A team stores data in Amazon S3 and uses Amazon SageMaker Studio notebooks. Which configuration ensures controlled, private data flow from S3 into SageMaker Studio?
Choose an answer
Tap an option to check your answer.
Correct answer: Configure SageMaker to run in a VPC and use an S3 VPC endpoint..
Why this is the answer
Configuring SageMaker to run in a Virtual Private Cloud (VPC) and using an S3 VPC endpoint ensures controlled, private data flow. A VPC endpoint for S3 allows SageMaker Studio notebooks to access S3 buckets directly from within your VPC using private IP addresses, bypassing the public internet. This enhances security and reduces latency. Amazon Inspector and Amazon Macie are security services for vulnerability management and data discovery/classification, respectively; they do not control network traffic flow. Moving data to S3 Glacier Deep Archive is for long-term, infrequent access archival, not for active SageMaker processing, and doesn't address private network connectivity.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed