Security & Compliance第 45 / 100 题
A company wants to centrally manage multiple AWS accounts and apply guardrails that restrict which services accounts can use. Which combination helps?
a.AWS Organizations with service control policies (SCPs)
b.A single shared IAM user across all accounts
c.Amazon Macie with WAF rules
d.Route 53 health checks
解析
AWS Organizations lets you centrally manage many accounts, and service control policies set the maximum permissions available to member accounts. This provides guardrails without granting individual permissions.
免费刷完整 100 道题库 — 无需注册。
同考点相关题目
- Which service provides sign-up, sign-in, and access control for web and mobile application users, including identity federation?
- In a VPC, which stateful virtual firewall controls inbound and outbound traffic at the instance level?
- Which statement about network ACLs (NACLs) is correct?
- What does 'encryption in transit' protect?
- Which AWS service can be used to provision and manage SSL/TLS certificates for use with AWS services like load balancers and CloudFront?
- Which of the following is an IAM best practice?