nerdexam
Amazon

SAP-C02 · Question #50

A financial company is building a system to generate monthly, immutable bank account statements for its users. Statements are stored in Amazon S3. Users should have immediate access to their monthly…

The correct answer is C. Create an S3 bucket with Object Lock enabled. Store statements in S3 Intelligent-Tiering. Enable. https://aws.amazon.com/about-aws/whats-new/2018/11/s3-object-lock/ Create an S3 bucket with Object Lock enabled. Store statements in S3 Intelligent-Tiering. Enable compliance mode with a default retention period of 2 years. Define an S3 Lifecycle policy to move the data to S3…

Submitted by yousef_jo· Mar 6, 2026Design Solutions for Organizational Complexity

Question

A financial company is building a system to generate monthly, immutable bank account statements for its users. Statements are stored in Amazon S3. Users should have immediate access to their monthly statements for up to 2 years. Some users access their statements frequently, whereas others rarely access their statements. The company's security and compliance policy requires that the statements be retained for at least 7 years. What is the MOST cost-effective solution to meet the company's needs?

Options

  • ACreate an S3 bucket with Object Lock disabled. Store statements in S3 Standard. Define an S3
  • BCreate an S3 bucket with versioning enabled. Store statements in S3 Intelligent-Tiering. Use
  • CCreate an S3 bucket with Object Lock enabled. Store statements in S3 Intelligent-Tiering. Enable
  • DCreate an S3 bucket with versioning disabled. Store statements in S3 One Zone-Infrequent

How the community answered

(16 responses)
  • A
    31% (5)
  • B
    6% (1)
  • C
    50% (8)
  • D
    13% (2)

Explanation

https://aws.amazon.com/about-aws/whats-new/2018/11/s3-object-lock/ Create an S3 bucket with Object Lock enabled. Store statements in S3 Intelligent-Tiering. Enable compliance mode with a default retention period of 2 years. Define an S3 Lifecycle policy to move the data to S3 Glacier after 2 years. Attach an S3 Glacier Vault Lock policy with deny delete permissions for archives less than 7 years old. https://docs.aws.amazon.com/AmazonS3/latest/userguide/object-lock-overview.html

Community Discussion

No community discussion yet for this question.

Full SAP-C02 Practice