Welcome to ExamTopics
ExamTopics Logo
- Expert Verified, Online, Free.
exam questions

Exam AWS Certified Solutions Architect - Associate SAA-C03 All Questions

View all questions & answers for the AWS Certified Solutions Architect - Associate SAA-C03 exam

Exam AWS Certified Solutions Architect - Associate SAA-C03 topic 1 question 634 discussion

A company collects 10 GB of telemetry data daily from various machines. The company stores the data in an Amazon S3 bucket in a source data account.

The company has hired several consulting agencies to use this data for analysis. Each agency needs read access to the data for its analysts. The company must share the data from the source data account by choosing a solution that maximizes security and operational efficiency.

Which solution will meet these requirements?

  • A. Configure S3 global tables to replicate data for each agency.
  • B. Make the S3 bucket public for a limited time. Inform only the agencies.
  • C. Configure cross-account access for the S3 bucket to the accounts that the agencies own.
  • D. Set up an IAM user for each analyst in the source data account. Grant each user access to the S3 bucket.
Show Suggested Answer Hide Answer
Suggested Answer: C 🗳️

Comments

Chosen Answer:
This is a voting comment (?) , you can switch to a simple comment.
Switch to a voting comment New
xBUGx
Highly Voted 7 months, 1 week ago
What if other agencies don't have an aws account?
upvoted 6 times
chickenmf
7 months ago
then we politely tell them "no."
upvoted 8 times
...
...
pentium75
Highly Voted 9 months, 2 weeks ago
Selected Answer: C
A doesn't exist B is a big "hell no" D is a bad practice, even with IAM you'd use groups
upvoted 6 times
...
awsgeek75
Most Recent 9 months ago
Selected Answer: C
Others have given reason by ABD are wrong. In case you need it, here is an AWS example exercise of understanding option C https://docs.aws.amazon.com/AmazonS3/latest/userguide/example-walkthroughs-managing-access-example2.html
upvoted 4 times
...
TariqKipkemei
10 months, 2 weeks ago
Selected Answer: C
With cross-account bucket permissions Account A—can grant another AWS account, Account B, permission to access its resources such as buckets and objects. Account B can then delegate those permissions to users in its account. https://docs.aws.amazon.com/AmazonS3/latest/userguide/example-walkthroughs-managing-access-example2.html#:~:text=4%3A%20Clean%20up-,An%20AWS%20account,-%E2%80%94for%20example%2C%20Account
upvoted 2 times
...
NickGordon
11 months, 1 week ago
Selected Answer: C
C is the best answer
upvoted 2 times
...
cciesam
11 months, 1 week ago
Selected Answer: D
C may not correct as it's doesn't say if the analyst are using AWS services
upvoted 1 times
NickGordon
11 months, 1 week ago
in that case, an analyst user group should be created and the access should be assigned to the group. So C is better
upvoted 2 times
...
awsgeek75
9 months ago
"consulting agencies" means some companies which may have one or more analysts each. Making IAM users for each individual to manage permissions is not well-architected. You would at least create groups and assign it to users. D will work as it is possible but it won't minimize "operational efficiency"
upvoted 1 times
...
...
potomac
11 months, 2 weeks ago
Selected Answer: C
I think it is C
upvoted 1 times
...
Community vote distribution
A (35%)
C (25%)
B (20%)
Other
Most Voted
A voting comment increases the vote count for the chosen answer by one.

Upvoting a comment with a selected answer will also increase the vote count towards that answer by one. So if you see a comment that you already agree with, you can upvote it instead of posting a new comment.

SaveCancel
Loading ...