SCS-C02 Security Logging and Monitoring Practice Question
An organization has a requirement to retain all security logs for at least 7 years for compliance. The logs are stored in Amazon S3 and are rarely accessed. Which storage class is the MOST cost-effective for this retention period?
⚠ Common exam trap
Many candidates choose S3 Intelligent-Tiering thinking it automatically optimizes costs for long-term storage, but they overlook the per-object monitoring fee and the fact that for data that is never accessed after initial storage, Glacier Deep Archive is cheaper because it has no automation overhead.
Answer choices
Why each option matters
Answer the question above first, then reveal the full breakdown to understand why each option is right or wrong.
Correct answer & explanation
✓
S3 Glacier Deep Archive
S3 Glacier Deep Archive is the most cost-effective storage class for data that is rarely accessed and must be retained for 7 years. It offers the lowest storage cost among S3 classes, designed specifically for long-term retention of archival data where retrieval times of 12 hours are acceptable. The compliance requirement for 7-year retention aligns perfectly with Glacier Deep Archive's intended use case, minimizing costs while meeting the retention mandate.
Answer analysis
Option-by-option breakdown
For each option: why learners choose it and why it is or isn't the right answer here.
- ✓
S3 Glacier Deep Archive
Why this is correct
S3 Glacier Deep Archive is the correct choice for 7-year security log retention because it provides the lowest storage cost of any S3 storage class, designed specifically for long-term, rarely accessed archival data. It offers 99.999999999% durability across multiple Availability Zones and a standard retrieval time of 12 hours, which is acceptable for compliance-oriented logs that are seldom retrieved. The one-time retrieval fee and minimum 180-day storage period are outweighed by the dramatic per-GB savings over the full 7-year cycle.
- ✗
S3 Standard
Why it's wrong here
S3 Standard is designed for frequently accessed data with high throughput and low latency. Storing 7 years of security logs in Standard would incur significantly higher per-GB storage fees than archival tiers without providing any retrieval benefit, since the logs are not accessed regularly. Additionally, Standard has no minimum storage duration but also no cost-reducing mechanism for dormant data, making it the most expensive option over a long retention period.
- ✗
S3 One Zone-IA
Why it's wrong here
S3 One Zone-IA is meant for infrequently accessed data in a single Availability Zone, offering cost savings compared to Standard but with less durability (99.999999999% is reduced to 99.99% object durability). For compliance logs that must be retained for 7 years, this loses redundancy and does not meet typical regulatory requirements. Moreover, its per-GB storage price is still materially higher than Glacier Deep Archive, and it lacks the deep archive lifecycle that would minimize costs over such a long horizon.
- ✗
S3 Intelligent-Tiering
Why it's wrong here
S3 Intelligent-Tiering automatically moves objects between access tiers to optimize costs based on changing patterns, but it charges a monthly monitoring and automation fee per object. For known, stable, low-access security logs retained 7 years, that per-object fee adds avoidable overhead that directly makes it more expensive than a static archival class. Although Intelligent-Tiering can eventually guide data toward archive tiers, it does so under its own cost model, and for predictable retention, directly selecting Glacier Deep Archive avoids the extra fees while achieving the same archive outcome.
Quick reference
AWS S3 Storage Class Comparison
| Storage Class | Min Duration | Retrieval | Use Case |
|---|---|---|---|
| S3 Standard | None | Immediate | Frequently accessed data |
| S3 Standard-IA | 30 days | Immediate | Infrequent access, rapid retrieval |
| S3 One Zone-IA | 30 days | Immediate | Non-critical infrequent data |
| S3 Intelligent-Tiering | None | Immediate–hours | Unknown or changing access patterns |
| S3 Glacier Instant | 90 days | Milliseconds | Archive with instant retrieval |
| S3 Glacier Flexible | 90 days | Minutes–hours | Archive, flexible retrieval |
| S3 Glacier Deep Archive | 180 days | Hours | Long-term compliance archive |
Go deeper
Related to this question
About these practice questions
One of 1,205 original SCS-C02 practice questions on Courseiva, each with a full explanation and wrong-answer analysis — not exam dumps or protected exam content. Learn why practice questions differ from exam dumps →
JA
Written by Johnson Ajibi, MSc IT Security
Senior Network & Security Engineer · founder of Courseiva
This SCS-C02 practice question is part of Courseiva's free Amazon Web Services certification practice question bank. Courseiva provides original exam-style practice questions with explanations, topic-based practice, mock exams, readiness tracking, and study analytics to help learners prepare for the SCS-C02 exam.