Identity and Access Management Flashcards

1
Q

What is an IAM role?

A

Permissions granted a trusted ENTITY over specified AWS resources. An IAM role is meant to be assigned to a trusted ENTITY (like another AWS service or a federated identity).

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
2
Q

What are valid third-party federated identity standards?

A

SAML 2.0

Active Directory

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
3
Q

What information does the IAM credential report provide?

A

The current state of security of your IAM users’ access credentials

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
4
Q

What will you need to provide for a new IAM user you’re creating who will use “programmatic access” to AWS resources?

A

An access key ID + secret access key

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
5
Q

What type of key will encrypt your data while in transit between your office and Amazon S3?

A

A client-side master key (in-transit encryption requires that the data be encrypted on the remote client before uploading)

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
6
Q

What does KMS use to encrypt objects stored on your AWS account?

A

Customer master key

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
7
Q

What is the purpose of the Service Organization Controls (SOC) reports found on AWS Artifact?

A

They attest to AWS infrastructure compliance with data accountability standards like Sarbanes-Oxley. SOC reports are reports on audits on AWS infrastructure that you can use as part of your own reporting requirements.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly
8
Q

What role can the documents provided by AWS Artifact play in your application planning?

A

They can help you confirm that your deployment infrastructure is compliant with regulatory standards.

They can provide insight into various regulatory and industry standards that represent best practices.

How well did you know this?
1
Not at all
2
3
4
5
Perfectly