โ† All CCP Flashcard Decks

AWS Security and Compliance Flashcards

6 cards from real CCP practice questions. Tap to flip, then mark Knew It or Still Learning โ€” missed cards come back until you master them.

Read the first 6 AWS Security and Compliance flashcards as text
  1. Which AWS feature enables you to require a second form of authentication when logging into the AWS Management Console?

    Answer: Multi-Factor Authentication (MFA)

    Multi-Factor Authentication (MFA) adds an extra layer of protection by requiring a one-time code in addition to a password.

  2. What is the purpose of AWS Artifact?

    Answer: Providing on-demand access to AWS compliance reports and agreements

    AWS Artifact is a self-service portal for accessing AWS compliance reports, certifications, and agreements such as SOC, PCI, and ISO.

  3. Which AWS compliance program ensures that AWS services meet the security requirements for processing US federal government data?

    Answer: FedRAMP

    FedRAMP (Federal Risk and Authorization Management Program) is the US government compliance framework that AWS participates in for federal cloud services.

  4. Under the AWS Shared Responsibility Model, which of the following is AWS responsible for?

    Answer: Physical security of data centers

    AWS is responsible for the security OF the cloud, including physical infrastructure, hardware, and the hypervisor layer.

  5. Which service allows you to centrally manage security policies and compliance across multiple AWS accounts?

    Answer: AWS Organizations with Service Control Policies

    AWS Organizations with Service Control Policies (SCPs) lets you centrally manage and enforce permission guardrails across all accounts in your organization.

  6. What does the AWS Trusted Advisor security check evaluate?

    Answer: Security gaps such as open ports, unrestricted access, and MFA status

    AWS Trusted Advisor's security checks identify potential vulnerabilities including exposed access keys, open security group ports, and missing MFA on the root account.