In AWS, which security aspects are the customer’s responsibility? Choose 4 answers
A.
Decommissioning storage devices
B.
Patch management on the EC2 instance’s operating system
C.
Controlling physical access to compute resources
D.
Security Group and ACL (Access Control List) settings
E.
Life-cycle management of IAM credentials
F.
Encryption of EBS (Elastic Block Storage) volumes
Explanation:
A. is wrong
B,D,E,F
I agree with the answer. ABDE
Answer is BDEF , ” Decommissioning storage devices “, is Amazon’s responsibility
Decommissioning is AWS responsability not Customer.
B D E F
Agree with BDEF
bdef
Patch management on the EC2 instance’s operating system is controlled by AWS, so it cant be B.
So I say A.D.E.F.
Never mind it is BDEF, I just checked current information on https://aws.amazon.com/compliance/shared-responsibility-model/
BDEF is correct. Patch Management of Amazon Owned and maintained services like RDS and its os management and patch management is Amazon and rest all comes to customer.
B, D, E, F
https://aws.amazon.com/compliance/shared-responsibility-model/
For EC2, we should consider Shared Responsibility Model for Infrastructure Services, and in this case Operating System is customer’s responsibility, so B is correct.
A,B,D,& E
B D E F
A and C are AWS’s responsibility so answer is B D E and F
BDEF