nerdexam
Amazon

CLF-C02 · Question #823

A global media company uses AWS Organizations to manage multiple AWS accounts. Which AWS service or feature can the company use to limit the access to AWS services for member accounts?

The correct answer is B. Service control policies (SCPs). In AWS Organizations, you can centrally control permissions for the accounts in your organization by using service control policies (SCPs). SCPs enable you to place restrictions on the AWS services, resources, and individual API actions that users and roles in each account can ac

Submitted by lars.no· Mar 6, 2026Security and Compliance

Question

A global media company uses AWS Organizations to manage multiple AWS accounts. Which AWS service or feature can the company use to limit the access to AWS services for member accounts?

Options

  • AAWS Identity and Access Management (IAM)
  • BService control policies (SCPs)
  • COrganizational units (OUs)
  • DAccess control lists (ACLs)

How the community answered

(65 responses)
  • A
    5% (3)
  • B
    88% (57)
  • C
    6% (4)
  • D
    2% (1)

Explanation

In AWS Organizations, you can centrally control permissions for the accounts in your organization by using service control policies (SCPs). SCPs enable you to place restrictions on the AWS services, resources, and individual API actions that users and roles in each account can access.

Community Discussion

No community discussion yet for this question.

Full CLF-C02 Practice