Which technique BEST prevents unauthorized privilege escalation within a cloud management plane?
-
A
Encrypting all management plane API calls at rest
-
B
Implementing least-privilege IAM policies and enforcing multi-factor authentication
-
C
Storing management plane credentials in an encrypted S3 bucket
-
D
Restricting management plane access to business hours only