Security & Compliance第 54 / 100 题
What is the benefit of using temporary security credentials provided by IAM roles instead of long-term access keys?
a.They never expire, so they are easier to manage
b.They automatically expire, reducing the risk if they are exposed
c.They grant full administrative access by default
d.They are stored permanently in application code
解析
Temporary credentials from roles expire automatically after a short period, limiting the window of exposure if they are leaked. This is more secure than long-term keys, which remain valid until manually rotated or deleted.
免费刷完整 100 道题库 — 无需注册。
同考点相关题目
- Which of the following is an IAM best practice?
- Which service aggregates security findings from services like GuardDuty, Inspector, and Macie into a single dashboard and runs automated best-practice checks?
- A customer stores objects in Amazon S3 and wants AWS to manage the encryption keys and apply encryption automatically. Which option fits?
- Which statement best distinguishes an IAM user from an IAM role?
- According to the shared responsibility model, who is responsible for classifying data and configuring access controls on it?
- Which service would you use to get automated recommendations that include security checks such as identifying publicly accessible resources or missing MFA on the root account?