CLF-C02 Question 84
Single answerA healthcare company is planning to migrate its patient records to AWS. The company operates in the United States and must comply with the Health Insurance Portability and Accountability Act (HIPAA). Which AWS service or feature is critical for ensuring compliance with HIPAA requirements?
- A
AWS Artifact for accessing compliance reports and agreements
- B
Amazon Macie for monitoring data access patterns
- C
AWS Shield for protecting against DDoS attacks
- D
AWS WAF for filtering malicious web traffic
Show answer and explanation
Correct answer: A
Explanation
Compliance with industry-specific regulations, such as HIPAA for healthcare in the U.S., requires proper agreements and documentation. AWS Artifact is a service that provides access to compliance-related documents, including the Business Associate Addendum (BAA), which is necessary for HIPAA compliance. While other services like Amazon Macie, AWS Shield, and AWS WAF provide security features, they do not specifically address compliance needs like AWS Artifact does.
- A. Correct.
AWS Artifact provides access to compliance reports, certifications, and agreements, including the Business Associate Addendum (BAA) required for HIPAA compliance.
- B. Incorrect.
Amazon Macie is a data security service focused on identifying sensitive data, but it does not directly address HIPAA compliance requirements.
- C. Incorrect.
AWS Shield is a managed DDoS protection service, which is unrelated to compliance with HIPAA requirements.
- D. Incorrect.
AWS WAF is a web application firewall for protecting applications from web-based threats, but it does not directly support HIPAA compliance.