Pre-Winter Sale Limited Time 65% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: pass65

Amazon Web Services AWS Certified Solutions Architect - Associate (SAA-C03) SAA-C03 Question # 24 Topic 3 Discussion

Amazon Web Services AWS Certified Solutions Architect - Associate (SAA-C03) SAA-C03 Question # 24 Topic 3 Discussion

SAA-C03 Exam Topic 3 Question 24 Discussion:
Question #: 24
Topic #: 3

A healthcare company is developing an AWS Lambda function that publishes notifications to an encrypted Amazon Simple Notification Service (Amazon SNS) topic. The notifications contain protected health information (PHI).

The SNS topic uses AWS Key Management Service (AWS KMS) customer-managed keys for encryption. The company must ensure that the application has the necessary permissions to publish messages securely to the SNS topic.

Which combination of steps will meet these requirements? (Select THREE.)


A.

Create a resource policy for the SNS topic that allows the Lambda function to publish messages to the topic.


B.

Use server-side encryption with AWS KMS keys (SSE-KMS) for the SNS topic instead of customer-managed keys.


C.

Create a resource policy for the encryption key that the SNS topic uses that has the necessary AWS KMS permissions.


D.

Specify the Lambda function's Amazon Resource Name (ARN) in the SNS topic's resourcepolicy.


E.

Associate an Amazon API Gateway HTTP API with the SNS topic to control access to the topic by using API Gateway resource policies.


F.

Configure a Lambda execution role that has the necessary IAM permissions to use a customer-managed key in AWS KMS.


Get Premium SAA-C03 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.