Security & ComplianceQuestion 39 of 100
Which service creates, manages, and controls cryptographic keys used to encrypt data across AWS services?
a.AWS CloudHSM only
b.AWS Key Management Service (KMS)
c.Amazon Cognito
d.AWS WAF
Explanation
AWS KMS lets you create and manage encryption keys and integrates with many AWS services to encrypt data at rest. It centralizes key management and controls who can use keys through IAM and key policies.
Practice all 100 questions free — no signup required.
Related questions on this topic
- Which AWS service records API calls and account activity, providing an audit trail of who did what and when?
- Which service continuously assesses your resource configurations and can evaluate them against desired settings for compliance?
- Which service provides on-demand access to AWS compliance reports and agreements such as SOC and PCI documents?
- Which service securely stores and automatically rotates database credentials, API keys, and other secrets?
- Which service scans EC2 instances and container images for software vulnerabilities and unintended network exposure?
- Which service provides sign-up, sign-in, and access control for web and mobile application users, including identity federation?
Last reviewed: · editorial process
PrepPass Editorial Team · Verified against AWS Certified Cloud Practitioner (CLF-C02) · How we review