
Ultimate access to all questions.
A financial services company aims to protect its customer data by ensuring it is always encrypted while stored in Amazon S3. The company seeks a solution managed by AWS that provides them the ability to fully control the creation, rotation, and removal of the encryption keys.
Given this requirement, as a Developer Associate, which of the following solutions would you recommend to meet this use-case?
A
Server-Side Encryption with Amazon S3-Managed Keys (SSE-S3)
B
Server-Side Encryption with Customer-Provided Keys (SSE-C)
C
Server-Side Encryption with Secrets Manager
D
Server-Side Encryption with Customer Master Keys (CMKs) Stored in AWS Key Management Service (SSE-KMS)