A banking company is currently using an Amazon Redshift cluster with dense storage (DS) nodes to store sensitive data. An audit found that the cluster is unencrypted. Compliance requirements state that a database with sensitive data must be encrypted through a hardware security module (HSM) with automated key rotation. Which combination of steps is required to achieve compliance? (Choose two.)
A) Set up a trusted connection with HSM using a client and server certificate with automatic key rotation.
B) Modify the cluster with an HSM encryption option and automatic key rotation.
C) Create a new HSM-encrypted Amazon Redshift cluster and migrate the data to the new cluster.
D) Enable HSM with key rotation through the AWS CLI.
E) Enable Elliptic Curve Diffie-Hellman Ephemeral (ECDHE) encryption in the HSM.
Correct Answer:
Verified
Q1: A mortgage company has a microservice for
Q2: An ecommerce company stores customer purchase data
Q3: A data analyst is designing a solution
Q4: A global company has different sub-organizations, and
Q5: An airline has .csv-formatted data stored in
Q7: A company analyzes its data in an
Q8: A large company receives files from external
Q9: An Amazon Redshift database contains sensitive user
Q10: A company developed a new elections reporting
Q11: A data analyst is using Amazon QuickSight
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents