Examtopics

AWS Certified DevOps Engineer - Professional
  • Topic 1 Question 21

    A company has containerized all of its in-house quality control applications. The company is running Jenkins on Amazon EC2 instances, which require patching and upgrading. The compliance officer has requested a DevOps engineer begin encrypting build artifacts since they contain company intellectual property. What should the DevOps engineer do to accomplish this in the MOST maintainable manner?

    • Automate patching and upgrading using AWS Systems Manager on EC2 instances and encrypt Amazon EBS volumes by default.

    • Deploy Jenkins to an Amazon ECS cluster and copy build artifacts to an Amazon S3 bucket with default encryption enabled.

    • Leverage AWS CodePipeline with a build action and encrypt the artifacts using AWS Secrets Manager.

    • Use AWS CodeBuild with artifact encryption to replace the Jenkins instance running on EC2 instances.


    シャッフルモード