nerdexam
Amazon

AIF-C01 · Question #88

A company wants to develop a large language model (LLM) application by using Amazon Bedrock and customer data that is uploaded to Amazon S3. The company's security policy states that each team can…

The correct answer is A. Create an Amazon Bedrock custom service role for each team that has access to only the team's. To comply with the company's security policy, which restricts each team to access data for only their own customers, creating an Amazon Bedrock custom service role for each team is the correct solution.

Submitted by hans_de· Mar 30, 2026Security

Question

A company wants to develop a large language model (LLM) application by using Amazon Bedrock and customer data that is uploaded to Amazon S3. The company's security policy states that each team can access data for only the team's own customers. Which solution will meet these requirements?

Options

  • ACreate an Amazon Bedrock custom service role for each team that has access to only the team's
  • BCreate a custom service role that has Amazon S3 access. Ask teams to specify the customer
  • CRedact personal data in Amazon S3. Update the S3 bucket policy to allow team access to
  • DCreate one Amazon Bedrock role that has full Amazon S3 access. Create IAM roles for each

How the community answered

(37 responses)
  • A
    81% (30)
  • B
    11% (4)
  • C
    5% (2)
  • D
    3% (1)

Explanation

To comply with the company's security policy, which restricts each team to access data for only their own customers, creating an Amazon Bedrock custom service role for each team is the correct solution.

Topics

#Amazon Bedrock#Amazon S3#IAM Service Roles#Data Access Control

Community Discussion

No community discussion yet for this question.

Full AIF-C01 Practice