SCS-C02 Identity and Access Management • Set 10
SCS-C02 Identity and Access Management Practice Test 10 — 15 questions with explanations. Free, no signup.
A company uses AWS Organizations with all features enabled. The security team wants to enforce that all IAM users in member accounts must use multi-factor authentication (MFA) to access the AWS Management Console. They create an SCP that denies all actions if the user does not have MFA. The SCP is attached to the root organizational unit. After a few days, users in a member account report that they can still access the console without MFA. The security team reviews the SCP and finds it is correctly configured. What is the MOST likely reason the SCP is not being enforced?
Choose an answer to begin — your selection is scored in the full session.
15 questions · instant feedback and full explanations after every question.