AWS Certified DevOps Engineer – ProfessionalSDLC AutomationEasy

A development team is building a new application that will use a shared library published internally. They need a secure and efficient way to store, manage, and retrieve these private software packages (e.g., Maven, npm, PyPI packages) within their AWS CI/CD pipeline. What is the most appropriate AWS service to use for this purpose?

  1. AAWS CodeCommit
  2. BAWS Secrets Manager
  3. CAmazon S3
  4. DAWS CodeArtifact
Show answer & explanation

Correct answer: D. AWS CodeArtifact

AWS CodeArtifact is a fully managed artifact repository service that makes it easy for organizations to securely store, publish, and share software packages used in their development process. It supports popular package managers like Maven, npm, and PyPI, making it the ideal solution for managing application dependencies.

Why the other options are wrong

  • A. AWS CodeCommit is a source control service for Git repositories, not for storing compiled software packages or managing dependencies.
  • B. AWS Secrets Manager is for securely storing and managing secrets (e.g., API keys, database credentials), not for software packages.
  • C. Amazon S3 can store files, but it's not designed as a package manager with versioning, dependency resolution, and native integration for popular package managers like CodeArtifact.

AWS CodeArtifact

A fully managed artifact repository service that allows organizations to securely store, publish, and share software packages used in their development process.

  • Supports popular package managers (Maven, npm, PyPI, NuGet).
  • Integrates with CodeBuild and CodePipeline.
  • Centralizes package management for an organization.
  • Can fetch packages from public repositories.

Memory trick: Artifacts are coded for easy storage and sharing.

More SDLC Automation questions