AmazonAmazon
SAA-C03 · Question #112
SAA-C03 Question #112: Real Exam Question with Answer & Explanation
Sign in or unlock SAA-C03 to reveal the answer and full explanation for question #112. The question stem and answer options stay visible for context.
Submitted by salim_om· Mar 4, 2026Design Secure Architectures
Question
A company needs a solution to enforce data encryption at rest on Amazon EC2 instances. The solution must automatically identify noncompliant resources and enforce compliance policies on findings. Which solution will meet these requirements with the LEAST administrative overhead?
Options
- AUse an IAM policy that allows users to create only encrypted Amazon Elastic Block Store
- BUse AWS Key Management Service (AWS KMS) to manage access to encrypted Amazon Elastic
- CUse Amazon Macie to detect unencrypted Amazon Elastic Block Store (Amazon EBS) volumes.
- DUse Amazon Inspector to detect unencrypted Amazon Elastic Block Store (Amazon EBS)
Unlock SAA-C03 to see the answer
You've previewed enough free SAA-C03 questions. Unlock SAA-C03 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.