ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 219 - SCS-C01 discussion

Report
Export

A company maintains sensitive data in an Amazon S3 bucket that must be protected using an AWS KMS CMK. The company requires that keys be rotated automatically every year. How should the bucket be configured?

A.
Select server-side encryption with Amazon S3-managed keys (SSE-S3) and select an AWS-managed CMK.
Answers
A.
Select server-side encryption with Amazon S3-managed keys (SSE-S3) and select an AWS-managed CMK.
B.
Select Amazon S3-AWS KMS managed encryption keys (S3-KMS) and select a customer-managed CMK with key rotation enabled.
Answers
B.
Select Amazon S3-AWS KMS managed encryption keys (S3-KMS) and select a customer-managed CMK with key rotation enabled.
C.
Select server-side encryption with Amazon S3-managed keys (SSE-S3) and select a customermanaged CMK that has imported key material.
Answers
C.
Select server-side encryption with Amazon S3-managed keys (SSE-S3) and select a customermanaged CMK that has imported key material.
D.
Select server-side encryption with AWS KMS-managed keys (SSE-KMS) and select an alias to an AWS-managed CMK.
Answers
D.
Select server-side encryption with AWS KMS-managed keys (SSE-KMS) and select an alias to an AWS-managed CMK.
Suggested answer: B
asked 16/09/2024
Donna Brown
38 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first