Examtopics

AWS Certified Security - Specialty
  • Topic 1 Question 297

    A company hosts a web-based application that captures and stores sensitive data in an Amazon DynamoDB table. The company needs to implement a solution that provides end-to-end data protection and the ability to detect unauthorized data changes.

    Which solution will meet these requirements?

    • Use an AWS Key Management Service (AWS KMS) customer managed key. Encrypt the data at rest.

    • Use AWS Private Certificate Authority. Encrypt the data in transit.

    • Use the DynamoDB Encryption Client. Use client-side encryption. Sign the table items.

    • Use the AWS Encryption SDK. Use client-side encryption. Sign the table items.


    シャッフルモード