AWS Certified Developer Associate DVA-C02 Practice Question
When dealing with applications that span multiple accounts, which service enables the sharing of encryption keys to maintain data security while allowing controlled access from other accounts?
The correct service for managing and sharing encryption keys is Key Management Service (KMS), which allows organizations to create and manage encryption keys and control their use across AWS services and in applications. The KMS supports sharing of Customer Managed Keys (CMKs) with different accounts, which is necessary for applications that need to utilize encrypted data in a multi-account environment. Through the use of resource-based policies in conjunction with KMS, users can grant permissions to other accounts to allow them to use specific CMKs for encrypting and decrypting data.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What are Customer Managed Keys (CMKs) in KMS?
Open an interactive chat with Bash
How does KMS enable controlled access to encryption keys across accounts?
Open an interactive chat with Bash
What are the differences between KMS and other AWS services like Secrets Manager or Certificate Manager?
Open an interactive chat with Bash
AWS Certified Developer Associate DVA-C02
Security
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Oh snap!
Loading...
Loading...
Loading...
Information Technology Package Join Premium for Full Access