nerdexam
Amazon

SOA-C02 · Question #746

A SysOps administrator needs to implement a solution to back up a company's Amazon S3 objects. The solution also must prevent any entity from deleting the backups after 7 days. Which solution will…

The correct answer is B. Configure AWS Backup to back up the S3 resource type. Configure AWS Backup Vault Lock in. AWS Backup can protect S3 and, with Backup Vault Lock in compliance mode, makes backups immutable - no one (even root) can delete them before the retention you set (7 days). The grace period (“changeable” days) simply lets you adjust the policy initially; after that, deletions…

Submitted by brentm· Mar 30, 2026Reliability and Business Continuity

Question

A SysOps administrator needs to implement a solution to back up a company’s Amazon S3 objects. The solution also must prevent any entity from deleting the backups after 7 days. Which solution will meet these requirements?

Options

  • AConfigure AWS Backup to back up the S3 resource type. Configure AWS Backup Vault Lock in
  • BConfigure AWS Backup to back up the S3 resource type. Configure AWS Backup Vault Lock in
  • CConfigure S3 Object Lock on all S3 buckets. Set a retention period of 60 days.
  • DConfigure S3 Object Lock on all S3 buckets. Set a legal hold on all S3 objects.

How the community answered

(38 responses)
  • A
    5% (2)
  • B
    84% (32)
  • C
    8% (3)
  • D
    3% (1)

Explanation

AWS Backup can protect S3 and, with Backup Vault Lock in compliance mode, makes backups immutable - no one (even root) can delete them before the retention you set (7 days). The grace period (“changeable” days) simply lets you adjust the policy initially; after that, deletions are blocked until retention expires.

Topics

#AWS Backup#Backup Vault Lock#S3 backup#immutable backup

Community Discussion

No community discussion yet for this question.

Full SOA-C02 Practice