AWS Certified Developer Associate DVA-C02 Practice Question
A developer must provision an external service's credentials to an application hosted on a virtual server without embedding them directly into the codebase or configuration files. Which service should the developer implement to securely manage and inject these credentials at runtime?
The correct service for securely managing and injecting credentials at runtime is a dedicated secrets management service. It allows for the encryption, storage, and on-demand retrieval of sensitive configuration details such as database credentials. Specifically, a secrets management service provided by a major cloud provider would enable these credentials to be fetched dynamically by the application without being stored insecurely in the environment or within the application’s source code. Services intended for key management or permissions management are not suited for the dynamic provision of secret material to applications.
Ask Bash
Bash is our AI bot, trained to help you pass your exam. AI Generated Content may display inaccurate information, always double-check anything important.
What is a dedicated secrets management service?
Open an interactive chat with Bash
How does a secrets management service handle encryption?
Open an interactive chat with Bash
Why should I avoid using environment variables for storing sensitive credentials?
Open an interactive chat with Bash
AWS Certified Developer Associate DVA-C02
Security
Your Score:
Report Issue
Bash, the Crucial Exams Chat Bot
AI Bot
Loading...
Loading...
Loading...
IT & Cybersecurity Package Join Premium for Full Access