AWS CLF-C02 Practice Question
Which AWS service is used to create and manage the encryption keys that protect your data at rest
Question
Which AWS service is used to create and manage the encryption keys that protect your data at rest?
AAWS Shield
BAWS KMS ✓
CAWS Config
DAmazon GuardDuty
Correct Answer: B
AWS KMS
Why this is the right answer
Explanation: AWS Key Management Service (KMS) lets you create, rotate and manage encryption keys used to encrypt data at rest in AWS services.
Every AWS Cloud Practitioner question on this site comes from the four official CLF-C02 exam domains. Practice the full domain set in our free timed mock exam and review every topic in the CLF-C02 study guide.
Try this question in the interactive practice test
Start free in seconds — no signup, no credit card. Practice questions, timed mock exams with the official 70% pass threshold, and flashcards.
Related
More Security & Compliance questions
16Under the shared responsibility model, who is responsible for patching the guest operating system of an EC2 instance?18Which service records API activity in your AWS account for auditing and governance?19Which service continuously monitors your AWS environment for malicious or unauthorized behavior?20Which AWS service provides a web application firewall to protect applications from common web exploits such as SQL injection?21Which AWS service protects your applications from distributed denial-of-service (DDoS) attacks?