nerdexam
AmazonAmazon

SCS-C02 · Question #84

SCS-C02 Question #84: Real Exam Question with Answer & Explanation

Sign in or unlock SCS-C02 to reveal the answer and full explanation for question #84. The question stem and answer options stay visible for context.

Submitted by tyler.j· Mar 6, 2026

Question

A company has a web server in the AWS Cloud. The company will store the content for the web server in an Amazon S3 bucket. A security engineer must use an Amazon CloudFront distribution to speed up delivery of the content. None of the files can be publicly accessible from the S3 bucket directly. Which solution will meet these requirements?

Options

  • AConfigure the permissions on the individual files in the S3 bucket so that only the CloudFront
  • BCreate an origin access control (OAC). Associate the OAC with the CloudFront distribution.
  • CCreate an S3 role in AWS Identity and Access Management (IAM). Allow only the CloudFront
  • DCreate an S3 bucket policy that uses only the CloudFront distribution ID as the principal and the

Unlock SCS-C02 to see the answer

You've previewed enough free SCS-C02 questions. Unlock SCS-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full SCS-C02 PracticeBrowse All SCS-C02 Questions