
AWSCertified Solutions Architect - Associate
Domain 1Objective 1
Task 1.1: Design Secure Access to AWS Resources SAA-C03 Practice Questions (Page 7)
Part of the Design Secure Architectures domain, which makes up ~18% of our current practice bank. AWS does not publish an official question count, but from its 130-minute exam (~50–85 total, ~9–15 in this domain), expect 3–5 from this objective — we provide 37 practice questions to prepare you well beyond it. (estimate)
37questions here
8free pages
14concepts
Questions 31–35
- 31
A company is setting up a new multi-account AWS environment. The company wants to ensure that all accounts are governed by a set of security policies and that new accounts are created with a baseline configuration. What should a solutions architect use?
Select an answer first - 32
A developer needs to grant an IAM user permission to list objects in a single S3 bucket. Which IAM policy action best follows the principle of least privilege?
Select an answer first - 33
A company has a policy that requires all IAM users to use multi-factor authentication (MFA) when accessing the AWS Management Console. A solutions architect needs to enforce this policy. What should the solutions architect do?
Select an answer first - 34
Which component of AWS Control Tower provides ongoing governance by detecting and preventing policy violations?
Select an answer first - 35
Which IAM feature is designed to provide temporary credentials for an EC2 instance to access an S3 bucket?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by AWS. “SAA-C03” is a trademark of its owner, used for identification only.