Multiple Choice
A company has multiple AWS accounts. The company uses AWS Organizations with an organizational unit (OU) for the production account and another OU for the development account. Corporate policies state that developers may use only approved AWS services in the production account. What is the MOST operationally efficient solution to control the production account?
A) Create a customer managed policy in AWS Identity and Access Management (IAM) . Apply the policy to all users within the production account.
B) Create a job function policy in AWS Identity and Access Management (IAM) . Apply the policy to all users within the production OU.
C) Create a service control policy (SCP) . Apply the SCP to the production OU.
D) Create an IAM policy. Apply the policy in Amazon API Gateway to restrict the production account.
Correct Answer:

Verified
Correct Answer:
Verified
Q98: A company has a business application hosted
Q99: An e-commerce company hosts its website on
Q100: A user has launched multiple EC2 instances
Q101: A SysOps Administrator created an AWS Service
Q102: A user has launched an EC2 instance
Q104: Your VPC automatically comes with a modifiable
Q105: A company needs to run a distributed
Q106: An organization has configured Auto Scaling for
Q107: A user needs to put sensitive data
Q108: A company wants to reduce costs across