AWS Shared Responsibility for Amazon RDS
Which task is the responsibility of a company that is using Amazon RDS?
Community Votes
75% of anonymous learners picked answer B. Votes are pick records left by other test-takers — they are not the verified answer.
Community Insight
The core trap is confusing managed service automation (OS patching) with customer-managed security controls (IAM policies).
This question tests the AWS Shared Responsibility Model specifically for managed database services like Amazon RDS, establishing that customers retain control over identity and access management while AWS handles infrastructure.
Many learners incorrectly select D because they mistakenly believe managing the OS is still a customer responsibility, ignoring that RDS automates this task.
Community Discussion (5 comments)
Comments & Corrections
No comments yet — spotted an error or have a note? Share it below.
Expert Analysis
Why the Answer Is Correct
Correct answer: B — The company must create IAM policies to control administrative access to the service. Under the AWS Shared Responsibility Model, AWS manages the security OF the cloud, which includes provisioning underlying infrastructure (Option A), installing cables (Option C), and maintaining the guest operating system (Option D). The customer is responsible for security IN the cloud, which explicitly includes configuring Identity and Access Management (IAM) policies to control who can access the RDS instances.Why the Other Options Are Wrong
Options A, C, and D describe tasks that are fully automated by the RDS service or handled by AWS physical operations. Customers do not provision hardware or manage cabling. Furthermore, one of the primary benefits of RDS is that it automates database setup, backups, and software patching, including the operating system level, relieving the customer of these burdens.Community Comment Notes
The community consensus strongly supports Option B. As user ShaiTay noted, "B is the answer" because RDS is a serverless/managed service where you don't manage the OS but do control access. User 2dd0f97 reinforced this by stating, "YOU DON'T MANAGE THE OPERATING SYSTEM, but you control access to you data." While some users suggested D based on external AI tools, the correct doctrine places OS patching under AWS responsibility for managed services.Exam Strategy
When answering questions about managed services (RDS, Lambda, DynamoDB), immediately eliminate any option related to physical infrastructure, OS patching, or hardware provisioning, as these are always AWS responsibilities in the Shared Responsibility Model.
Frequently Asked Questions
Does AWS patch the RDS operating system?
Yes, Amazon RDS automatically manages the maintenance of the guest operating system, including applying security patches and updates.
What does 'Security IN the Cloud' mean for RDS?
It refers to customer responsibilities such as managing data encryption, configuring security groups, and creating IAM policies for access control.
Related Analysis
Practice All CLF-C02 Questions
Access 120 questions with complete answers and detailed explanations.
View Full CLF-C02 Practice Test →