Amazon Web Services AWS Certified Solutions Architect - Associate (SAA-C03) SAA-C03 Question # 5 Topic 1 Discussion

Amazon Web Services AWS Certified Solutions Architect - Associate (SAA-C03) SAA-C03 Question # 5 Topic 1 Discussion

SAA-C03 Exam Topic 1 Question 5 Discussion:
Question #: 5
Topic #: 1

A company is preparing to store confidential data in Amazon S3. For compliance reasons, the data must be encrypted at rest. Encryption key usage must be logged for auditing purposes. Keys must be rotated every year.

Which solution meets these requirements and is the MOST operationally efficient?


A.

Server-side encryption with customer-provided keys (SSE-C)


B.

Server-side encryption with Amazon S3 managed keys (SSE-S3)


C.

Server-side encryption with AWS KMS keys (SSE-KMS) with manual rotation


D.

Server-side encryption with AWS KMS keys (SSE-KMS) with automatic rotation


Get Premium SAA-C03 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.