As a healthcare company moves patient records to a cloud-based storage service, compliance with regulations that mandate protection of sensitive health data is required. What approach provides an essential benefit for securing this sensitive information when it is stored on the service?
Activating a service that records and audits every interaction with the storage containers.
Adjusting the access policy of the storage containers to 'private'.
Employing virtual firewall rules to the storage containers to prevent unauthorized access.
Enabling server-side encryption with the storage service's managed keys for the files.
Encrypting data when it is stored (data at rest) is a fundamental security practice that ensures unauthorized users cannot read the data if they gain access to the storage medium. Using the cloud service's managed keys for server-side encryption (like SSE-S3) secures the files by encrypting each object, while the cloud provider manages the complexity of key handling and rotation. The incorrect answers describe other important but distinct security controls: Adjusting access policies controls who can access resources but does not encrypt the data itself. Virtual firewall rules operate at the network layer to control traffic to and from resources. Activating an auditing service records interactions, which is a detective control, rather than a preventative control that actively secures the stored data.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is server-side encryption (SSE) in cloud storage?
Open an interactive chat with Bash
How do managed encryption keys enhance data security?
Open an interactive chat with Bash
What are the risks of not encrypting data at rest in the cloud?
Open an interactive chat with Bash
AWS Cloud Practitioner CLF-C02
Security and Compliance
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
IT & Cybersecurity Package Join Premium for Full Access