Weekend Special Limited Time 70% Discount Offer - Ends in 0d 00h 00m 00s - Coupon code: simple70

Exam 312-40 All Questions
Exam 312-40 All Questions

View all questions & answers for the 312-40 exam

ECCouncil Certified Cloud Security Engineer (CCSE) 312-40 Question # 4 Topic 1 Discussion

312-40 Exam Topic 1 Question 4 Discussion:
Question #: 4
Topic #: 1

Rebecca Mader has been working as a cloud security engineer in an IT company located in Detroit, Michigan. Her organization uses AWS cloud-based services. An application is launched by a developer on an EC2 instance that needs access to the S3 bucket (photos). Rebecca created a get-pics service role and attached it to the EC2 instance. This service role comprises a permission policy that allows read-only access to the S3 bucket and a trust policy that allows the instance to assume the role and retrieve temporary credentials. The application uses the temporary credentials of the role to access the photo bucket when it runs on the instance. Does the developer need to share or manage credentials or does the admin need to grant permission to the developer to access the photo bucket?


A.

No, the developer never has to share or manage credentials, but the admin has to grant permission to the developer to access the photo bucket


B.

Yes, the developer has to share or manage credentials, but the admin does not have to grant

permission to the developer to access the photo bucket


C.

Yes, the developer should share or manage credentials and the admin should grant permission to the developer to access the photo bucket


D.

No, the developer never has to share or manage credentials and the admin does not have to grant

permission to the developer to access the photo bucket


Get Premium 312-40 Questions

Contribute your Thoughts:


Chosen Answer:
This is a voting comment (?). It is better to Upvote an existing comment if you don't have anything to add.