nerdexam
CrowdStrike

CCCS-203B · Question #246

CCCS-203B Question #246: Real Exam Question with Answer & Explanation

The correct answer is D. Use an automated cloud registration workflow integrated with identity and access management. Option A: Allowing developers to register cloud accounts without oversight creates a shadow IT problem, making it difficult to enforce security policies and track compliance. Unauthorized or improperly registered accounts may violate regulatory requirements. Option B: Using a sha

Question

A financial services company needs to register multiple cloud accounts while adhering to strict compliance regulations such as SOC 2, GDPR, and HIPAA. The company must ensure that the cloud account registration method provides strong access controls, auditability, and compliance tracking. Which of the following is the best approach?

Options

  • AAllow developers to register their cloud accounts independently with no oversight to speed up
  • BUse a shared service account with a single set of credentials for registering all cloud accounts.
  • CRegister each cloud account using an administrator's personal access credentials.
  • DUse an automated cloud registration workflow integrated with identity and access management

Explanation

Option A: Allowing developers to register cloud accounts without oversight creates a shadow IT problem, making it difficult to enforce security policies and track compliance. Unauthorized or improperly registered accounts may violate regulatory requirements. Option B: Using a shared service account violates least privilege principles and creates compliance risks. If the shared credentials are compromised, multiple accounts could be affected, and it becomes difficult to track individual actions for compliance audits. Option C: Using an administrator's personal credentials introduces security and compliance risks. If the administrator leaves the company or their credentials are compromised, it could affect multiple cloud accounts, violating least privilege access principles. Option D: An automated cloud registration workflow with IAM integration ensures security, auditability, and compliance tracking. IAM policies enforce access controls, ensuring that only authorized users and services can register accounts while maintaining compliance with

Community Discussion

No community discussion yet for this question.

Full CCCS-203B Practice