Câu 139: AWS Certified Security - Specialty(Old)
Auditors for a health care company have mandated that all data volumes be encrypted at rest. Infrastructure is deployed mainly via AWS CloudFormation; however, third-party frameworks and manual deployment are required on some legacy systems. What is the BEST way to monitor, on a recurring basis, whether all EBS volume…
Nội dung câu hỏi
Auditors for a health care company have mandated that all data volumes be encrypted at rest. Infrastructure is deployed mainly via AWS CloudFormation; however, third-party frameworks and manual deployment are required on some legacy systems. What is the BEST way to monitor, on a recurring basis, whether all EBS volumes are encrypted?
Các lựa chọn
Đáp án được giữ gọn theo nhãn A, B, C, D trong phần bình chọn tương tác.
- A. On a recurring basis, update all IAM user policies to require that EC2 instances are created with an encrypted volume.
- B. Configure an AWS Config rule to run on a recurring basis for volume encryption. — đáp án hiện tại
- C. Set up Amazon Inspector rules for volume encryption to run on a recurring schedule.
- D. Use CloudWatch Logs to determine whether instances were created with an encrypted volume.
Cộng đồng
0 bình luận công khai. Tên thành viên được ẩn một phần.