nerdexam
Amazon

SCS-C02 · Question #258

A company uses AWS Key Management Service (AWS KMS). During an attempt to attach an encrypted Amazon Elastic Block Store (Amazon EBS) volume to an Amazon EC2 instance, the attachment fails. The compan

Sign in or unlock SCS-C02 to reveal the answer and full explanation for question #258. The question stem and answer options stay visible for context.

Submitted by anjalisingh· Mar 6, 2026Data Protection

Question

A company uses AWS Key Management Service (AWS KMS). During an attempt to attach an encrypted Amazon Elastic Block Store (Amazon EBS) volume to an Amazon EC2 instance, the attachment fails. The company discovers that a customer managed key has become unusable because the key material for the key was deleted. The company needs the data that is on the EBS volume. A security engineer must recommend a solution to decrypt the EBS volume's encrypted data key. The solution must also attach the volume to the EC2 instance. Which solution will meet these requirements?

Options

  • AImport new key material into the key. Attach the EBS volume.
  • BRestore the EBS volume from a snapshot that was taken before the deletion of the key material.
  • CReimport the same key material that originally was imported into the key. Attach the EBS volume.
  • DCreate a new key. Import new key material. Attach the EBS volume.

Unlock SCS-C02 to see the answer

You've previewed enough free SCS-C02 questions. Unlock SCS-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#AWS KMS#key material import#EBS encryption#CMK restore
Full SCS-C02 Practice