LeetQuiz Logo
About•Privacy Policy•contact@leetquiz.com
RedditX
© 2026 LeetQuiz All rights reserved.

AWS Certified Cloud Practitioner

AWS Certified Cloud Practitioner


Explanation:

Service control policies (SCPs) are a type of organization policy that you can use to manage permissions in your organization. SCPs offer central control over the maximum available permissions for all accounts in your organization, enabling you to restrict actions by the root user across member accounts efficiently.

Get started today
Ultimate access to all questions.

Question 46.
A company has several member accounts that are in an organization in AWS Organizations. The company recently discovered that administrators have been using account root user credentials. The company must prevent the administrators from using root user credentials to perform any actions on Amazon EC2 instances. What should a SysOps administrator do to meet this requirement?

Exam-Like
Community
RRitesh
Last updated: May 3, 2026 at 18:37
0

    A

    Create an identity-based IAM policy in each member account to deny actions on EC2 instances by the root user.


    B

    In the organization's management account, create a service control policy (SCP) to deny actions on EC2 instances by the root user in all member accounts.


    C

    Use AWS Config to prevent any actions on EC2 instances by the root user.


    D

    Use Amazon Inspector in each member account to scan for root user logins and to prevent any actions on EC2 instances by the root user.

Powered ByOpenAIGPT 5.4 powered

Comments (0)

No comments yet.