A Security Engineer is trying to determine whether the encryption keys used in an AWS service are in compliance with certain regulatory standards. Which of the following actions should the Engineer perform to get further guidance?
A.
Read the AWS Customer Agreement.
B.
Use AWS Artifact to access AWS compliance reports.
C.
Post the question on the AWS Discussion Forums.
D.
Run AWS Config and evaluate the configuration outputs.
This is a puzzle question if you don't read carefully. D is not correct because AWS Config just can check your key settings/configuration based on your best practices or your targe configuration, but if you want to know keys are complied with any regulations, you must go to AWS Artifact for reporting.
The Security Engineer should use AWS Artifact to access AWS compliance reports. AWS Artifact is a portal that provides on-demand access to AWS compliance reports. These reports contain information about the security and compliance posture of AWS services. The reports can be used by customers and auditors to understand how AWS meets security and compliance requirements. B
B is correct.
Third-party auditors assess the security and compliance of AWS Key Management Service as part of multiple AWS compliance programs. These include SOC, PCI, FedRAMP, HIPPA, and others. The compliance document is found in AWS Artifact.
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Wpcorgan
Highly Voted 3 years, 7 months agoKdosec
Highly Voted 3 years, 5 months agoITGURU51
Most Recent 1 year, 11 months agoskillz2investor
2 years, 5 months agoacloudguru
3 years, 5 months agolmtony
3 years, 5 months agoShakthiVinu
3 years, 5 months agoPonzy
3 years, 5 months agosanjaym
3 years, 6 months agoDaniel76
3 years, 6 months agoNANDY666
3 years, 6 months agoshooricg
3 years, 6 months agodevjava
3 years, 6 months agoAfricanCloudGuru
3 years, 6 months agoCyb3rgh057
3 years, 6 months agogfhbox0083
3 years, 6 months agoRaySmith
3 years, 6 months ago