AWS Certified Security – Specialty — Question 166

A large company wants its Compliance team to audit its Amazon S3 buckets to identify if personally identifiable information (PII) is stored in them. The company has hundreds of S3 buckets and has asked the Security Engineers to scan every bucket.
How can this task be accomplished?

Answer options

Correct answer: B

Explanation

The correct answer is B because Amazon Macie is specifically designed to classify and protect sensitive data like PII in S3 buckets, making it the most suitable choice for the task. Other options, while involving monitoring or alerting mechanisms, do not provide the same targeted scanning capabilities for PII as Amazon Macie does.