Security & ComplianceQuestion 45 of 100
A company wants to centrally manage multiple AWS accounts and apply guardrails that restrict which services accounts can use. Which combination helps?
a.AWS Organizations with service control policies (SCPs)
b.A single shared IAM user across all accounts
c.Amazon Macie with WAF rules
d.Route 53 health checks
Explanation
AWS Organizations lets you centrally manage many accounts, and service control policies set the maximum permissions available to member accounts. This provides guardrails without granting individual permissions.
Practice all 100 questions free — no signup required.
Related questions on this topic
- Which service provides sign-up, sign-in, and access control for web and mobile application users, including identity federation?
- In a VPC, which stateful virtual firewall controls inbound and outbound traffic at the instance level?
- Which statement about network ACLs (NACLs) is correct?
- What does 'encryption in transit' protect?
- Which AWS service can be used to provision and manage SSL/TLS certificates for use with AWS services like load balancers and CloudFront?
- Which of the following is an IAM best practice?
Last reviewed: · editorial process
PrepPass Editorial Team · Verified against AWS Certified Cloud Practitioner (CLF-C02) · How we review