A company stores sensitive documents in Amazon S3 by using server-side encryption with an IAM Key Management Service (IAM KMS) CMK. A new requirement mandates that the CMK that is used for these documents can be used only for S3 actions.
Which statement should the company add to the key policy to meet this requirement?
A)

B)

To ensure minimal latency and regional availability of secrets, encrypting secrets in us-east-1 with a customer-managed KMS key and then replicating them to us-west-1 for encryption with the same key is the optimal approach. This method leverages customer-managed KMS keys for enhanced control and ensures that secrets are available in both regions, adhering to disaster recovery principles and minimizing latency by using regional endpoints.
Eloisa
3 months agoNiesha
3 months agoJustine
3 months agoRodney
4 months agoSheldon
4 months agoGeraldine
4 months agoGlenn
4 months agoLeatha
4 months agoJesusita
5 months agoMelvin
5 months agoHannah
5 months agoGertude
5 months agoCorrie
5 months agoAnisha
5 months agoJose
5 months agoGarry
5 months agoJerlene
5 months agoDerick
10 months agoCasey
10 months agoTheola
9 months agoNickolas
9 months agoKristin
9 months agoSarina
10 months agoOtis
9 months agoDino
9 months agoLawrence
9 months agoAshlee
10 months agoJordan
8 months agoJames
8 months agoJackie
8 months agoGary
9 months agoLawanda
10 months agoPearly
11 months agoSue
11 months agoLavonna
11 months ago