Amazon Web Services AWS Certified Solutions Architect - Associate (SAA-C03) SAA-C03 Question # 81 Topic 9 Discussion

Amazon Web Services AWS Certified Solutions Architect - Associate (SAA-C03) SAA-C03 Question # 81 Topic 9 Discussion

SAA-C03 Exam Topic 9 Question 81 Discussion:
Question #: 81
Topic #: 9

A company is performing a security review of its Amazon EMR API usage. The company's developers use an integrated development environment (IDE) that is hosted on Amazon EC2 instances. The IDE is configured to authenticate users to AWS by using access keys. Traffic between the company's EC2 instances and EMR cluster uses public IP addresses.

A solutions architect needs to improve the company's overall security posture. The solutions architect needs to reduce the company's use of long-term credentials and to limit the amount of communication that uses public IP addresses.

Which combination of steps will MOST improve the security of the company's architecture? (Select TWO.)


A.

Set up a gateway endpoint to the EMR cluster.


B.

Set up interface VPC endpoints to connect to the EMR cluster.


C.

Set up a private NAT gateway to connect to the EMR cluster.


D.

Set up IAM roles for the developers to use to connect to the Amazon EMR API.


E.

Set up AWS Systems Manager Parameter Store to store access keys for each developer.


Get Premium SAA-C03 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.