Bird
0
0

Your company wants to allow temporary access to AWS resources for contractors without creating permanent IAM users. Which approach follows best IAM practices?

hard📝 Best Practice Q15 of 15
AWS - Identity and Access Management
Your company wants to allow temporary access to AWS resources for contractors without creating permanent IAM users. Which approach follows best IAM practices?
AGive contractors permanent access keys with admin permissions
BCreate permanent IAM users with full access for contractors
CShare your root account credentials with contractors
DCreate IAM roles with limited permissions and let contractors assume them
Step-by-Step Solution
Solution:
  1. Step 1: Identify temporary access method

    IAM roles allow temporary credentials that contractors can assume without permanent users.
  2. Step 2: Match best practice

    Creating roles with limited permissions follows least privilege and avoids permanent keys.
  3. Final Answer:

    Create IAM roles with limited permissions and let contractors assume them -> Option D
  4. Quick Check:

    Temporary roles for contractors = best practice [OK]
Quick Trick: Use roles for temporary access, avoid permanent users [OK]
Common Mistakes:
MISTAKES
  • Creating permanent users for contractors
  • Sharing root credentials
  • Giving admin permissions unnecessarily

Want More Practice?

15+ quiz questions · All difficulty levels · Free

Free Signup - Practice All Questions
More AWS Quizzes