Security & ComplianceCâu 48 / 100
Which of the following is an IAM best practice?
a.Attach permissions directly to each individual user
b.Use the root account for daily API calls
c.Disable MFA to simplify sign-in
d.Grant permissions using groups and roles rather than long-term keys where possible
Giải thích
IAM best practices include using groups and roles to manage permissions, applying least privilege, enabling MFA, and rotating or avoiding long-term credentials. Managing permissions through groups scales better than per-user policies.
Luyện miễn phí toàn bộ 100 câu hỏi — không cần đăng ký.
Câu hỏi liên quan cùng chủ đề
- A company wants to centrally manage multiple AWS accounts and apply guardrails that restrict which services accounts can use. Which combination helps?
- What does 'encryption in transit' protect?
- Which AWS service can be used to provision and manage SSL/TLS certificates for use with AWS services like load balancers and CloudFront?
- Which service aggregates security findings from services like GuardDuty, Inspector, and Macie into a single dashboard and runs automated best-practice checks?
- A customer stores objects in Amazon S3 and wants AWS to manage the encryption keys and apply encryption automatically. Which option fits?
- Which statement best distinguishes an IAM user from an IAM role?
Cập nhật gần nhất: · quy trình kiểm tra
Đội Ngũ Biên Tập PrepPass · Đối chiếu với AWS Certified Cloud Practitioner (CLF-C02) · Quy trình kiểm tra