AWS Certified SysOps Administrator Practice Exam

Disable ads (and more) with a membership for a one time $4.99 payment

Prepare for the AWS Certified SysOps Administrator Exam. Utilize flashcards, multiple-choice questions, tips, and in-depth explanations. Get exam-ready!

Practice this question and more.


Which service would be appropriate for managing compliance across multiple AWS accounts?

  1. AWS Organizations

  2. AWS Service Catalog

  3. AWS Config

  4. AWS Firewall Manager

The correct answer is: AWS Firewall Manager

The best service for managing compliance across multiple AWS accounts is AWS Organizations. This service allows you to create and manage multiple AWS accounts under a single master account, enabling centralized billing and governance. With AWS Organizations, you can apply policies that enforce compliance across member accounts, manage service control policies (SCPs), and implement organizational units (OUs) to structure your accounts effectively. While AWS Config is effective for enabling compliance monitoring at the resource level within accounts, it does not extend its capabilities for multi-account governance and compliance. Similarly, AWS Service Catalog focuses on provisioning and managing approved cloud resources rather than compliance management across accounts. AWS Firewall Manager is used to centrally configure and manage firewall rules and protections, specifically around AWS Web Application Firewall (WAF), AWS Shield, and AWS Network Firewall, but it does not address broader compliance needs across multiple accounts like AWS Organizations does. By utilizing AWS Organizations, you can better enforce compliance policies and manage the overall governance across all your AWS accounts, making it the most appropriate choice for the scenario presented.