
Ultimate access to all questions.
Deep dive into the quiz with AI chat providers.
We prepare a focused prompt with your quiz and certificate details so each AI can offer a more tailored, in-depth explanation.
A security engineer wants a single-tenant AWS solution to create, control, and manage their own cryptographic keys to meet regulatory compliance requirements for data security.
Which AWS service should the engineer use?
A
AWS Key Management Service (AWS KMS)
B
AWS Certificate Manager (ACM)
C
AWS CloudHSM
D
AWS Systems Manager
Explanation:
AWS CloudHSM is the correct choice because:
Why not the other options:
CloudHSM is specifically designed for organizations that need dedicated hardware security modules to meet compliance requirements while maintaining full control over their cryptographic keys.