List of questions
Related questions
Question 473 - SCS-C01 discussion
A company's security engineer has been tasked with restricting a contractor's 1AM account access to the company's Amazon EC2 console without providing access to any other AWS services The contractors 1AM account must not be able to gain access to any other AWS service, even it the 1AM account rs assigned additional permissions based on 1AM group membership What should the security engineer do to meet these requirements''
A.
Create an mime 1AM user policy that allows for Amazon EC2 access for the contractor's 1AM user
B.
Create an 1AM permissions boundary policy that allows Amazon EC2 access Associate the contractor's 1AM account with the 1AM permissions boundary policy
C.
Create an 1AM group with an attached policy that allows for Amazon EC2 access Associate the contractor's 1AM account with the 1AM group
D.
Create a 1AM role that allows for EC2 and explicitly denies all other services Instruct the contractor to always assume this role
Your answer:
0 comments
Sorted by
Leave a comment first