SCS-C02 · Question #224
A company has an application that needs to read objects from an Amazon S3 bucket. The company configures an IAM policy and attaches the policy to an IAM role that the application uses. When the applic
Sign in or unlock SCS-C02 to reveal the answer and full explanation for question #224. The question stem and answer options stay visible for context.
Question
A company has an application that needs to read objects from an Amazon S3 bucket. The company configures an IAM policy and attaches the policy to an IAM role that the application uses. When the application tries to read objects from the S3 bucket, the application receives AccessDenied errors. A security engineer must resolve this problem without decreasing the security of the S3 bucket or the application. Which solution will meet these requirements?
Options
- AAttach a resource policy to the S3 bucket to grant read access to the role.
- BLaunch a new deployment of the application in a different AWS Region. Attach the role to the
- CReview the IAM policy by using AWS Identity and Access Management Access Analyzer to
- DEnsure that the S3 Block Public Access feature is disabled on the S3 bucket. Review AWS
Unlock SCS-C02 to see the answer
You've previewed enough free SCS-C02 questions. Unlock SCS-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.