A company has an AWS account for each department and wants to consolidate billing and reduce overhead. The company wants to make sure that the finance team is denied from accessing services other than Amazon EC2, the security team is denied from accessing services other than AWS CloudTrail, and IT can access any resource. Which solution meets these requirements with the LEAST amount of operational overhead?
A) Create a role for each department within AWS IAM and assign each role the necessary permissions.
B) Create a user for each department within AWS IAM and assign each user the necessary permissions.
C) Implement service control policies within AWS Organizations to determine which resources each department can access.
D) Place each department into an organizational unit (OU) within AWS Organizations and use IAM policies to determine which resources they can access.
Correct Answer:
Verified
Q456: A company designed a specialized Amazon EC2
Q457: A recent AWS CloudFormation stack update has
Q458: A SysOps Administration team is supporting an
Q459: A company has deployed its infrastructure using
Q460: A SysOps Administrator has implemented a VPC
Q462: A company in a highly regulated industry
Q463: A company is managing a website with
Q464: A company has a multi-account AWS environment
Q465: A company recently migrated from a third-party
Q466: A SysOps Administrator needs to control access
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents