Multiple Choice
A SysOps administrator wants to encrypt an existing Amazon RDS DB instance with AWS Key Management Service (AWS KMS) . How should the SysOps administrator accomplish this goal?
A) Copy the data volumes of the unencrypted instance. Apply the KMS key to the copied data volumes. Start the instance with the encrypted volumes.
B) Create a read replica of the unencrypted instance. Encrypt the read replica with the KMS key. Promote the read replica to become the primary instance.
C) Take a snapshot of the unencrypted instance. Apply the KMS key to the existing instance using the modify-db-instance command. Restart the instance.
D) Take a snapshot of the unencrypted instance. Create an encrypted copy of the snapshot with the KMS key. Restore the instance from the encrypted snapshot.
Correct Answer:

Verified
Correct Answer:
Verified
Q46: A developer created a new application that
Q47: A sysops administrator must monitor a fleet
Q48: A user has created a VPC with
Q49: A company has an asynchronous nightly process
Q50: A user has enabled the CloudWatch alarm
Q52: An application is being developed that will
Q53: You have been asked to design a
Q54: An Amazon S3 bucket in a SysOps
Q55: A SysOps Administrator has configured health checks
Q56: A company website hosts patches for software