Design Secure Architectures Practice Question
Question
For a healthcare SaaS provider, an architect is reviewing multi-account governance requirement set 17. Which design choice best fits the requirement while following AWS architectural best practices?
Answer choices
- A. Place all components on a single large instance to simplify troubleshooting.
- B. Use long-lived access keys in application configuration so services can call AWS APIs directly.
- C. Use aws organizations, scps, and centralized logging for separated environments.
- D. Disable monitoring until the workload reaches steady production traffic.
Correct Answer
C. Use aws organizations, scps, and centralized logging for separated environments.
Explanation
The best answer applies multi-account governance: use AWS Organizations, SCPs, and centralized logging for separated environments. The other options increase operational risk, weaken security, or remove observability that an AWS Solutions Architect should preserve.
Question details
- Difficulty: medium
- Domain: Design Secure Architectures
- Objective: multi-account governance