AWS SAA-C03 · Question 06 · Domain 1.1: Secure Access
A company needs to grant a third-party vendor access to an S3 bucket in its AWS account. The vendor will access the bucket from their own AWS account. What is the MOST secure way to grant this access?
Answer options:
Create an IAM user for the vendor and email them the access keys.
Create an IAM role in the company's account with a trust policy allowing the vendor's account to assume it, and require an External ID.
Make the S3 bucket public and give the vendor the URL.
Use AWS Resource Access Manager (RAM) to share the S3 bucket.
65 questions · hints · full answers · grading