nerdexam
Amazon

SCS-C03 · Question #68

A company must inventory sensitive data across all Amazon S3 buckets in all accounts from a single security account.

The correct answer is A. Delegate Amazon Macie and Security Hub administration. Amazon Macie is the AWS service designed to discover and classify sensitive data in S3. Delegated administration enables centralized visibility across an organization. Security Hub aggregates Macie findings for a single-pane-of-glass view. Inspector does not scan S3 data…

Submitted by miguelv· Mar 6, 2026Data Protection

Question

A company must inventory sensitive data across all Amazon S3 buckets in all accounts from a single security account.

Options

  • ADelegate Amazon Macie and Security Hub administration.
  • BUse Amazon Inspector with Security Hub.
  • CUse Inspector with Trusted Advisor.
  • DUse Macie with Trusted Advisor.

How the community answered

(53 responses)
  • A
    72% (38)
  • B
    4% (2)
  • C
    15% (8)
  • D
    9% (5)

Explanation

Amazon Macie is the AWS service designed to discover and classify sensitive data in S3. Delegated administration enables centralized visibility across an organization. Security Hub aggregates Macie findings for a single-pane-of-glass view. Inspector does not scan S3 data. Trusted Advisor is not a sensitive data discovery tool.

Topics

#Amazon Macie#Security Hub delegated admin#sensitive data discovery#multi-account

Community Discussion

No community discussion yet for this question.

Full SCS-C03 Practice