AWS Certified Developer Associate DVA-C02 Practice Question
An application's deployment process requires secure retrieval of environment-specific settings and credentials for external services. Which service is best suited for handling this requirement, allowing for secure management and access during the deployment phase?
Select a service facilitating feature flag and configuration data management with IAM role-based access for secure key retrieval
Implement a service for storing configuration data, ensuring encryption of the sensitive service credentials and IAM permissions for deployment retrieval
Opt for a service explicitly designed for secret management featuring key rotation, IAM integration, and encryption for protecting service credentials
Place the sensitive service credentials in an encrypted storage service and control access through network endpoint policies
The preferred choice for storing sensitive credentials like service keys is AWS Secrets Manager because it is purpose-built for securely managing access to this type of data. Secrets Manager provides encryption at rest with the option to use customer-managed keys and integrates directly with IAM for precise access control. Its capabilities include secret rotation, which is important for maintaining security. While AWS AppConfig is useful for application configuration and feature management, it is not intended for sensitive data like service keys. Similarly, Systems Manager Parameter Store can maintain secure strings, but it does not offer the robust secret management features like rotation policies that are present in Secrets Manager. Simply storing sensitive data in an encrypted S3 bucket does not provide the same level of secret management or integration with IAM for retrieval during deployment.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is AWS Secrets Manager and how does it work?
Open an interactive chat with Bash
What is IAM and why is it important for AWS services?
Open an interactive chat with Bash
What are the benefits of secret rotation in AWS Secrets Manager?
Open an interactive chat with Bash
AWS Certified Developer Associate DVA-C02
Deployment
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Information Technology Package Join Premium for Full Access