AWS S3 provides multiple options to achieve the protection of data at REST. The options includePermission (Policy), Encryption (Client and Server Side), Bucket Versioning and MFA based delete.The user can enable any of these options to achieve data protection. Data replication is an internalfacility by AWS where S3 replicates each object across all the Availability Zones and the organizationneed not enable it in this case. Reference: http://media.amazonwebservices.com/AWS_Security_Best_Practices.pdf