A new developer needs AWS credentials. Which of the following are recommended security best practices? (Choose two.)
Choose an answer
Tap an option to check your answer.
Correct answer: Grant the developer access only to the AWS resources required to perform the job., Ensure the account password policy enforces a minimum password length..
Why this is the answer
Granting the developer access only to the AWS resources required to perform the job aligns with the principle of least privilege, a fundamental security best practice. This minimizes the potential impact if the developer's credentials are compromised. Ensuring the account password policy enforces a minimum password length is crucial for strong password hygiene, making it harder for unauthorized users to guess or crack passwords. Sharing root user credentials is a severe security risk as the root user has unrestricted access to all resources. Adding the developer to the administrator group grants excessive permissions, violating the principle of least privilege. Preventing a developer from changing their password is poor security practice, as users should be able to update their credentials periodically or if they suspect compromise.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed