What should a solutions architect do to meet these requirements?
A company is using AWS Organizations lo manage multiple accounts. Due to regulatory requirements, the company wants to restrict specific member accounts to certain AWS Regions, where they are permitted to deploy resources. The resources in the accounts
must be tagged, enforced based on a group standard, and centrally managed with minimal configuration.
What should a solutions architect do to meet these requirements?
A . Create an AWS Config rule in the specific member accounts to limit Regions and apply a tag policy.
B . From the AWS Billing and Cost Management console, in the master account, disable Regions for the specific member accounts and apply a tag policy on the root.
C . Associate the specific member accounts with the root. Apply a tag policy and an SCP using conditions to limit Regions.
D . Associate the specific member accounts with a new OU. Apply a tag policy and an SCP using conditions to limit Regions.
Answer: D
Explanation:
https://aws.amazon.com/es/blogs/mt/implement-aws-resource-tagging-strategy-using-aws-tag-policies-and-service-control-policies-scps/
Latest SAP-C02 Dumps Valid Version with 318 Q&As
Latest And Valid Q&A | Instant Download | Once Fail, Full Refund