nerdexam
Amazon

SCS-C03 · Question #23

A security engineer needs to implement a solution to identify any sensitive data that is stored in an Amazon S3 bucket. The solution must report on sensitive data in the S3 bucket by using an existing

Sign in or unlock SCS-C03 to reveal the answer and full explanation for question #23. The question stem and answer options stay visible for context.

Submitted by jian89· Mar 6, 2026Data Protection

Question

A security engineer needs to implement a solution to identify any sensitive data that is stored in an Amazon S3 bucket. The solution must report on sensitive data in the S3 bucket by using an existing Amazon Simple Notification Service (Amazon SNS) topic. Which solution will meet these requirements with the LEAST implementation effort?

Options

  • AEnable AWS Config. Configure AWS Config to monitor for sensitive data in the S3 bucket and to
  • BCreate an AWS Lambda function to scan the S3 bucket for sensitive data that matches a pattern.
  • CConfigure Amazon Macie to use managed data identifiers to identify and categorize sensitive
  • DEnable Amazon GuardDuty. Configure AWS CloudTrail S3 data events. Create an Amazon

Unlock SCS-C03 to see the answer

You've previewed enough free SCS-C03 questions. Unlock SCS-C03 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Amazon Macie#sensitive data detection#S3 scanning#SNS notification
Full SCS-C03 Practice