Identity and access management is a capability of the Security perspective of the AWS Cloud Adoption Framework. AWS describes this capability as securely managing human and machine identities and their permissions to cloud services and resources. It focuses on ensuring that the correct users, systems, and services receive access to the correct resources under appropriate conditions. This includes creating identities in AWS, connecting external identity sources, granting permissions, applying least privilege, and managing access at organizational scale. Therefore, option D is correct. The Operations perspective focuses on delivering cloud services, monitoring workloads, managing events, and maintaining reliable operations. The Platform perspective addresses cloud architecture, platform engineering, provisioning, and the design of scalable cloud environments. The Governance perspective focuses on areas such as program management, risk, data governance, portfolio management, and cloud financial management. Although governance establishes organizational policies, the specific capability described as managing identities and permissions at scale belongs to the Security perspective. For exam purposes, associate IAM, identity federation, authorization, security monitoring, infrastructure protection, and data protection primarily with the AWS CAF Security perspective.
Submit