ExamGecko
Question list
Search
Search

List of questions

Search

Related questions











Question 112 - SAP-C02 discussion

Report
Export

A company is developing and hosting several projects in the AWS Cloud. The projects are developed across multiple AWS accounts under the same organization in AWS Organizations. The company requires the cost lor cloud infrastructure to be allocated to the owning project. The team responsible for all of the AWS accounts has discovered that several Amazon EC2 instances are lacking the Project tag used for cost allocation.

Which actions should a solutions architect take to resolve the problem and prevent it from happening in the future? (Select THREE.)

A.
Create an AWS Config rule in each account to find resources with missing tags.
Answers
A.
Create an AWS Config rule in each account to find resources with missing tags.
B.
Create an SCP in the organization with a deny action for ec2:Runlnstances if the Project tag is missing.
Answers
B.
Create an SCP in the organization with a deny action for ec2:Runlnstances if the Project tag is missing.
C.
Use Amazon Inspector in the organization to find resources with missing tags.
Answers
C.
Use Amazon Inspector in the organization to find resources with missing tags.
D.
Create an IAM policy in each account with a deny action for ec2:RunInstances if the Project tag is missing.
Answers
D.
Create an IAM policy in each account with a deny action for ec2:RunInstances if the Project tag is missing.
E.
Create an AWS Config aggregator for the organization to collect a list of EC2 instances with the missing Project tag.
Answers
E.
Create an AWS Config aggregator for the organization to collect a list of EC2 instances with the missing Project tag.
F.
Use AWS Security Hub to aggregate a list of EC2 instances with the missing Project tag.
Answers
F.
Use AWS Security Hub to aggregate a list of EC2 instances with the missing Project tag.
Suggested answer: A, B, E

Explanation:

https://docs.aws.amazon.com/config/latest/developerguide/config-rule-multi-account-deployment.html

https://docs.aws.amazon.com/config/latest/developerguide/aggregate-data.html

https://docs.aws.amazon.com/organizations/latest/userguide/orgs_manage_policies_scps_examples_tagging.html

asked 16/09/2024
Solomon Waya
40 questions
User
Your answer:
0 comments
Sorted by

Leave a comment first