Amazon Web Services AWS Certified Solutions Architect - Associate (SAA-C03) SAA-C03 Question # 31 Topic 4 Discussion

Amazon Web Services AWS Certified Solutions Architect - Associate (SAA-C03) SAA-C03 Question # 31 Topic 4 Discussion

SAA-C03 Exam Topic 4 Question 31 Discussion:
Question #: 31
Topic #: 4

A company is running a highly sensitive application on Amazon EC2 backed by an Amazon RDS database Compliance regulations mandate that all personally identifiable information (Pll) be encrypted at rest.

Which solution should a solutions architect recommend to meet this requirement with the LEAST amount of changes to the infrastructure?


A.

Deploy AWS Certificate Manager to generate certificates Use the certificates to encrypt the database volume


B.

Deploy AWS CloudHSM. generate encryption keys, and use the keys to encrypt database volumes.


C.

Configure SSL encryption using AWS Key Management Service {AWS KMS) keys to encrypt database volumes.


D.

Configure Amazon Elastic Block Store (Amazon EBS) encryption and Amazon RDS encryption with AWS Key Management Service (AWS KMS) keys to encrypt instance and database volumes.


Get Premium SAA-C03 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.