A government contractor is building a secure document storage platform on AWS for a federal agency. To satisfy the agency's security requirements, the contractor must verify that the underlying AWS infrastructure complies with the Federal Risk and Authorization Management Program (FedRAMP) standards. Which action should the contractor take to obtain the official AWS FedRAMP authorization documents?
- Download the FedRAMP authorization letters and reports directly from AWS Artifact.Cevap
- BConfigure Amazon Inspector to run a compliance assessment on the underlying AWS physical servers.
- CSubmit a technical support ticket requesting the compliance certificates from an AWS Solutions Architect.
- DQuery AWS CloudTrail to audit and export the physical security access logs of the AWS data centers.
Cevap
Download the FedRAMP authorization letters and reports directly from AWS Artifact.
The correct action is to download the FedRAMP authorization letters and reports directly from AWS Artifact. AWS Artifact is the dedicated, self-service portal in the AWS Management Console that provides customers with free, on-demand access to AWS security and compliance reports, such as Service Organization Control (SOC) reports, Payment Card Industry (PCI) reports, and certifications from various global accreditation bodies including FedRAMP.
Adım Adım Çözüm
Anahtar Kavram
AWS Artifact is the primary portal for retrieving AWS security and compliance reports.
Tahmini Süre:1m 0s