Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Amazon Web Services AWS Certified Solutions Architect - Associate (SAA-C03) SAA-C03 Question # 244 Topic 25 Discussion

Amazon Web Services AWS Certified Solutions Architect - Associate (SAA-C03) SAA-C03 Question # 244 Topic 25 Discussion

SAA-C03 Exam Topic 25 Question 244 Discussion:
Question #: 244
Topic #: 25

A company uses an organization in AWS Organizations to manage five AWS accounts. The company requires a centralized solution to prevent anyone from creating IAM users or access keys in any account.

Which solution will meet this requirement with the LEAST administrative overhead?


A.

Attach a service control policy SCP to the organization root that denies the creation of IAM users and access keys.


B.

Add IAM inline policies to every user that block the creation of IAM users and access keys.


C.

Enable Amazon GuardDuty in a delegated administrator account to detect the creation of IAM users and access keys.


D.

Create AWS Config rules to automatically delete new IAM users and access keys after they are created.


Get Premium SAA-C03 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.