An organization processes consumer information submitted through its website. The organization's security policy requires that personally identifiable information (PII) elements are specifically encrypted at all times and as soon as feasible when received. The front-end Amazon EC2 instances should not have access to decrypted PII. A single service within the production VPC must decrypt the PII by leveraging an IAM role. Which combination of services will support these requirements? (Choose two.)
A) Amazon Aurora in a private subnet
B) Amazon CloudFront using AWS Lambda@Edge
C) Customer-managed MySQL with Transparent Data Encryption
D) Application Load Balancer using HTTPS listeners and targets
E) AWS Key Management Services
Correct Answer:
Verified
Q237: AWS CloudTrail can be configured to _
Q238: You need to ensure the files served
Q239: You are architecting your e-business application for
Q240: A user is trying to send custom
Q241: When an AWS Config rule is triggered
Q243: A company has a hybrid IT architecture
Q244: An organization is deploying an application in
Q245: An organization has ordered a new AWS
Q246: Your company needs to leverage Amazon Simple
Q247: You can use the _ command of
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents