Summer Certification Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: force70

Amazon Web Services AWS Certified Security – Specialty SCS-C03 Question # 14 Topic 2 Discussion

Amazon Web Services AWS Certified Security – Specialty SCS-C03 Question # 14 Topic 2 Discussion

SCS-C03 Exam Topic 2 Question 14 Discussion:
Question #: 14
Topic #: 2

A company is undergoing a security audit. The company issues IAM user credentials for an auditor. Because of third-party integration requirements, the auditor is unable to assume an IAM role. The auditor attempts to log in to AWS for the first time to reset the account password and to configure multi-factor authentication (MFA). However, the auditor receives an “Access Denied” error during the attempt to reset the password.

The auditor’s account has the following IAM permissions:

securityhub:Get*

securityhub:List*

securityhub:BatchGet*

securityhub:Describe*

iam:ChangePassword on arn:aws:iam::*:user/${aws:username}

Which action will resolve this error?


A.

The auditor needs to configure MFA before resetting the password.


B.

The auditor must create a more complex password that requires additional characters or symbols.


C.

Add iam:GetAccountPasswordPolicy with Resource: " * " to the auditor’s user account policy.


D.

Add iam:ChangePassword with Resource: " * " to the auditor’s user account policy.


Get Premium SCS-C03 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.