DEA-C01 exam dumps

DEA-C01 practice question 237 of 550

AWS Certified Data Engineer - Associate. Associate level, Amazon Web Services. Free question with the correct answer and a full explanation.

DEA-C01 Question 237

Select 2

A retail company stores customer data in Amazon S3, including sensitive information such as payment details. To comply with GDPR and other regional data privacy laws, the company must delete customer data upon request. Which of the following steps can ensure the data is deleted securely and irreversibly?

  1. A

    Use S3 Object Lock to make the objects immutable for a specified time period before deletion.

  2. B

    Enable S3 Versioning and use the DELETE marker to hide the object.

  3. C

    Configure an S3 Lifecycle policy to permanently delete objects after a specific duration.

  4. D

    Use the DELETE Object API operation and verify the deletion by checking for the absence of the object key.

  5. E

    Enable S3 Cross-Region Replication to ensure data is deleted from all replicated regions.

Show answer and explanation

Correct answers: C, D

Explanation

To comply with business and legal requirements, data deletion must be secure and irreversible. Configuring an S3 Lifecycle policy ensures automated and permanent deletion of objects. Additionally, using the DELETE Object API operation and verifying the absence of the object provides immediate and secure deletion. Other options such as S3 Object Lock and DELETE markers do not guarantee permanent or immediate deletion, and Cross-Region Replication is unrelated to secure deletion processes.

  • A. Incorrect.

    Using S3 Object Lock would prevent the deletion of objects during the lock period, which contradicts the requirement to delete data upon request.

  • B. Incorrect.

    Using a DELETE marker with S3 Versioning only hides the object and does not permanently delete it. Older versions of the object still exist, which does not meet the requirement for secure deletion.

  • C. Correct.

    Configuring an S3 Lifecycle policy to permanently delete objects ensures the data is removed after a set duration, satisfying the requirement for secure deletion.

  • D. Correct.

    Using the DELETE Object API operation and verifying the deletion by checking for the absence of the object key ensures the data is deleted immediately and irreversibly, meeting the legal requirements.

  • E. Incorrect.

    S3 Cross-Region Replication ensures redundancy but does not help with secure deletion. It only ensures that data is deleted across regions if deletion is triggered, but it is not a direct solution for secure and immediate deletion.

Timed practice exam

Take a DEA-C01 practice test under exam conditions

65 questions in 130 minutes, drawn from this bank, with a score report and a per-question review when you finish.

Start timed exam