Deal of The Day! Hurry Up, Grab the Special Discount - Save 25% - Ends In 00:00:00 Coupon code: SAVE25
Welcome to Pass4Success

- Free Preparation Discussions

Amazon Exam SCS-C02 Topic 2 Question 43 Discussion

Actual exam question for Amazon's SCS-C02 exam
Question #: 43
Topic #: 2
[All SCS-C02 Questions]

A healthcare company has multiple AWS accounts in an organization in AWS Organizations. The company uses Amazon S3 buckets to store sensitive information of patients. The company needs to restrict users from deleting any S3 bucket across the organization.

What is the MOST scalable solution that meets these requirements?

Show Suggested Answer Hide Answer
Suggested Answer: D

Contribute your Thoughts:

Pete
2 months ago
That's a good point, SCPs do provide organization-wide control. But S3 bucket policies can also be used to restrict specific actions on buckets.
upvoted 0 times
...
Sarah
2 months ago
Have you tried turning it off and on again? Just kidding! But seriously, D) SCPs are the way to go. It's like a magic 'no-delete' button for your entire AWS organization. Genius!
upvoted 0 times
Alysa
24 days ago
SCPs definitely make it easier to manage permissions and prevent accidental deletions. It's a scalable solution for sure.
upvoted 0 times
...
Freida
28 days ago
I agree, SCPs are the best option for this scenario. It's a great way to enforce restrictions across multiple AWS accounts.
upvoted 0 times
...
...
Octavio
2 months ago
D) SCPs, baby! It's like having a personal bodyguard for your S3 buckets. No more 'Oops, I deleted the entire company's sensitive data' moments. Boom, problem solved!
upvoted 0 times
Melynda
2 months ago
D) SCPs
upvoted 0 times
...
Brynn
2 months ago
C) Tag policies
upvoted 0 times
...
Chan
2 months ago
B) S3 bucket policies
upvoted 0 times
...
Lai
2 months ago
A) Permissions boundaries in AWS Identity and Access Management (IAM)
upvoted 0 times
...
...
Luis
2 months ago
A) Permissions boundaries? Pfft, that's so last year. D) SCPs are where it's at - simple, scalable, and you can even use them to block access to the snack machine, if you're feeling extra sassy.
upvoted 0 times
...
Hoa
2 months ago
I disagree, I believe the answer is D) SCPs because they can be applied at the organization level.
upvoted 0 times
...
Lanie
2 months ago
I dunno, B) S3 bucket policies sound like a lot of work. Who's got time for that when you can just let D) SCPs do the heavy lifting?
upvoted 0 times
...
Delbert
3 months ago
D) SCPs all the way! Deleting buckets across multiple accounts? That's like trying to herd cats, but with SCPs, you can wrangle those felines like a pro!
upvoted 0 times
James
1 months ago
D) SCPs
upvoted 0 times
...
Ahmad
2 months ago
B) S3 bucket policies
upvoted 0 times
...
Ligia
2 months ago
A) Permissions boundaries in AWS Identity and Access Management (IAM)
upvoted 0 times
...
...
Pete
3 months ago
I think the answer is B) S3 bucket policies.
upvoted 0 times
...

Save Cancel
az-700  pass4success  az-104  200-301  200-201  cissp  350-401  350-201  350-501  350-601  350-801  350-901  az-720  az-305  pl-300  

Warning: Cannot modify header information - headers already sent by (output started at /pass.php:70) in /pass.php on line 77