SCS-C03 · Question #127
SCS-C03 Question #127: Real Exam Question with Answer & Explanation
Sign in or unlock SCS-C03 to reveal the answer and full explanation for question #127. The question stem and answer options stay visible for context.
Question
A company has an encrypted Amazon Aurora DB cluster in the us-east-1 Region. The DB cluster is encrypted with an AWS Key Management Service (AWS KMS) customer managed key. To meet compliance requirements, the company needs to copy a DB snapshot to the us-west-1 Region. However, when the company tries to copy the snapshot to us-west-1, the company cannot access the key that was used to encrypt the original database. What should the company do to set up the snapshot in us-west-1 with proper encryption?
Options
- AUse AWS Secrets Manager to store the customer managed key in us-west-1 as a secret. Use this
- BCreate a new customer managed key in us-west-1. Use this new key to encrypt the snapshot in
- CCreate an IAM policy that allows access to the customer managed key in us-east-1. Specify
- DCreate an IAM policy that allows access to the customer managed key in us-east-1. Specify
Unlock SCS-C03 to see the answer
You've previewed enough free SCS-C03 questions. Unlock SCS-C03 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.