Amazon DVA-C02 Exam - Topic 2 Question 14 Discussion
A company notices that credentials that the company uses to connect to an external software as a service (SaaS) vendor are stored in a configuration file as plaintext.The developer needs to secure the API credentials and enforce automatic credentials rotation on a quarterly basis.Which solution will meet these requirements MOST securely?
C) Store the credentials in AWS Secrets Manager and enable rotation. Configure the API to have Secrets Manager access.
A) Use AWS Key Management Service (AWS KMS) to encrypt the configuration file. Decrypt the configuration file when users make API calls to the SaaS vendor. Enable rotation.
B) Retrieve temporary credentials from AWS Security Token Service (AWS STS) every 15 minutes. Use the temporary credentials when users make API calls to the SaaS vendor.
D) Store the credentials in AWS Systems Manager Parameter Store and enable rotation. Retrieve the credentials when users make API calls to the SaaS vendor.
Brock
9 months agoShonda
10 months agoAngelica
10 months agoQuentin
10 months agoKristeen
10 months agoAntonette
11 months agoIzetta
11 months agoAmmie
11 months agoCorinne
11 months agoAmber
11 months agoErick
11 months agoArminda
11 months agoCarri
11 months agoCecil
11 months agoJaclyn
11 months agoThurman
11 months ago