nerdexam
AmazonAmazon

DOP-C02 · Question #72

DOP-C02 Question #72: Real Exam Question with Answer & Explanation

Sign in or unlock DOP-C02 to reveal the answer and full explanation for question #72. The question stem and answer options stay visible for context.

Submitted by devops_kid· Mar 6, 2026Security & Compliance

Question

A security review has identified that an AWS CodeBuild project is downloading a database population script from an Amazon S3 bucket using an unauthenticated request. The security team does not allow unauthenticated requests to S3 buckets for this project. How can this issue be corrected in the MOST secure manner?

Options

  • AAdd the bucket name to the AllowedBuckets section of the CodeBuild project settings. Update the
  • BModify the S3 bucket settings to enable HTTPS basic authentication and specify a token. Update
  • CRemove unauthenticated access from the S3 bucket with a bucket policy. Modify the service role
  • DRemove unauthenticated access from the S3 bucket with a bucket policy. Use the AWS CLI to

Unlock DOP-C02 to see the answer

You've previewed enough free DOP-C02 questions. Unlock DOP-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#S3 bucket policies#CodeBuild service role#least privilege#authenticated access
Full DOP-C02 PracticeBrowse All DOP-C02 Questions