For IndividualsFor Educators
ExpertMinds LogoExpertMinds
ExpertMinds

Ace your certifications with Practice Exams and AI assistance.

  • Browse Exams
  • For Educators
  • Blog
  • Privacy Policy
  • Terms of Service
  • Cookie Policy
  • Support
  • AWS SAA Exam Prep
  • PMI PMP Exam Prep
  • CPA Exam Prep
  • GCP PCA Exam Prep

© 2026 TinyHive Labs. Company number 16262776.

    PracticeAWS Solutions Architect Professional (SAP-C02)AWS Solutions Architect Professional SAP-C02 Practice Exam 3Question 53
    Medium1 markMultiple Choice
    Domain 1.4: Multi-Account EnvironmentMulti-AccountControl TowerShared Services

    AWS SAP-C02 · Question 53 · Domain 1.4: Multi-Account Environment

    A company is setting up AWS Control Tower. They want to implement a shared services VPC for centralized Active Directory and security tools. Which TWO steps are required to integrate this with the Control Tower environment? (Select TWO)

    Answer options:

    A.

    Deploy the shared services in the Control Tower management account.

    B.

    Create a new AWS account using the Control Tower Account Factory for the shared services.

    C.

    Peer the shared services VPC with the VPCs in other member accounts using Transit Gateway.

    D.

    Use AWS RAM to share the Active Directory servers directly.

    E.

    Deploy the shared services in the Log Archive account.

    F.

    Modify the Control Tower core CloudFormation templates.

    How to approach this question

    Follow AWS multi-account best practices for shared services.

    Full Answer

    Best practices dictate creating a dedicated Shared Services account and using a Transit Gateway to route traffic between the shared services VPC and workload VPCs.

    Common mistakes

    Putting workloads in the management or log archive accounts.
    Question 52All questionsQuestion 54

    Practice the full AWS Solutions Architect Professional SAP-C02 Practice Exam 3

    75 questions · hints · full answers · grading

    Sign up freeTake the exam

    More questions from this exam

    Q01An enterprise has 100 VPCs across 5 AWS Regions. They need to establish a highly available, trans...HardQ02A company uses AWS Organizations. The CISO requires that no EC2 instances can be launched outside...MediumQ03An application uses Amazon Aurora PostgreSQL. To meet disaster recovery requirements, the databas...HardQ04A company is setting up a new multi-account AWS environment. They want to automate the creation o...MediumQ05An organization wants to allocate AWS costs to specific departments. They use multiple AWS accoun...Medium
    View all 75 questions →