A security engineer needs to ensure CloudTrail logs stored in S3 cannot be deleted by anyone, including administrators, for 7 years. Which feature should they enable?
-
A
S3 bucket versioning
-
B
S3 Object Lock in Compliance mode
-
C
S3 lifecycle policies
-
D
S3 server-side encryption