Courseiva
Data Operations and SupportmediumMultiple ChoiceObjective-mapped

DEA-C01 Data Operations and Support Practice Question

Network Topology
aws s3api get-bucket-versioningbucket my-bucketaws s3api put-bucket-versioningversioning-configuration Status=SuspendedRefer to the exhibit.```Output:```json"Status": "Enabled","MFADelete": "Enabled"

A data engineer attempts to suspend versioning on an S3 bucket but receives the error shown. The engineer needs to suspend versioning to reduce storage costs. What should the engineer do FIRST?

Answer choices

Why each option matters

Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.

Correct answer & explanation

Disable MFA Delete by using the AWS CLI with the --mfa parameter and then suspend versioning.

To suspend versioning on an S3 bucket with MFA Delete enabled, you must first disable MFA Delete using the root account (or an account with appropriate permissions). The AWS CLI with the --mfa parameter is used to authenticate with MFA when performing sensitive operations, but disabling MFA Delete requires the root account. After disabling MFA Delete, versioning can be suspended. Option B is incorrect because the AWS Management Console does not bypass MFA Delete; you still need to disable MFA Delete first. Option C is incorrect because deleting and recreating the bucket is unnecessarily disruptive and versioning can be suspended directly after disabling MFA Delete. Option D is incorrect because the error is due to MFA Delete being enabled, not a bucket policy issue.

Answer analysis

Option-by-option breakdown

For each option: why learners choose it and why it is or isn't the right answer here.

  • Disable MFA Delete by using the AWS CLI with the --mfa parameter and then suspend versioning.

    Why this is correct

    MFA Delete must be disabled first; this requires the root account and MFA device.

  • Use the AWS Management Console to suspend versioning, as it bypasses MFA Delete.

    Why it's wrong here

    The console also enforces MFA Delete; the error would persist.

  • Delete the bucket and recreate it without versioning.

    Why it's wrong here

    This would cause data loss and is not a recommended practice.

  • Add a bucket policy to allow versioning suspension.

    Why it's wrong here

    Bucket policies do not override the MFA Delete requirement.

Quick reference

AWS S3 Storage Class Comparison

Storage ClassMin DurationRetrievalUse Case
S3 StandardNoneImmediateFrequently accessed data
S3 Standard-IA30 daysImmediateInfrequent access, rapid retrieval
S3 One Zone-IA30 daysImmediateNon-critical infrequent data
S3 Intelligent-TieringNoneImmediate–hoursUnknown or changing access patterns
S3 Glacier Instant90 daysMillisecondsArchive with instant retrieval
S3 Glacier Flexible90 daysMinutes–hoursArchive, flexible retrieval
S3 Glacier Deep Archive180 daysHoursLong-term compliance archive

About these practice questions

Courseiva writes every DEA-C01 question from scratch — 1,711 in total, each with an explanation and a wrong-answer breakdown. None are copied from real exams or dumps. Learn why practice questions differ from exam dumps →

How Courseiva writes practice questions · Editorial policy

JA

Written by Johnson Ajibi, MSc IT Security

Senior Network & Security Engineer · founder of Courseiva

This DEA-C01 practice question is part of Courseiva's free Amazon Web Services certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the DEA-C01 exam.