AWS Shared Responsibility for Amazon RDS

Understand the AWS shared responsibility model.
Answer Correct answer: B — The company is responsible for creating IAM policies to control administrative access to the service.

Which task is the responsibility of a company that is using Amazon RDS?

  1. Provision the underlying infrastructure.
  2. Create IAM policies to control administrative access to the service. Correct Answer
  3. Install the cables to connect the hardware for compute and storage.
  4. Install and patch the RDS operating system.

Community Votes

B
75%
D
25%

75% of anonymous learners picked answer B. Votes are pick records left by other test-takers — they are not the verified answer.

Community Insight

The core trap is confusing managed service automation (OS patching) with customer-managed security controls (IAM policies).

This question tests the AWS Shared Responsibility Model specifically for managed database services like Amazon RDS, establishing that customers retain control over identity and access management while AWS handles infrastructure.

Many learners incorrectly select D because they mistakenly believe managing the OS is still a customer responsibility, ignoring that RDS automates this task.

Community Discussion (5 comments)

ShaiTay 👍 1 Selected: B
B. Create IAM policies to control administrative access to the service.
2dd0f97 👍 1
RDS is a serveless service, YOU DON'T MANAGE THE OPERATING SYSTEM, but you control access to you data, so B is the answer
valuedate 👍 2 Selected: B
RDS is a serveless service
e59311f 👍 1 Selected: D
D from chat GPT
Eromo 👍 1
The RDS does It automates time-consuming administration tasks such as hardware provisioning, database setup, patching, and backups, allowing you to focus on your applications. D is the answer.

Comments & Corrections

No comments yet — spotted an error or have a note? Share it below.

Log in to comment, report an error, or add a note about this question.

Submitted for moderation before publishing. Keep it helpful and respectful.

Expert Analysis

Why the Answer Is Correct

Correct answer: B — The company must create IAM policies to control administrative access to the service. Under the AWS Shared Responsibility Model, AWS manages the security OF the cloud, which includes provisioning underlying infrastructure (Option A), installing cables (Option C), and maintaining the guest operating system (Option D). The customer is responsible for security IN the cloud, which explicitly includes configuring Identity and Access Management (IAM) policies to control who can access the RDS instances.

Why the Other Options Are Wrong

Options A, C, and D describe tasks that are fully automated by the RDS service or handled by AWS physical operations. Customers do not provision hardware or manage cabling. Furthermore, one of the primary benefits of RDS is that it automates database setup, backups, and software patching, including the operating system level, relieving the customer of these burdens.

Community Comment Notes

The community consensus strongly supports Option B. As user ShaiTay noted, "B is the answer" because RDS is a serverless/managed service where you don't manage the OS but do control access. User 2dd0f97 reinforced this by stating, "YOU DON'T MANAGE THE OPERATING SYSTEM, but you control access to you data." While some users suggested D based on external AI tools, the correct doctrine places OS patching under AWS responsibility for managed services.

Exam Strategy

When answering questions about managed services (RDS, Lambda, DynamoDB), immediately eliminate any option related to physical infrastructure, OS patching, or hardware provisioning, as these are always AWS responsibilities in the Shared Responsibility Model.

Frequently Asked Questions

Does AWS patch the RDS operating system?

Yes, Amazon RDS automatically manages the maintenance of the guest operating system, including applying security patches and updates.

What does 'Security IN the Cloud' mean for RDS?

It refers to customer responsibilities such as managing data encryption, configuring security groups, and creating IAM policies for access control.

Related Analysis

Practice All CLF-C02 Questions

Access 120 questions with complete answers and detailed explanations.

View Full CLF-C02 Practice Test →

← Back to CLF-C02 Study Guide