passdrill
AWS SAA-C03 · IAM & Security · Card 007/014 easy

A company wants employees to sign in once using their existing corporate directory credentials and then access multiple AWS accounts, without AWS Organizations creating a separate IAM user in each individual account. Which AWS service is designed for this centralized workforce access pattern?

  1. AWS IAM Identity Center (the successor to AWS SSO), federating a central identity source to permission sets across multiple accounts
  2. Creating an identical IAM user with the same password in every member account
  3. Amazon Cognito user pools attached to each account's root user
  4. AWS Certificate Manager, issuing a shared client certificate to every employee
Next card → Shuffle