Ultimate access to all questions.
A company is implementing a new AWS environment and requires an authorization strategy that supports both internal employees and external contractors. The authorization requirements for these two groups differ significantly, with internal employees needing broader access and contractors requiring more restrictive access. How would you design an authorization strategy that accommodates these differing requirements while maintaining security and compliance?