exam questions

Exam AWS Certified Security - Specialty SCS-C02 All Questions

View all questions & answers for the AWS Certified Security - Specialty SCS-C02 exam

Exam AWS Certified Security - Specialty SCS-C02 topic 1 question 297 discussion

A company hosts a web-based application that captures and stores sensitive data in an Amazon DynamoDB table. The company needs to implement a solution that provides end-to-end data protection and the ability to detect unauthorized data changes.

Which solution will meet these requirements?

  • A. Use an AWS Key Management Service (AWS KMS) customer managed key. Encrypt the data at rest.
  • B. Use AWS Private Certificate Authority. Encrypt the data in transit.
  • C. Use the DynamoDB Encryption Client. Use client-side encryption. Sign the table items.
  • D. Use the AWS Encryption SDK. Use client-side encryption. Sign the table items.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.
Switch to a voting comment New
Selected Answer: C
End-to-end protection: Encrypts data before sending it to DynamoDB and provides a way to verify the data integrity through signing. Comprehensive solution: Meets both requirements of encrypting data and detecting unauthorized changes (through data signing).
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...
exam
Someone Bought Contributor Access for:
SY0-701
London, 1 minute ago