ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 555 - CLF-C02 discussion

Report
Export

Which AWS service or feature identifies whether an Amazon S3 bucket or an IAM role has been shared with an external entity?

A.
AWS Service Catalog
Answers
A.
AWS Service Catalog
B.
AWS Systems Manager
Answers
B.
AWS Systems Manager
C.
AWS IAM Access Analyzer
Answers
C.
AWS IAM Access Analyzer
D.
AWS Organizations
Answers
D.
AWS Organizations
Suggested answer: C

Explanation:

AWS IAM Access Analyzer is a service that helps you identify the resources in your organization and accounts, such as Amazon S3 buckets or IAM roles, that are shared with an external entity. This lets you identify unintended access to your resources and data, which is a security risk. IAM Access Analyzer uses logic-based reasoning to analyze the resource-based policies in your AWS environment. For each instance of a resource shared outside of your account, IAM Access Analyzer generates a finding.Findings include information about the access and the external principal granted to it345.Reference:3:Using AWS Identity and Access Management Access Analyzer,4:IAM Access Analyzer - Amazon Web Services (AWS),5:Welcome - IAM Access Analyzer

asked 16/09/2024
Harikrishnan Santhanadas
42 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first