ISC2 Systems Security Certified Practitioner (SSCP) Practice Question
A company hosts its production PostgreSQL workload on a single-AZ Amazon RDS instance in the us-east-1 Region. Regulations require the database to be restorable to any point in time no more than 5 minutes before a failure and to be available in another AWS Region within 60 minutes. Leadership wants the most cost-effective approach that still meets these RPO and RTO targets. Which solution should the security practitioner recommend?
Create a cross-Region read replica of the RDS instance and, in a disaster, promote it to master in the target Region.
Set up AWS Database Migration Service for continuous replication to a stopped PostgreSQL instance in another Region and start the instance during a disaster.
Convert the database to a Multi-AZ deployment and configure daily automated snapshots that are copied to a secondary Region.
Enable Amazon RDS cross-Region automated backups to replicate snapshots and transaction logs; during a regional outage, restore the latest point-in-time backup in the secondary Region and update application endpoints.
Enabling cross-Region automated backups copies the RDS instance's daily snapshot and transaction logs to Amazon S3 in a secondary Region with a typical RPO of about 5 minutes. No standby database is kept running, so ongoing cost is limited to the incremental storage and data-transfer charges. In the event of a regional outage, operations can restore the latest point-in-time backup into a new RDS instance in the target Region and point applications to it, a process that AWS estimates can be completed well within 60 minutes.
A cross-Region read replica would satisfy the RPO and RTO but requires a continuously running replica instance, increasing cost. Multi-AZ only protects within a single Region, so it does not meet the cross-Region requirement. Using AWS DMS with a pre-created target still incurs replication instance costs and delays associated with provisioning and cutover, making it less cost-effective and potentially longer than the required RTO.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is RPO and RTO in disaster recovery?
Open an interactive chat with Bash
How does Amazon RDS automate cross-Region backups?
Open an interactive chat with Bash
Why is Multi-AZ deployment insufficient for cross-Region requirements?
Open an interactive chat with Bash
ISC2 Systems Security Certified Practitioner (SSCP)
Incident Response and Recovery
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
Pass with Confidence.
IT & Cybersecurity Package
You have hit the limits of our free tier, become a Premium Member today for unlimited access.
Military, Healthcare worker, Gov. employee or Teacher? See if you qualify for a Community Discount.
Monthly
$19.99 $11.99
$11.99/mo
Billed monthly, Cancel any time.
$19.99 after promotion ends
3 Month Pass
$44.99 $26.99
$8.99/mo
One time purchase of $26.99, Does not auto-renew.
$44.99 after promotion ends
Save $18!
MOST POPULAR
Annual Pass
$119.99 $71.99
$5.99/mo
One time purchase of $71.99, Does not auto-renew.
$119.99 after promotion ends
Save $48!
BEST DEAL
Lifetime Pass
$189.99 $113.99
One time purchase, Good for life.
Save $76!
What You Get
All IT & Cybersecurity Package plans include the following perks and exams .