nerdexam
Amazon

SCS-C02 · Question #36

A company needs a security engineer to implement a scalable solution for multi-account authentication and authorization. The solution should not introduce additional user-managed architectural…

The correct answer is B. Use an IAM Identity Center default directory to create users and groups for all employees that. https://aws.amazon.com/ko/iam/identity-center/faqs/

Submitted by omar99· Mar 6, 2026Identity and Access Management

Question

A company needs a security engineer to implement a scalable solution for multi-account authentication and authorization. The solution should not introduce additional user-managed architectural components. Native AWS features should be used as much as possible. The security engineer has set up AWS Organizations with all features activated and AWS IAM Identity Center (AWS Single Sign-On) enabled. Which additional steps should the security engineer take to complete the task?

Options

  • AUse AD Connector to create users and groups for all employees that require access to AWS
  • BUse an IAM Identity Center default directory to create users and groups for all employees that
  • CUse an IAM Identity Center default directory to create users and groups for all employees that
  • DUse AWS Directory Service for Microsoft Active Directory to create users and groups for all

How the community answered

(36 responses)
  • A
    11% (4)
  • B
    81% (29)
  • C
    3% (1)
  • D
    6% (2)

Explanation

https://aws.amazon.com/ko/iam/identity-center/faqs/

Topics

#IAM Identity Center#AWS Organizations#SSO#multi-account authentication

Community Discussion

No community discussion yet for this question.

Full SCS-C02 Practice