nerdexam
Amazon

SOA-C02 · Question #100

An Amazon S3 Inventory report reveals that more than 1 million objects in an S3 bucket are not encrypted. These objects must be encrypted, and all future objects must be encrypted at the time they are

Sign in or unlock SOA-C02 to reveal the answer and full explanation for question #100. The question stem and answer options stay visible for context.

Submitted by diego_uy· Mar 30, 2026Security and Compliance

Question

An Amazon S3 Inventory report reveals that more than 1 million objects in an S3 bucket are not encrypted. These objects must be encrypted, and all future objects must be encrypted at the time they are written. Which combination of actions should a SysOps administrator take to meet these requirements? (Choose two.)

Options

  • ACreate an AWS Config rule that runs evaluations against configuration changes to the S3
  • BEdit the properties of the S3 bucket to enable default server-side encryption
  • CFilter the S3 Inventory report by using S3 Select to find all objects that are not encrypted.
  • DFilter the S3 Inventory report by using S3 Select to find all objects that are not encrypted.
  • EUse S3 Event Notifications to invoke an AWS Lambda function on all new object-created

Unlock SOA-C02 to see the answer

You've previewed enough free SOA-C02 questions. Unlock SOA-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#S3 Encryption#Server-Side Encryption#S3 Event Notifications#AWS Lambda
Full SOA-C02 Practice