ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 333 - SCS-C01 discussion

Report
Export

A company hosts data in S3. There is now a mandate that going forward all data in the S3 bucket needs to encrypt at rest. How can this be achieved? Please select:

A.
Use AWS Access keys to encrypt the data
Answers
A.
Use AWS Access keys to encrypt the data
B.
Use SSL certificates to encrypt the data
Answers
B.
Use SSL certificates to encrypt the data
C.
Enable server side encryption on the S3 bucket
Answers
C.
Enable server side encryption on the S3 bucket
D.
Enable MFA on the S3 bucket
Answers
D.
Enable MFA on the S3 bucket
Suggested answer: C

Explanation:

The AWS Documentation mentions the following

Server-side encryption is about data encryption at rest—that is, Amazon S3 encrypts your data at the object level as it writes it to disks in its data centers and decrypts it for you when you access it. As long as you authenticate your request and you have access permissions, there is no difference in the way you access encrypted or unencrypted objects. Options A and B are invalid because neither Access Keys nor SSL certificates can be used to encrypt data. Option D is invalid because MFA is just used as an extra level of security for S3 buckets For more information on S3 server side encryption, please refer to the below Link:

https://docs.aws.amazon.com/AmazonS3/latest/dev/serv-side-encryption.htmlSubmit your Feedback/Queries to our Experts

asked 16/09/2024
Jose Alberto Vecino Pacheco
31 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first