SAA-C03 · Question #685
A company uses Amazon S3 to store its confidential audit documents. The S3 bucket uses bucket policies to restrict access to audit team IAM user credentials according to the principle of least privile
Sign in or unlock SAA-C03 to reveal the answer and full explanation for question #685. The question stem and answer options stay visible for context.
Question
A company uses Amazon S3 to store its confidential audit documents. The S3 bucket uses bucket policies to restrict access to audit team IAM user credentials according to the principle of least privilege. Company managers are worried about accidental deletion of documents in the S3 bucket and want a more secure solution. What should a solutions architect do to secure the audit documents?
Options
- AEnable the versioning and MFA Delete features on the S3 bucket.
- BEnable multi-factor authentication (MFA) on the IAM user credentials for each audit team IAM
- CAdd an S3 Lifecycle policy to the audit team's IAM user accounts to deny the s3:DeleteObject
- DUse AWS Key Management Service (AWS KMS) to encrypt the S3 bucket and restrict audit team
Unlock SAA-C03 to see the answer
You've previewed enough free SAA-C03 questions. Unlock SAA-C03 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.