nerdexam
Amazon

DBS-C01 · Question #275

A company uses AWS Lambda functions in a private subnet in a VPC to run application logic. The Lambda functions must not have access to the public internet. Additionally, all data communication must r

Sign in or unlock DBS-C01 to reveal the answer and full explanation for question #275. The question stem and answer options stay visible for context.

Submitted by klara.se· Mar 6, 2026Database Security

Question

A company uses AWS Lambda functions in a private subnet in a VPC to run application logic. The Lambda functions must not have access to the public internet. Additionally, all data communication must remain within the private network. As part of a new requirement, the application logic needs access to an Amazon DynamoDB table. What is the MOST secure way to meet this new requirement?

Options

  • AProvision the DynamoDB table inside the same VPC that contains the Lambda functions
  • BCreate a gateway VPC endpoint for DynamoDB to provide access to the table
  • CUse a network ACL to only allow access to the DynamoDB table from the VPC
  • DUse a security group to only allow access to the DynamoDB table from the VPC

Unlock DBS-C01 to see the answer

You've previewed enough free DBS-C01 questions. Unlock DBS-C01 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#DynamoDB#VPC endpoint#private networking#Lambda
Full DBS-C01 Practice