What's changed: Deepened SCS-C02 Chapter 5 (added comparison tables, scenarios, FAQs, exam traps, deep-dive paragraphs to each section; localized figures to Japanese)
5.4In-scope services for data protection
A roundup of in-scope SCS-C03 services for data protection.
5.4.1In-scope services for data protection
For data protection, beyond KMS/CloudHSM/Secrets Manager/Macie, know: AWS Private Certificate Authority (a private CA for internal services), Amazon Data Lifecycle Manager (policy-based automation of EBS snapshot/AMI creation/retention/deletion), Amazon S3 (subject to bucket policies/encryption), Amazon Elastic File System and high-performance Amazon FSx for Lustre (shared files), and AWS DataSync (transfer data with encryption and integrity validation).
5.4.2Section summary
- Certs/backup: Private Certificate Authority / Data Lifecycle Manager (snapshot lifecycle)
- Storage/transfer: S3 / EFS / FSx for Lustre / DataSync (encrypted transfer)
Continue reading — free sign-up
You're reading the free preview. Sign up free to read this section in full, plus every chapter (including 4+) and all questions.

