Which solution meets these requirements and is the MOST operationally efficient?

Posted by: Pdfprep Category: SAA-C02 Tags: , ,

A company is preparing to store confidential data in Amazon S3. For compliance reasons, the data must be encrypted at rest. Encryption key usage must be logged for auditing purposes. Keys must be rotated every year.

Which solution meets these requirements and is the MOST operationally efficient?
A . Server-side encryption with customer-provided keys (SSE-C)
B . Server-side encryption with Amazon S3 managed keys (SSE-S3)
C . Server-side encryption with AWS KMS (SSE-KMS) customer master keys (CMKs) with manual rotation
D . Server-side encryption with AWS KMS (SSE-KMS) customer master keys (CMKs) with automatic rotation

Answer: D

Leave a Reply

Your email address will not be published.