Security & ComplianceQuestion 48 of 100

Which of the following is an IAM best practice?

a.Attach permissions directly to each individual user
b.Use the root account for daily API calls
c.Disable MFA to simplify sign-in
d.Grant permissions using groups and roles rather than long-term keys where possible

Explanation

IAM best practices include using groups and roles to manage permissions, applying least privilege, enabling MFA, and rotating or avoiding long-term credentials. Managing permissions through groups scales better than per-user policies.

Practice all 100 questions free — no signup required.

Related questions on this topic

Last reviewed: · editorial process

PrepPass Editorial Team · Verified against AWS Certified Cloud Practitioner (CLF-C02) · How we review
Report