Answer: A
AWS Secrets Manager helps in securely storing encrypted credentials and ensures retrieval when required. The use of AWS Secrets Manager eliminates the need for hard-coding credentials in the application.
AWS Encryption SDK is the encryption library that makes client-side encryption best-practice easier. The encryption libraries facilitate cryptographic services and do not require AWS or any AWS service.
AWS Security Hub gives you a comprehensive view of your high-priority security alerts and security posture across your AWS accounts.
AWS Artifact is a central resource for all the information pertaining to compliance. AWS artifact provides on-demand access to compliance reports at no additional cost.
Option A is CORRECT as AWS secrets Manager is an easy way to store encrypted credentials and perform on-demand retrieval safely.
Option B is INCORRECT because AWS Encryption SDK does not facilitate storing and retrieving the credentials but makes implementation of the client-side encryption best practices easier.
Option C is INCORRECT because AWS Security Hub facilitates the view of high-priority security alerts and provides a view of the security landscape across AWS accounts.
Option D is INCORRECT as AWS artifacts does not help with the credentials storing and retrieval, but facilitates information pertaining to compliance centrally.
Reference:
https://docs.aws.amazon.com/secretsmanager/
https://docs.aws.amazon.com/encryption-sdk/latest/developer-guide/introduction.html
https://aws.amazon.com/security-hub/
https://docs.aws.amazon.com/artifact/