Spring Sale Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Amazon Web Services AWS Certified Security – Specialty SCS-C03 Question # 13 Topic 2 Discussion

Amazon Web Services AWS Certified Security – Specialty SCS-C03 Question # 13 Topic 2 Discussion

SCS-C03 Exam Topic 2 Question 13 Discussion:
Question #: 13
Topic #: 2

A company has a large fleet of Amazon Linux 2 Amazon EC2 instances that run an application processing sensitive data. Compliance requirements include no exposed management ports, full session logging, and authentication through AWS IAM Identity Center. DevOps engineers occasionally need access for troubleshooting.

Which solution will provide remote access while meeting these requirements?


A.

Grant access to the EC2 serial console and allow IAM role access.


B.

Enable EC2 Instance Connect and configure security groups accordingly.


C.

Assign an EC2 instance role that allows access to AWS Systems Manager. Create an IAM policy that grants access to Systems Manager Session Manager and assign it to an IAM Identity Center role.


D.

Use Systems Manager Automation to temporarily open remote access ports.


Get Premium SCS-C03 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.