nerdexam
AmazonAmazon

DEA-C01 · Question #152

DEA-C01 Question #152: Real Exam Question with Answer & Explanation

Sign in or unlock DEA-C01 to reveal the answer and full explanation for question #152. The question stem and answer options stay visible for context.

Data Security and Governance

Question

A finance company uses Amazon Redshift as a data warehouse. The company stores the data in a shared Amazon S3 bucket. The company uses Amazon Redshift Spectrum to access the data that is stored in the S3 bucket. The data comes from certified third-party data providers. Each third-party data provider has unique connection details. To comply with regulations, the company must ensure that none of the data is accessible from outside the company's AWS environment. Which combination of steps should the company take to meet these requirements? (Choose two.)

Options

  • AReplace the existing Redshift cluster with a new Redshift cluster that is in a private subnet. Use
  • BCreate an AWS CloudHSM hardware security module (HSM) for each data provider. Encrypt
  • CTurn on enhanced VPC routing for the Amazon Redshift cluster. Set up an AWS Direct Connect
  • DDefine table constraints for the primary keys and the foreign keys.
  • EUse federated queries to access the data from each data provider. Do not upload the data to the

Unlock DEA-C01 to see the answer

You've previewed enough free DEA-C01 questions. Unlock DEA-C01 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Redshift Security#VPC Networking#Redshift Spectrum#Data Privacy
Full DEA-C01 PracticeBrowse All DEA-C01 Questions