
Answer-first summary for fast verification
Answer: SSE-KMS with AWS KMS managed keys
The correct answer is B: Server-side encryption with AWS KMS managed keys (SSE-KMS). This option not only provides encryption of data at rest but also integrates with AWS CloudTrail to log detailed information about AWS KMS key usage, including who accessed the keys and when. This audit trail meets the company policy requirements.
Author: LeetQuiz Editorial Team
Ultimate access to all questions.
Which encryption method in Amazon S3 ensures data at rest is encrypted and provides an audit trail for AWS KMS key usage as per company policy?
A
SSE-S3 with Amazon S3 managed keys
B
SSE-KMS with AWS KMS managed keys
C
SSE-C with customer-provided keys
D
Self-managed keys with server-side encryption
No comments yet.