nerdexam
AmazonAmazon

SCS-C02 · Question #480

SCS-C02 Question #480: Real Exam Question with Answer & Explanation

Sign in or unlock SCS-C02 to reveal the answer and full explanation for question #480. The question stem and answer options stay visible for context.

Submitted by jakub_pl· Mar 6, 2026

Question

A company has a large fleet of Amazon Linux 2 Amazon EC2 instances that run an application. The application processes sensitive data and has the following compliance requirements: - No remote access management ports to the EC2 instances can be exposed internally or externally. - All remote session activity must be recorded in an audit log. - All remote access to the EC2 instances must be authenticated and authorized by AWS IAM Identity Center. - The company's DevOps team occasionally needs to connect to one of the EC2 instances to troubleshoot issues. Which solution will provide remote access to the EC2 instances while meeting the compliance requirements?

Options

  • AGrant access to the EC2 serial console at the account level. Create an IAM policy that allows an
  • BEnable EC2 instance Connect on the AMI of the EC2 instances. Configure the appropriate
  • CAssign an EC2 instance role that allows access to AWS Systems Manager. Create an IAM policy
  • DUse AWS Systems Manager Automation runbooks to open remote access ports to the EC2

Unlock SCS-C02 to see the answer

You've previewed enough free SCS-C02 questions. Unlock SCS-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Full SCS-C02 PracticeBrowse All SCS-C02 Questions