SCS-C02 · Question #284
A company needs its Amazon Elastic Block Store (Amazon EBS) volumes to be encrypted at all times. During a security incident. EBS snapshots of suspicious instances are shared to a forensics account fo
Sign in or unlock SCS-C02 to reveal the answer and full explanation for question #284. The question stem and answer options stay visible for context.
Question
A company needs its Amazon Elastic Block Store (Amazon EBS) volumes to be encrypted at all times. During a security incident. EBS snapshots of suspicious instances are shared to a forensics account for analysis. A security engineer attempting to share a suspicious EBS snapshot to the forensics account receives the following error:
"Unable to share snapshot: An error occurred (OperationNotPermitted) when calling the ModifySnapshotAttribute operation: Encrypted snapshots with EBS default key cannot be shared." Which combination of steps should the security engineer take in the incident account to complete the sharing operation? (Select THREE )
Options
- ACreate a customer managed CMK
- BCreate an Amazon EC2 instance
- CCopy the EBS snapshot to the new decrypted snapshot
- DRestore a volume from the suspicious EBS snapshot
- EShare the target EBS snapshot with the forensics account
Unlock SCS-C02 to see the answer
You've previewed enough free SCS-C02 questions. Unlock SCS-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.