Amazon Web Services AWS Certified Security - Specialty SCS-C02 Question # 13 Topic 2 Discussion

Amazon Web Services AWS Certified Security - Specialty SCS-C02 Question # 13 Topic 2 Discussion

SCS-C02 Exam Topic 2 Question 13 Discussion:
Question #: 13
Topic #: 2

A company runs a cuslom online gaming application. The company uses Amazon Cognito for user authentication and authorization.

A security engineer wants to use AWS to implement fine-grained authorization on resources in the custom application. The security engineer must implement a solution that uses the user attributes that exist in Cognito. The company has already set up a user pool and an identity pool in Cognito.

Which solution will meet these requirements?


A.

Create a set of 1AM roles and 1AM policies Configure the Cognito identity pool to assign users to the 1AM roles.


B.

Create a policy store in Amazon Verified Permissions. Configure Cognito as the identity source Map Cognito access tokens to the Verified Permissions schema.


C.

Create customer managed permissions by using AWS Resource Access Manager (AWS RAM) Configure the Cognito identity pool to assign users to the customer managed permissions


D.

Create a set of 1AM users and 1AM policies. Configure the Cognito user pool to assign users to the 1AM users.


Get Premium SCS-C02 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.