AWS Cloud Practitioner CLF-C02 Practice Question
A company stores sensitive customer data for their online marketplace on AWS. To enhance security, the IT department wants to ensure this data is protected both when it is stored, and also as it's transferred between services. What should the company implement to secure the data in accordance with best practices for cloud security?
Enforce the use of Multi-factor Authentication (MFA) for all data access requests
Configure Network Access Control Lists (ACLs) to restrict data access to authorized users only
Implement encryption at rest using technologies like Amazon S3 default encryption and encryption in transit using SSL/TLS protocols
Use SSL/TLS protocols exclusively for both data at rest and data in transit