
EC-CouncilCloud Security Essentials
Domain 2Objective 1
IAM Fundamentals, Principals, and Roles CSE Practice Questions (Page 6)
Part of the Identity and Access Management in the Cloud domain, which makes up ~12% of our current practice bank.
31questions here
7free pages
6concepts
Questions 26–30
- 26
Which of the following is a type of IAM principal?
Select an answer first - 27
A security audit reveals that many users have permissions they no longer need. The company wants to implement a process to regularly review and remove unnecessary permissions. What is the best practice to implement?
Select an answer first - 28
A company wants to allow a third-party vendor to assume a role in their AWS account, but only if the vendor's identity is from a specific external IdP. The vendor also needs to access resources in a different region. What should the trust policy include?
Select an answer first - 29
Which of the following is an IAM best practice?
Select an answer first - 30
An organization wants to allow its employees to assume a role that grants access to a partner's AWS account. The partner has provided an external ID for the trust policy. What is the purpose of the external ID in the trust policy?
Select an answer first
Finished these 5 questions?
Review the revealed explanations, or continue through the curriculum.
Free Basic Practice is a study aid with revealable answers — not a scored exam. Examers.io is independent and not affiliated with or endorsed by EC-Council. “CSE” is a trademark of its owner, used for identification only.