nerdexam
AmazonAmazon

SCS-C02 · Question #381

SCS-C02 Question #381: Real Exam Question with Answer & Explanation

Sign in or unlock SCS-C02 to reveal the answer and full explanation for question #381. The question stem and answer options stay visible for context.

Submitted by tom_us· Mar 6, 2026Infrastructure Security

Question

A company is operating a website using Amazon CloudFornt. CloudFront servers some content from Amazon S3 and other from web servers running EC2 instances behind an Application. Load Balancer (ALB). Amazon DynamoDB is used as the data store. The company already uses AWS Certificate Manager (ACM) to store a public TLS certificate that can optionally secure connections between the website users and CloudFront. The company has a new requirement to enforce end- to-end encryption in transit. Which combination of steps should the company take to meet this requirement? (Choose three.)

Options

  • AUpdate the CloudFront distribution. configuring it to optionally use HTTPS when connecting to
  • BUpdate the web application configuration on the web servers to use HTTPS instead of HTTP
  • CUpdate the CloudFront distribution to redirect HTTP corrections to HTTPS
  • DConfigure the web servers on the EC2 instances to listen using HTTPS using the public ACM TLS
  • EUpdate the ALB listen to listen using HTTPS using the public ACM TLS certificate.
  • FCreate a TLS certificate Configure the web servers on the EC2 instances to use HTTPS only with

Unlock SCS-C02 to see the answer

You've previewed enough free SCS-C02 questions. Unlock SCS-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#End-to-end encryption#TLS/HTTPS configuration#CloudFront#Application Load Balancer
Full SCS-C02 PracticeBrowse All SCS-C02 Questions