A company has an AWS account. The company wants to audit its password and access key rotation details for compliance purposes. Which AWS service or tool will meet this requirement?
The Correct answer is C.
IAM Access Analyzer: Analyzes IAM policies to identify potential issues and excessive permissions, but doesn't specifically focus on password and access key rotation details.
AWS Artifact: Primarily used for managing and tracking infrastructure as code (IaC) configurations, not directly related to credential auditing.
IAM credential report: This built-in IAM feature provides detailed information about the rotation history of user passwords and access keys within the account. It shows dates of last password and access key rotation, along with usernames and key IDs. This aligns perfectly with the requirement of auditing password and access key rotation details for compliance purposes.
AWS Audit Manager: Offers a comprehensive platform for managing and automating audits across various AWS services, but it requires additional setup and configuration compared to the readily available IAM credential report
AWS Artifact, available in the console, is a self-service audit artifact retrieval portal that provides our customers with on-demand access to AWS’ compliance documentation and AWS agreements.
You can use AWS Artifact Reports to download AWS security and compliance documents, such as AWS ISO certifications, Payment Card Industry (PCI), and System and Organization Control (SOC) reports.
You can use AWS Artifact Agreements to review, accept, and track the status of AWS agreements such as the Business Associate Addendum (BAA).
The Correct answer is C.
You can use credential reports to assist in your auditing and compliance efforts. You can use the report to audit the effects of credential lifecycle requirements, such as password and access key updates.
https://docs.aws.amazon.com/IAM/latest/UserGuide/id_credentials_getting-report.html
he IAM credential report is an AWS tool that provides detailed information about the status of IAM users' passwords and access keys, including when they were last rotated, whether they are active, and if they are using multi-factor authentication (MFA). This report is ideal for auditing password and access key rotation, which aligns with the company's compliance requirements
he IAM credential report is an AWS tool that provides detailed information about the status of IAM users' passwords and access keys, including when they were last rotated, whether they are active, and if they are using multi-factor authentication (MFA). This report is ideal for auditing password and access key rotation, which aligns with the company's compliance requirements
The answer is IAM Credential report -
The IAM credenatial report is used for auditing and compliance efforts .The report is used to audit the effects of credential lifecycle management such as passwords and access key update s.
The Correct answer is C.
You can use credential reports to assist in your auditing and compliance efforts. You can use the report to audit the effects of credential lifecycle requirements, such as password and access key updates.
https://docs.aws.amazon.com/IAM/latest/UserGuide/id_credentials_getting-report.html
C. IAM credential report: The IAM (Identity and Access Management) credential report is a detailed report that lists all users in an AWS account and the status of their various credentials, including password and access key rotation details. It provides information necessary for auditing password and access key rotation activities for compliance purposes.
IAM credential report, is the AWS service or tool that will meet the company's requirement to audit password and access key rotation details.
The other options are described as follows:
A. IAM Access Analyzer: Analyzes resource policies in your AWS environment to help you identify and address unintended access.
B. AWS Artifact: Provides on-demand access to AWS compliance reports and documents.
D. AWS Audit Manager: Helps you continuously audit your AWS usage to simplify how you assess risk and compliance with regulations and industry standards.
While these services may be useful for compliance purposes, they do not specifically address the requirement for auditing password and access key rotation details.
A voting comment increases the vote count for the chosen answer by one.
Upvoting a comment with a selected answer will also increase the vote count towards that answer by one.
So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.
Pyrus
Highly Voted 1 year, 3 months agokhaledsmq
7 months, 1 week agoAnyio
Highly Voted 1 year, 6 months agoSir_Kay
Most Recent 2 months agoSir_Kay
2 months agoDipa_2910
2 months, 1 week agoGPFT
8 months agoDmag
1 year, 1 month agoRuffyit
1 year, 2 months agoTheFivePips
1 year, 3 months agolunamuller
1 year, 5 months agoinkedia3
1 year, 6 months ago