Question 1 of 30
A company is deploying a new application on AWS that handles sensitive customer data. The application is designed to comply with the General Data Protection Regulation (GDPR). To ensure the security of the data at rest and in transit, the company decides to implement encryption. Which of the following strategies would best ensure compliance with GDPR while maintaining the security of the application?
Use AWS Key Management Service (KMS) to manage encryption keys and encrypt data at rest using AES-256 encryption, while also using TLS 1.2 for data in transit.
Store encryption keys in the application code and use symmetric encryption for data at rest, while relying on HTTP for data in transit.
Use a third-party encryption service for data at rest and implement no encryption for data in transit, as the application is hosted in a private subnet.
Encrypt data at rest using RSA encryption and use a self-signed certificate for data in transit.

Preparing for Amazon DVA-C02 AWS Certified Developer – Associate (DVA-C02)? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free