Cyber Monday 2024! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Amazon Exam DAS-C01 Topic 3 Question 96 Discussion

Actual exam question for Amazon's DAS-C01 exam
Question #: 96
Topic #: 3
[All DAS-C01 Questions]

A company uses an Amazon Redshift provisioned cluster for data analysis. The data is not encrypted at rest. A data analytics specialist must implement a solution to encrypt the data at rest.

Which solution will meet this requirement with the LEAST operational overhead?

Show Suggested Answer Hide Answer
Suggested Answer: D

Contribute your Thoughts:

Diane
5 months ago
Hmm, I wonder if the company has any spare hamsters to power the new encrypted cluster. That's the only way option B is going to be 'the least operational overhead'.
upvoted 0 times
...
Adelle
5 months ago
Option A? Seriously? Who uses LZO encoding these days? That's like using a rotary phone to make a call.
upvoted 0 times
Josefa
3 months ago
D) Modify the existing Redshift cluster to use AWS Key Management Service (AWS KMS) encryption. Wait for the cluster to finish resizing.
upvoted 0 times
...
Ezekiel
3 months ago
C) Create a manual snapshot of the existing Redshift cluster. Restore the snapshot into a new Redshift cluster with encryption configured.
upvoted 0 times
...
Sophia
3 months ago
B) Export data from the existing Redshift cluster to Amazon S3 by using the UNLOAD command with the ENCRYPTED option. Create a new Redshift cluster with encryption configured. Load data into the new cluster by using the COPY command.
upvoted 0 times
...
Lizette
4 months ago
D) Modify the existing Redshift cluster to use AWS Key Management Service (AWS KMS) encryption. Wait for the cluster to finish resizing.
upvoted 0 times
...
Leandro
4 months ago
C) Create a manual snapshot of the existing Redshift cluster. Restore the snapshot into a new Redshift cluster with encryption configured.
upvoted 0 times
...
Nelida
4 months ago
B) Export data from the existing Redshift cluster to Amazon S3 by using the UNLOAD command with the ENCRYPTED option. Create a new Redshift cluster with encryption configured. Load data into the new cluster by using the COPY command.
upvoted 0 times
...
...
Tawanna
5 months ago
Option C is my pick. Creating a snapshot and restoring it to a new encrypted cluster is a good way to transition without losing any data.
upvoted 0 times
...
Glendora
5 months ago
I'd go with option D. Modifying the existing cluster to use KMS encryption is probably the easiest way to implement encryption without too much hassle.
upvoted 0 times
Lorean
4 months ago
I agree, option D seems like the most efficient way to encrypt the data at rest.
upvoted 0 times
...
Wei
4 months ago
Option D sounds like the best choice. It's a straightforward solution.
upvoted 0 times
...
...
Alverta
5 months ago
Option B seems like the most straightforward solution. Exporting the data to S3 and then loading it into a new encrypted cluster is a pretty clean approach.
upvoted 0 times
Lillian
4 months ago
Yeah, modifying the existing cluster might be more complex compared to just exporting and importing the data into a new encrypted cluster.
upvoted 0 times
...
Michael
4 months ago
Using AWS KMS encryption on the existing cluster seems like it would involve more steps and potential downtime.
upvoted 0 times
...
Rolande
4 months ago
I agree, it's a simple process and ensures the data is encrypted at rest without too much operational overhead.
upvoted 0 times
...
Nguyet
5 months ago
Option B seems like the most straightforward solution. Exporting the data to S3 and then loading it into a new encrypted cluster is a pretty clean approach.
upvoted 0 times
...
...
Daren
5 months ago
But modifying the existing cluster to use AWS KMS encryption seems like a simpler solution to me.
upvoted 0 times
...
Kristine
5 months ago
I disagree, I believe option B is the way to go. Exporting data to S3 and creating a new encrypted cluster seems more efficient.
upvoted 0 times
...
Daren
6 months ago
I think option D is the best choice because it involves minimal operational overhead.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77