A company has developed a new Amazon RDS database application. The company must secure the RDS database credentials for encryption in transit and encryption at rest. The company also must rotate the credentials automatically on a regular basis. Which solution meets these requirements?
A) Use AWS Systems Manager Parameter Store to store the database credentials. Configure automatic rotation of the credentials.
B) Use AWS Secrets Manager to store the database credentials. Configure automatic rotation of the credentials.
C) Store the database credentials in an Amazon S3 bucket that is configured with server-side encryption with S3 managed encryption keys (SSE-S3) . Rotate the credentials with IAM database authentication.
D) Store the database credentials in Amazon S3 Glacier, and use S3 Glacier Vault Lock. Configure an AWS Lambda function to rotate credentials on a scheduled basis.
Correct Answer:
Verified
Q248: A company is building an application on
Q249: A company uses an external identity provider
Q250: A company wants to deploy a distributed
Q251: A city is implementing an election results
Q252: A user is implementing a third-party web
Q254: An audit determined that a company's Amazon
Q255: A company has two AWS accounts: Account
Q256: A security engineer has been tasked with
Q257: A company's development team is designing an
Q258: A security engineer has enabled AWS Security
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents