Bird
0
0

An AWS environment uses Security Groups, NACLs, and IAM policies but still faces data leaks. What is a likely missing defense in depth layer?

medium📝 Debug Q7 of 15
AWS - Advanced Security
An AWS environment uses Security Groups, NACLs, and IAM policies but still faces data leaks. What is a likely missing defense in depth layer?
AData encryption at rest and in transit
BMore open network access
CRemoving IAM policies
DDisabling CloudTrail logging
Step-by-Step Solution
Solution:
  1. Step 1: Review existing layers

    Network controls and IAM policies are present but data leaks occur.
  2. Step 2: Identify missing protection

    Encryption protects data even if access controls fail.
  3. Final Answer:

    Data encryption at rest and in transit -> Option A
  4. Quick Check:

    Missing layer = Encryption protects data [OK]
Quick Trick: Encrypt data to stop leaks [OK]
Common Mistakes:
  • Thinking open access helps
  • Removing IAM policies
  • Disabling logging helps security

Want More Practice?

15+ quiz questions · All difficulty levels · Free

Free Signup - Practice All Questions
More AWS Quizzes