nerdexam
AmazonAmazon

SAP-C02 · Question #310

SAP-C02 Question #310: Real Exam Question with Answer & Explanation

Sign in or unlock SAP-C02 to reveal the answer and full explanation for question #310. The question stem and answer options stay visible for context.

Submitted by olafpl· Mar 6, 2026Design Solutions for Organizational Complexity

Question

A financial company with multiple departments wants to expand its on-premises environment to the AWS Cloud. The company must retain centralized access control using an existing on- premises Active Directory (AD) service. Each department should be allowed to create AWS accounts with preconfigured networking and should have access to only a specific list of approved services. Departments are not permitted to have account administrator permissions. What should a solutions architect do to meet these security requirements?

Options

  • AConfigure AWS Identity and Access Management (IAM) with a SAML identity provider (IdP) linked
  • BDeploy an AWS Control Tower landing zone. Create an AD Connector linked to the on-premises
  • CDeploy an Amazon Cloud Directory.
  • DConfigure AWS Directory Service for Microsoft Active Directory with AWS Single Sign-On.

Unlock SAP-C02 to see the answer

You've previewed enough free SAP-C02 questions. Unlock SAP-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full SAP-C02 PracticeBrowse All SAP-C02 Questions