected by a hardware security module (HSM), the table level is protected by the TMKs, and the micro-partition level is protected by the file keys12.Reference:

Understanding Encryption Key Management in Snowflake

Tri-Secret Secure FAQ for Snowflake on AWS

asked 23/09/2024
Dantrez Griffin
34 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first