nerdexam
AmazonAmazon

DOP-C02 · Question #432

DOP-C02 Question #432: Real Exam Question with Answer & Explanation

Sign in or unlock DOP-C02 to reveal the answer and full explanation for question #432. The question stem and answer options stay visible for context.

Submitted by parkjh· Mar 6, 2026Configuration Management and IaC

Question

A company uses AWS Organizations to manage multiple AWS accounts. The company needs a solution to improve the company's management of AWS resources in a production account. The company wants to use AWS CloudFormation to manage all manually created infrastructure. The company must have the ability to strictly control who can make manual changes to AWS infrastructure. The solution must ensure that users can deploy new infrastructure only by making changes to a CloudFormation template that is stored in an AWS CodeConnections compatible Git provider. Which combination of steps will meet these requirements with the LEAST implementation effort? (Select THREE).

Options

  • AConfigure the CloudFormation infrastructure as code (IaC) generator to scan for existing
  • BConfigure AWS Config to scan for existing resources in the AWS account. Create a
  • CUse CodeConnections to establish a connection between the Git provider and AWS
  • DUse CodeConnections to establish a connection between the Git provider and CloudFormation.
  • ECreate an IAM role, and set CloudFormation as the principal. Grant the IAM role access to
  • FCreate an IAM role, and set CloudFormation as the principal. Grant the IAM role access to

Unlock DOP-C02 to see the answer

You've previewed enough free DOP-C02 questions. Unlock DOP-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#Infrastructure as Code (IaC)#AWS CloudFormation#GitOps#Configuration drift#IAM roles
Full DOP-C02 PracticeBrowse All DOP-C02 Questions