A financial services company uses Amazon RDS for Oracle with Transparent Data Encryption (TDE) . The company is required to encrypt its data at rest at all times. The key required to decrypt the data has to be highly available, and access to the key must be limited. As a regulatory requirement, the company must have the ability to rotate the encryption key on demand. The company must be able to make the key unusable if any potential security breaches are spotted. The company also needs to accomplish these tasks with minimum overhead. What should the database administrator use to set up the encryption to meet these requirements?
A) AWS CloudHSM
B) AWS Key Management Service (AWS KMS) with an AWS managed key
C) AWS Key Management Service (AWS KMS) with server-side encryption
D) AWS Key Management Service (AWS KMS) CMK with customer-provided material
Correct Answer:
Verified
Q135: To meet new data compliance requirements, a
Q136: A Database Specialist is creating a new
Q137: A company is running a two-tier ecommerce
Q138: A company is using an Amazon RDS
Q139: A ride-hailing application uses an Amazon RDS
Q141: A company is deploying a solution in
Q142: A development team at an international gaming
Q143: A database specialist needs to review and
Q144: An online retail company is planning a
Q145: A database specialist manages a critical Amazon
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents