🔥 40% Off Crucial Exams Memberships — This Week Only

2 days, 11 hours remaining!

ISC2 Systems Security Certified Practitioner (SSCP) Practice Question

A company hosts several workloads in AWS and wants staff to sign in to the AWS Management Console with their existing on-premises Active Directory credentials managed by ADFS. The solution must provide temporary security credentials, eliminate long-term AWS access keys, and avoid creating individual IAM users. Which approach best meets these requirements?

  • Create an IAM user for each employee and enforce a strong password policy with mandatory key rotation.

  • Configure ADFS as a SAML 2.0 identity provider in AWS, map AD groups to IAM roles, and let users assume those roles via SSO.

  • Integrate ADFS with AWS using OAuth 2.0 web identity federation and issue long-lived access keys for approved users.

  • Enable MFA on the AWS root account and distribute the root credentials to employees for console access.

ISC2 Systems Security Certified Practitioner (SSCP)
Access Controls
Your Score:
Settings & Objectives
Random Mixed
Questions are selected randomly from all chosen topics, with a preference for those you haven’t seen before. You may see several questions from the same objective or domain in a row.
Rotate by Objective
Questions cycle through each objective or domain in turn, helping you avoid long streaks of questions from the same area. You may see some repeat questions, but the distribution will be more balanced across topics.

Check or uncheck an objective to set which questions you will receive.

Bash, the Crucial Exams Chat Bot
AI Bot