ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 152 - CLF-C02 discussion

Report
Export

A company's information security manager is supervising a move to AWS and wants to ensure that AWS best practices are followed. The manager has concerns about the potential misuse of AWS account root user credentials.

Which of the following is an AWS best practice for using the AWS account root user credentials?

A.
Allow only the manager to use the account root user credentials for normal activities.
Answers
A.
Allow only the manager to use the account root user credentials for normal activities.
B.
Use the account root user credentials only for Amazon EC2 instances from the AWS Free Tier.
Answers
B.
Use the account root user credentials only for Amazon EC2 instances from the AWS Free Tier.
C.
Use the account root user credentials only when they alone must be used to perform a required function.
Answers
C.
Use the account root user credentials only when they alone must be used to perform a required function.
D.
Use the account root user credentials only for the creation of private VPC subnets.
Answers
D.
Use the account root user credentials only for the creation of private VPC subnets.
Suggested answer: C

Explanation:

The AWS best practice for using the AWS account root user credentials is to use them only when they alone must be used to perform a required function. The AWS account root user credentials have full access to all the resources in the account, and therefore pose a security risk if compromised or misused. You should create individual IAM users with the minimum necessary permissions for everyday tasks, and use AWS Organizations to manage multiple accounts. You should also enable multi-factor authentication (MFA) and rotate the password for the root user regularly. Some of the functions that require the root user credentials are changing the account name, closing the account, changing the support plan, and restoring an IAM user's access.

asked 16/09/2024
najim faryabi
29 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first