A company stores sensitive documents in Amazon S3 by using server-side encryption with an IAM Key Management Service (IAM KMS) CMK. A new requirement mandates that the CMK that is used for these documents can be used only for S3 actions.
Which statement should the company add to the key policy to meet this requirement?
A)

B)

To ensure minimal latency and regional availability of secrets, encrypting secrets in us-east-1 with a customer-managed KMS key and then replicating them to us-west-1 for encryption with the same key is the optimal approach. This method leverages customer-managed KMS keys for enhanced control and ensures that secrets are available in both regions, adhering to disaster recovery principles and minimizing latency by using regional endpoints.
Eloisa
5 months agoNiesha
5 months agoJustine
5 months agoRodney
5 months agoSheldon
6 months agoGeraldine
6 months agoGlenn
6 months agoLeatha
6 months agoJesusita
6 months agoMelvin
6 months agoHannah
6 months agoGertude
6 months agoCorrie
7 months agoAnisha
7 months agoJose
7 months agoGarry
7 months agoJerlene
7 months agoDerick
11 months agoCasey
11 months agoTheola
10 months agoNickolas
10 months agoKristin
11 months agoSarina
12 months agoOtis
11 months agoDino
11 months agoLawrence
11 months agoAshlee
12 months agoJordan
10 months agoJames
10 months agoJackie
10 months agoGary
11 months agoLawanda
1 year agoPearly
1 year agoSue
1 year agoLavonna
1 year ago