nerdexam
Amazon

DOP-C02 · Question #481

A company in a highly regulated industry is building an artifact by using AWS CodeBuild and AWS CodePipeline. The company must connect to an external authenticated API during the building process. The

Sign in or unlock DOP-C02 to reveal the answer and full explanation for question #481. The question stem and answer options stay visible for context.

Submitted by rohit_dlh· Mar 6, 2026Security & Compliance

Question

A company in a highly regulated industry is building an artifact by using AWS CodeBuild and AWS CodePipeline. The company must connect to an external authenticated API during the building process. The company's DevOps engineer needs to encrypt the build outputs by using an AWS Key Management Service (AWS KMS) key. The external API credentials must be reset each month. The DevOps engineer has created a new key in AWS KMS. Which solution will meet these requirements?

Options

  • AStore the API credentials in AWS Systems Manager Parameter Store. Update the key policy for
  • BStore the API credentials in AWS Systems Manager Parameter Store. Update the key policy for
  • CStore the API credentials in AWS Secrets Manager. Update the key policy for the CodeBuild IAM
  • DStore the API credentials in AWS Secrets Manager. Update the key policy for the CodePipeline

Unlock DOP-C02 to see the answer

You've previewed enough free DOP-C02 questions. Unlock DOP-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#AWS Secrets Manager#AWS CodeBuild#AWS KMS#IAM Policies
Full DOP-C02 Practice