As a healthcare company moves patient records to a cloud-based storage service, compliance with regulations that mandate protection of sensitive health data is required. What approach provides an essential benefit for securing this sensitive information when it is stored on the service?
Activating a service that records and audits every interaction with the storage containers.
Employing virtual firewall rules to the storage containers to prevent unauthorized access.
Configuring network barriers to control the flow of information into and out of the storage environment.
Drafting an internal security policy that details the encryption procedures without implementing them.
Adjusting the access policy of the storage containers to 'private' without enabling specific secure storage features.
Enabling server-side encryption with the storage service's managed keys for the files.
Encrypting data when it is stored (data at rest) ensures that unauthorized users cannot read the data, which aligns with industry best practices for protecting sensitive information. Using the cloud service's managed encryption keys (SSE) to secure the files ensures each piece of data is encrypted with a unique key while the handling and rotation of keys are managed automatically. The incorrect answers do not pertain to data at rest encryption: Option B merely adjusts access permissions without encrypting content, Option C addresses network traffic security, Option D tracks activity instead of actively securing data, Option E is non-actionable as it enforces no real encryption, and Option F pertains to network traffic filtering, not data encryption.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is server-side encryption (SSE) in cloud storage?
Open an interactive chat with Bash
How do managed encryption keys enhance data security?
Open an interactive chat with Bash
What are the risks of not encrypting data at rest in the cloud?
Open an interactive chat with Bash
AWS Cloud Practitioner CLF-C02
Security and Compliance
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
IT & Cybersecurity Package Join Premium for Full Access