Security & ComplianceQuestion 31 of 100
Which principle recommends granting users only the permissions they need to perform their tasks and nothing more?
a.Defense in depth
b.Least privilege
c.Separation of billing
d.Elastic provisioning
Explanation
The principle of least privilege means giving identities only the minimum permissions required for their job. This limits the potential impact if credentials are compromised or misused.
Practice all 100 questions free — no signup required.
Related questions on this topic
- What is the AWS best practice for the root user of an AWS account?
- Which security measure adds a second form of verification, such as a code from a device, when signing in to AWS?
- An application running on an EC2 instance needs to read objects from an S3 bucket. What is the recommended way to grant this access?
- Which AWS service provides a managed distributed denial-of-service (DDoS) protection for applications running on AWS?
- Which service helps protect web applications from common exploits such as SQL injection and cross-site scripting by filtering HTTP requests?
- Which service uses machine learning to automatically discover and classify sensitive data such as personally identifiable information stored in Amazon S3?
Last reviewed: · editorial process
PrepPass Editorial Team · Verified against AWS Certified Cloud Practitioner (CLF-C02) · How we review