AWS Certified Developer Associate DVA-C02 Practice Question

A development team needs to store database credentials and API keys so that a containerized application running in Amazon ECS can load them from environment variables at startup. The solution must meet the following requirements:

  • Encrypt the secrets at rest by using AWS KMS.
  • Provide automatic rotation of the secrets on a schedule.
  • Record access to the secrets in AWS CloudTrail.

Which AWS service should the team use to meet these requirements?

  • Amazon S3 with server-side encryption (SSE-KMS)

  • AWS Systems Manager Parameter Store

  • AWS Secrets Manager

  • AWS Key Management Service (AWS KMS)

AWS Certified Developer Associate DVA-C02
Security
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot