Your company policies require encryption of sensitive data at rest. You are considering the possible options for
protecting data while storing it at rest on an EBS data volume, attached to an EC2 instance. Which of these
options would allow you to encrypt your data at rest? (Choose 3 answers)
A.
Implement third party volume encryption tools
B.
Do nothing as EBS volumes are encrypted by default
C.
Encrypt data inside your applications before storing it on EBS
D.
Encrypt data using native data encryption drivers at the file system level
E.
Implement SSL/TLS for all services running on the server
A,C,D
A, C, D
http://www.aiotestking.com/amazon/which-of-these-options-would-allow-you-to-encrypt-your-data-at-rest/
B. Do nothing… EBS is not encrypted by default, sorry B
E. SSL/TLS is for transport of data over the wire