Encryption Strategies with KMS and ACM Quiz

5 questions Pass: 70% +25 pts

Quiz covering Security Controls

Encryption Strategies with KMS and ACM Quiz

5 questions | Pass: 70% | Earn 25 points

Questions in this quiz

A preview of the 5 questions covered. Start the quiz above to answer them, check your score, and read the explanations.

  1. 1

    Which AWS service is primarily used to manage SSL/TLS certificates for web servers and integrated services like Elastic Load Balancing?

  2. 2

    When using AWS KMS, what is the primary difference between a Customer Managed Key (CMK) and an AWS Managed Key?

  3. 3

    An organization needs to encrypt data in S3 but must maintain full control over the lifecycle of the encryption keys, including the ability to audit key usage and rotate keys manually. Which approach should they use?

  4. 4

    A developer is configuring an application to use ACM certificates. Why would the developer be unable to export a private key from an ACM-issued certificate?

  5. 5

    In a scenario involving envelope encryption, what is the purpose of the Data Encryption Key (DEK) compared to the Root Key (or Key Encryption Key)?