AWS Cloud Practitioner CLF-C02 Practice Question

A company wants to ensure the data stored in their Amazon S3 buckets is protected. What is the BEST method to automatically protect data at rest within an Amazon S3 bucket?

  • Implement Client-Side Encryption for data before uploading to Amazon S3

  • Use AWS Key Management Service Managed Keys (SSE-KMS) for both encryption and decryption

  • Configure an Amazon S3 bucket policy to enforce encryption on upload

  • Enable Amazon S3 Server-Side Encryption with Amazon S3-Managed Keys (SSE-S3)

AWS Cloud Practitioner CLF-C02
Security and Compliance
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot