Medium1 markMultiple Choice
Domain 1.3: Data SecurityDomain 1SecurityS3

AWS SAA-C03 · Question 13 · Domain 1.3: Data Security

A company must store financial records in Amazon S3 for 7 years. During this time, the records cannot be deleted or modified by anyone, including the root user. Which S3 feature should be used?

Answer options:

A.

S3 Versioning

B.

S3 Object Lock in Governance mode

C.

S3 Object Lock in Compliance mode

D.

S3 Lifecycle Policies

How to approach this question

Differentiate between Compliance and Governance modes.

Full Answer

C.S3 Object Lock in Compliance mode✓ Correct
S3 Object Lock in Compliance mode
In Compliance mode, a protected object version cannot be overwritten or deleted by any user, including the root user in your AWS account.

Common mistakes

Selecting Governance mode, which can be bypassed.

Practice the full AWS SAA-C03 Practice Exam 2

65 questions · hints · full answers · grading

More questions from this exam