A retail company wants to store its weekly sales reports in Amazon Simple Storage Service (Amazon S3). To protect this data, they want to enable encryption at rest using cryptographic keys that are fully managed by AWS. Which AWS service is designed to easily create and manage these encryption keys?
- AWS Key Management Service (AWS KMS)Answer
- BAWS CloudHSM
- CAWS CloudTrail
- DAWS Artifact
Answer
AWS Key Management Service (AWS KMS)
AWS Key Management Service (AWS KMS) is a fully managed service that integrates with many AWS services (such as Amazon S3) to easily create, manage, and rotate cryptographic keys used to secure data at rest.
Step-by-Step Solution
Key Concept
AWS Key Management Service (AWS KMS) provides a fully managed, secure solution for creating and controlling cryptographic keys to encrypt data at rest across AWS services.
Estimated Time:45s