Protect AI inputs, logs, and artifacts.
Address storage and communication threats separately.
Choose two correct statements.
At-rest encryption protects stored data and in-transit encryption protects network paths; both still require key management, authorization, and auditing.
Detailed explanation
It addresses storage access.
It addresses storage access.
It protects service-to-service communication.
It protects service-to-service communication.
Key users and permissions still need control.
Key users and permissions still need control.
Storage and transport are different locations.
Storage and transport are different locations.
Try it yourself
An example you can run in a temporary verification environment.
AWS公式AIF-C01 Domain 5.1の保存時・転送時暗号化、KMS、IAMを確認する。Expected result
暗号化の対象と、鍵・認可・監査が別に必要な理由を説明できる。Key points
- At rest
- In transit
- Key management
Notes
- Environment: AWS公式AIF-C01試験ガイドとAWS公式ドキュメントの確認
- Command output formatting can vary slightly by distribution or tool version.
- Run the example in a temporary directory or process when possible.
Foundation review
Read the scope first
Check whether the command acts on the current shell, a new process, an existing process, or a file.
Verify the observable result
Use the supplied command and compare the output with the expected result.