List of questions
Related questions
Question 258 - SOA-C02 discussion
A company's application currently uses an IAM role that allows all access to all AWS services. A SysOps administrator must ensure that the company's IAM policies allow only the permissions that the application requires.
How can the SysOps administrator create a policy to meet this requirement?
A.
Turn on AWS CloudTrail. Generate a policy by using AWS Security Hub.
B.
Turn on Amazon EventBridge (Amazon CloudWatch Events). Generate a policy by using AWS Identity and Access Management Access Analyzer.
C.
Use the AWS CLI to run the get-generated-policy command in AWS Identity and Access Management Access Analyzer.
D.
Turn on AWS CloudTrail. Generate a policy by using AWS Identity and Access Management Access Analyzer.
Your answer:
0 comments
Sorted by
Leave a comment first