nerdexam
Amazon

SOA-C03 · Question #25

A company is using AWS CloudTrail and wants to ensure that SysOps administrators can easily verify that the log files have not been deleted or changed. Which action should a SysOps administrator take

Sign in or unlock SOA-C03 to reveal the answer and full explanation for question #25. The question stem and answer options stay visible for context.

Submitted by devops_kid· Mar 5, 2026Security and compliance

Question

A company is using AWS CloudTrail and wants to ensure that SysOps administrators can easily verify that the log files have not been deleted or changed. Which action should a SysOps administrator take to meet this requirement?

Options

  • AGrant administrators access to the AWS Key Management Service (AWS KMS) key used to
  • BEnable CloudTrail log file integrity validation when the trail is created or updated.
  • CTurn on Amazon S3 server access logging for the bucket storing the log files.
  • DConfigure the S3 bucket to replicate the log files to another bucket.

Unlock SOA-C03 to see the answer

You've previewed enough free SOA-C03 questions. Unlock SOA-C03 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#CloudTrail log integrity#log file validation#audit#tamper detection
Full SOA-C03 Practice