Q: 2
A company wants to create a chatbot by using a foundation model (FM) on Amazon Bedrock. The FM
needs to access encrypted data that is stored in an Amazon S3 bucket.
The data is encrypted with Amazon S3 managed keys (SSE-S3).
The FM encounters a failure when attempting to access the S3 bucket data.
Which solution will meet these requirements?
Options
Discussion
Its A. The big issue here is really IAM permissions for Bedrock's assumed role to decrypt S3 data, especially with SSE-S3 encryption. Saw similar in AWS docs and official exams, so pretty confident.
C or D? If the question said "most secure" or required sensitive data to stay protected, I'd pick differently, since C feels like a trap if permissions are the main blocker.
Be respectful. No spam.