nerdexam
AmazonAmazon

SCS-C03 · Question #127

SCS-C03 Question #127: Real Exam Question with Answer & Explanation

Sign in or unlock SCS-C03 to reveal the answer and full explanation for question #127. The question stem and answer options stay visible for context.

Submitted by sofia.br· Mar 6, 2026

Question

A company has an encrypted Amazon Aurora DB cluster in the us-east-1 Region. The DB cluster is encrypted with an AWS Key Management Service (AWS KMS) customer managed key. To meet compliance requirements, the company needs to copy a DB snapshot to the us-west-1 Region. However, when the company tries to copy the snapshot to us-west-1, the company cannot access the key that was used to encrypt the original database. What should the company do to set up the snapshot in us-west-1 with proper encryption?

Options

  • AUse AWS Secrets Manager to store the customer managed key in us-west-1 as a secret. Use this
  • BCreate a new customer managed key in us-west-1. Use this new key to encrypt the snapshot in
  • CCreate an IAM policy that allows access to the customer managed key in us-east-1. Specify
  • DCreate an IAM policy that allows access to the customer managed key in us-east-1. Specify

Unlock SCS-C03 to see the answer

You've previewed enough free SCS-C03 questions. Unlock SCS-C03 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full SCS-C03 PracticeBrowse All SCS-C03 Questions