PAS-C01 · Question #106
A company is implementing SAP HANA on AWS. According to the company's security policy, SAP backups must be encrypted. Only authorized team members can have the ability to decrypt the SAP backups…
The correct answer is B. Configure AWS Backint Agent for SAP HANA to use AWS Key Management Service (AWS KMS). AWS KMS is a managed service that makes it easy to create and control encryption keys used to encrypt your data. By using AWS KMS to encrypt the backups, the encryption and decryption of the data is handled by AWS, freeing up the company's resources. Additionally, the key…
Question
A company is implementing SAP HANA on AWS. According to the company's security policy, SAP backups must be encrypted. Only authorized team members can have the ability to decrypt the SAP backups. What is the MOST operationally efficient solution that meets these requirements?
Options
- AConfigure AWS Backint Agent for SAP HANA to create SAP backups in an Amazon S3 bucket.
- BConfigure AWS Backint Agent for SAP HANA to use AWS Key Management Service (AWS KMS)
- CConfigure AWS Storage Gateway to transfer SAP backups from a file system to an Amazon S3
- DConfigure AWS Backint Agent for SAP HANA to use AWS Key Management Service (AWS KMS)
How the community answered
(36 responses)- A8% (3)
- B69% (25)
- C17% (6)
- D6% (2)
Explanation
AWS KMS is a managed service that makes it easy to create and control encryption keys used to encrypt your data. By using AWS KMS to encrypt the backups, the encryption and decryption of the data is handled by AWS, freeing up the company's resources. Additionally, the key policy ensures that only authorized team members can decrypt the backups, thereby meeting the security requirements.
Topics
Community Discussion
No community discussion yet for this question.