nerdexam
AmazonAmazon

SAA-C03 · Question #484

SAA-C03 Question #484: Real Exam Question with Answer & Explanation

Sign in or unlock SAA-C03 to reveal the answer and full explanation for question #484. The question stem and answer options stay visible for context.

Submitted by rohit_dlh· Mar 4, 2026Design Secure Architectures

Question

A multinational company operates in multiple AWS Regions. The company must ensure that its developers and administrators have secure, role-based access to AWS resources. The roles must be specific to each user's geographic location and job responsibilities. The company wants to implement a solution to ensure that each team can access only resources within the team's Region. The company wants to use its existing directory service to manage user access. The existing directory service organizes users into roles based on location. The system must be capable of integrating seamlessly with multi-factor authentication (MFA). Which solution will meet these requirements?

Options

  • AUse AWS Security Token Service (AWS STS) to generate temporary access tokens. Integrate
  • BConfigure AWS IAM Identity Center with federated access. Integrate IAM Identity Center with the
  • CCreate IAM managed policies that restrict access by location. Apply policies based on group
  • DUse custom Lambda functions to dynamically assign IAM policies based on login location and job

Unlock SAA-C03 to see the answer

You've previewed enough free SAA-C03 questions. Unlock SAA-C03 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full SAA-C03 PracticeBrowse All SAA-C03 Questions