nerdexam
Amazon

SOA-C02 · Question #128

A SysOps administrator has an AWS CloudFormation template that is used to deploy an encrypted Amazon Machine Image (AMI). The CloudFormation template will be used in a second account so the SysOps adm

Sign in or unlock SOA-C02 to reveal the answer and full explanation for question #128. The question stem and answer options stay visible for context.

Submitted by ravi_2018· Mar 30, 2026Deployment, Provisioning, and Automation

Question

A SysOps administrator has an AWS CloudFormation template that is used to deploy an encrypted Amazon Machine Image (AMI). The CloudFormation template will be used in a second account so the SysOps administrator copies the encrypted AMI to the second account. When launching the new CloudFormation stack in the second account, it fails. Which action should the SysOps administrator take to correct the issue?

Options

  • AChange the AMI permissions to mark the AMI as public.
  • BDeregister the AMI in the source account.
  • CRe-encrypt the destination AMI with an AWS Key Management Service (AWS KMS) key from the
  • DUpdate the CloudFormation template with the ID of the AMI in the destination account.

Unlock SOA-C02 to see the answer

You've previewed enough free SOA-C02 questions. Unlock SOA-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#CloudFormation#encrypted AMI#KMS cross-account#AMI copy
Full SOA-C02 Practice