Which service should a company use to centrally manage employee access across multiple AWS accounts?
Choose an answer
Tap an option to check your answer.
Correct answer: AWS IAM Identity Center.
Why this is the answer
AWS IAM Identity Center (formerly AWS Single Sign-On) is the correct choice because it provides a centralized way to manage access to multiple AWS accounts and cloud applications. It simplifies the process of assigning user permissions and offers a single sign-on experience for employees. AWS Identity and Access Management Access Analyzer helps identify unintended access to your resources, but it doesn't manage employee access itself. AWS Secrets Manager is used for securely storing and managing secrets like database credentials, not for centralizing user access. AWS Security Token Service (AWS STS) is a web service that requests temporary, limited-privilege credentials for AWS Identity and Access Management (IAM) users or for users authenticated by your identity provider, but it's not a central management service for employee access.
Pass your exam — without the endless answer hunt
Get every verified question and explanation for this exam in one place, and save hours of prep. 1,000+ certifications · 20+ languages · free to start.
Pass your exam faster → No card needed