SAP-C02 · Question #455
SAP-C02 Question #455: Real Exam Question with Answer & Explanation
The correct answer is B: Create an IAM role in the finance team's account by using IAM policy conditions for specific. https://docs.aws.amazon.com/amazondynamodb/latest/developerguide/using-identity-based-
Question
A company uses AWS Organizations for a multi-account setup in the AWS Cloud. The company's finance team has a data processing application that uses AWS Lambda and Amazon DynamoDB. The company's marketing team wants to access the data that is stored in the DynamoDB table. The DynamoDB table contains confidential data. The marketing team can have access to only specific attributes of data in the DynamoDB table. The finance team and the marketing team have separate AWS accounts. What should a solutions architect do to provide the marketing team with the appropriate access to the DynamoDB table?
Options
- ACreate an SCP to grant the marketing team's AWS account access to the specific attributes of the
- BCreate an IAM role in the finance team's account by using IAM policy conditions for specific
- CCreate a resource-based IAM policy that includes conditions for specific DynamoDB attributes
- DCreate an IAM role in the finance team's account to access the DynamoDB table. Use an IAM
Explanation
https://docs.aws.amazon.com/amazondynamodb/latest/developerguide/using-identity-based-
Community Discussion
No community discussion yet for this question.