Question 1 of 30
In a multi-tenant Heroku application, a company is concerned about the security of its data, especially regarding the potential for unauthorized access to sensitive information. They are considering implementing a security best practice that involves encrypting sensitive data both at rest and in transit. Which of the following strategies would best address their security concerns while ensuring compliance with industry standards such as GDPR and HIPAA?
Implement end-to-end encryption for all sensitive data and utilize secure protocols like HTTPS and TLS for data transmission.
Rely solely on database-level encryption without considering data in transit.
Use only application-level encryption, ignoring the need for secure transmission protocols.
Encrypt data at rest but leave data in transit unencrypted to simplify the architecture.

Preparing for SalesForce Certified Heroku Architecture Designer Certified Heroku Architecture Designer? Now land the interview.

73% of qualified candidates get rejected because of weak resumes. Build an ATS-optimized, recruiter-ready resume in under 5 minutes - free to start.

Build My Resume Free