A biotechnology startup uses Amazon DynamoDB to store and query gene sequencing metadata. To comply with industry security regulations, the startup must implement strict access control and verify compliance of the cloud environment. Under the AWS Shared Responsibility Model, which of the following is a responsibility of the customer?
- Managing the identity and access management (IAM) policies that regulate access to the database tablesCevap
- BPatching the underlying operating system and database engine of the hosting servers
- CAttaching a stateful security group directly to the DynamoDB tables to restrict network access
- DScheduling a physical audit of the AWS data centers where the database is hosted to verify compliance
Cevap
Managing the identity and access management (IAM) policies that regulate access to the database tables
For managed services like Amazon DynamoDB, AWS handles infrastructure, hardware, and operating system management. The customer remains responsible for data access controls, which is achieved by defining and managing identity and access management (IAM) policies.
Adım Adım Çözüm
Anahtar Kavram
Under the AWS Shared Responsibility Model, security of the database platform and infrastructure is the responsibility of AWS, while configuring data access controls (such as IAM policies) remains the responsibility of the customer.
Tahmini Süre:1m 30s