nerdexam
Amazon

SOA-C02 · Question #90

A large company is using AWS Organizations to manage its multi-account AWS environment. According to company policy, all users should have read-level access to a particular Amazon S3 bucket in a centr

Sign in or unlock SOA-C02 to reveal the answer and full explanation for question #90. The question stem and answer options stay visible for context.

Submitted by lukas.cz· Mar 30, 2026Security and Compliance

Question

A large company is using AWS Organizations to manage its multi-account AWS environment. According to company policy, all users should have read-level access to a particular Amazon S3 bucket in a central account. The S3 bucket data should not be available outside the organization. A SysOps administrator must set up the permissions and add a bucket policy to the S3 bucket. Which parameters should be specified to accomplish this in the MOST efficient manner?

Options

  • ASpecify "*" as the principal and PrincipalOrgId as a condition.
  • BSpecify all account numbers as the principal.
  • CSpecify PrincipalOrgId as the principal.
  • DSpecify the organization's master account as the principal.

Unlock SOA-C02 to see the answer

You've previewed enough free SOA-C02 questions. Unlock SOA-C02 for full answers, explanations, the timed quiz mode, progress tracking, and the master PDF. Question stem and options stay visible so you can still see what's on the exam.

Topics

#S3 bucket policy#AWS Organizations#PrincipalOrgId#IAM principals
Full SOA-C02 Practice