
Ultimate access to all questions.
A company utilizes Amazon S3 for storing proprietary data, with the development team routinely creating new S3 buckets for various projects. The security team mandates that all S3 buckets, both current and future, must have encryption, logging, and versioning features enabled. Furthermore, they stipulate that no S3 buckets should be configured for public read or write access. What measures should a DevOps engineer implement to comply with these security requirements?
A
Enable AWS CloudTrail and configure automatic remediation using AWS Lambda.
B
Enable AWS Config rules and configure automatic remediation using AWS Systems Manager documents.
C
Enable AWS Trusted Advisor and configure automatic remediation using Amazon EventBridge.
D
Enable AWS Systems Manager and configure automatic remediation using Systems Manager documents.