nerdexam
Amazon

SOA-C02 · Question #273

A company wants to archive sensitive data on Amazon S3 Glacier. The company's regulatory and compliance requirements do not allow any modifications to the data by any account. Which solution meets…

The correct answer is B. Attach a vault lock policy to an S3 Glacier vault that contains the archived data. While the policy is in the in-progress state, you have 24 hours to validate your Vault Lock policy before the lock ID expires. To prevent your vault from exiting the in-progress state, you must complete the Vault Lock process within these 24 hours. Otherwise, your Vault Lock…

Submitted by lucia.co· Mar 30, 2026Security and Compliance

Question

A company wants to archive sensitive data on Amazon S3 Glacier. The company's regulatory and compliance requirements do not allow any modifications to the data by any account. Which solution meets these requirements?

Options

  • AAttach a vault lock policy to an S3 Glacier vault that contains the archived data.
  • BAttach a vault lock policy to an S3 Glacier vault that contains the archived data.
  • CConfigure S3 Object Lock in governance mode.
  • DConfigure S3 Object Lock in governance mode.

How the community answered

(28 responses)
  • A
    4% (1)
  • B
    82% (23)
  • C
    4% (1)
  • D
    11% (3)

Explanation

While the policy is in the in-progress state, you have 24 hours to validate your Vault Lock policy before the lock ID expires. To prevent your vault from exiting the in-progress state, you must complete the Vault Lock process within these 24 hours. Otherwise, your Vault Lock policy will be https://docs.aws.amazon.com/amazonglacier/latest/dev/vault-lock.html#vault-lock-overview

Topics

#S3 Glacier#vault lock policy#WORM compliance#data immutability

Community Discussion

No community discussion yet for this question.

Full SOA-C02 Practice