CompTIA Cloud+ CV0-003 Practice Question
A financial firm utilizes an Infrastructure as a Service (IaaS) cloud model to process transactions and store sensitive client data. With a regulatory requirement to safeguard data with strong cryptographic measures, which of the following represents the most comprehensive approach to meet compliance standards?
Use the cloud provider's default database encryption and enable Secure File Transfer Protocol (SFTP) for data transit.
Configure file permissions to restrict unauthorized access and utilize RSA for data transmission security.
Encrypt the data at-rest using AES-256 and employ HTTPS for end-to-end encryption during transit.
Encrypt the data in transit using HTTPS and rely on the cloud vendor’s default encryption settings for data at rest.