A financial institution has the following security requirements: Cloud-based users must be contained in a separate authentication domain. Cloud-based users cannot access on-premises systems. As part of standing up a cloud environment, the financial institution is creating a number of Amazon managed databases and Amazon EC2 instances. An Active Directory service exists on-premises that has all the administrator accounts, and these must be able to access the databases and instances. How would the organization manage its resources in the MOST secure manner? (Choose two.)
A) Configure an AWS Managed Microsoft AD to manage the cloud resources.
B) Configure an additional on-premises Active Directory service to manage the cloud resources.
C) Establish a one-way trust relationship from the existing Active Directory to the new Active Directory service.
D) Establish a one-way trust relationship from the new Active Directory to the existing Active Directory service.
E) Establish a two-way trust between the new and existing Active Directory services.
Correct Answer:
Verified
Q24: A Security Administrator is configuring an Amazon
Q25: A Software Engineer is trying to figure
Q26: Which of the following minimizes the potential
Q27: An organization is moving non-business-critical applications to
Q28: The Security Engineer created a new AWS
Q30: A company plans to move most of
Q31: A company uses AWS Organization to manage
Q32: The Development team receives an error message
Q33: A Security Engineer received an AWS Abuse
Q34: The InfoSec team has mandated that in
Unlock this Answer For Free Now!
View this answer and more for free by performing one of the following actions
Scan the QR code to install the App and get 2 free unlocks
Unlock quizzes for free by uploading documents