Which duty is a responsibility of AWS under the AWS shared responsibility model?
Identity and access management
Server-side encryption (SSE)
Firewall configuration
Maintaining physical hardware
Explanations:
Identity and access management (IAM) is primarily the customer’s responsibility. AWS provides IAM tools, but customers must configure and manage user access and permissions.
Server-side encryption (SSE) is a feature that customers can enable on their data stored in AWS services. While AWS provides the service and underlying encryption methods, customers are responsible for managing their data encryption settings.
Firewall configuration, such as setting up security groups and network ACLs, is the responsibility of the customer. AWS provides the tools to configure firewalls, but customers must implement and manage these configurations.
Maintaining physical hardware is an AWS responsibility. AWS manages the infrastructure, including the physical security and maintenance of the data centers, servers, and networking equipment.