AWS Security Specialty IAM Authorization Strategies Quiz

Reviewed by Editorial Team
The ProProfs editorial team is comprised of experienced subject matter experts. They've collectively created over 10,000 quizzes and lessons, serving over 100 million users. Our team includes in-house content moderators and subject matter experts, as well as a global network of rigorously trained contributors. All adhere to our comprehensive editorial guidelines, ensuring the delivery of high-quality content.
Learn about Our Editorial Process
| By Thames
T
Thames
Community Contributor
Quizzes Created: 8865 | Total Attempts: 106,055
| Questions: 20 | Updated: Aug 14, 2026
Please wait...
Question 1 / 21
🏆 Rank #--
0 %
0/100
Score 0/100

1. Which element specifies the actions that are allowed or denied in an IAM policy?

Submit
Please wait...
About This Quiz
AWS Security Specialty Iam Authorization Strategies Quiz - Quiz

This quiz evaluates your understanding of IAM authorization strategies in AWS. It covers identity-based and resource-based policies, role assumption, permission boundaries, and best practices for securing access to AWS resources. Perfect for professionals preparing for the AWS Security Specialty certification or those implementing secure identity management in production environments.

2.

What first name or nickname would you like us to use?

You may optionally provide this to label your report, leaderboard, or certificate.

2. The NotAction element in an IAM policy denies all actions except those specified. True or false?

Submit

3. An IAM access policy and a resource policy both grant access to an S3 bucket. Which is required?

Submit

4. Which condition operator allows matching multiple values in an IAM policy condition?

Submit

5. What is the purpose of the 'Resource' element in an identity-based IAM policy?

Submit

6. IAM roles can be assumed by users, services, and external identities. True or false?

Submit

7. A resource-based policy can grant access to principals in different AWS____.

Submit

8. Which AWS service should you use to audit and monitor IAM policy changes?

Submit

9. What is the maximum size of an IAM policy document?

Submit

10. Session policies are temporary policies applied when assuming a role via STS. True or false?

Submit

11. Which IAM policy type is attached directly to a user, group, or role?

Submit

12. What does the AssumeRole action allow in IAM?

Submit

13. An explicit Deny in an IAM policy always overrides any Allow statements. True or false?

Submit

14. Which condition key restricts IAM actions based on the source IP address?

Submit

15. What is the correct format for an IAM policy Principal element in a resource-based policy?

Submit

16. Which AWS service allows you to define trust relationships for cross-account access?

Submit

17. In IAM policy evaluation, what is the default behavior when no explicit Allow exists?

Submit

18. What does the 'Effect' element in an IAM policy determine?

Submit

19. Which statement best describes the principle of least privilege?

Submit

20. What is the primary purpose of a permission boundary in IAM?

Submit
×
Saved
Thank you for your feedback!
View My Results
Cancel
  • All
    All (20)
  • Unanswered
    Unanswered ()
  • Answered
    Answered ()
Which element specifies the actions that are allowed or denied in an...
The NotAction element in an IAM policy denies all actions except those...
An IAM access policy and a resource policy both grant access to an S3...
Which condition operator allows matching multiple values in an IAM...
What is the purpose of the 'Resource' element in an identity-based IAM...
IAM roles can be assumed by users, services, and external identities....
A resource-based policy can grant access to principals in different...
Which AWS service should you use to audit and monitor IAM policy...
What is the maximum size of an IAM policy document?
Session policies are temporary policies applied when assuming a role...
Which IAM policy type is attached directly to a user, group, or role?
What does the AssumeRole action allow in IAM?
An explicit Deny in an IAM policy always overrides any Allow...
Which condition key restricts IAM actions based on the source IP...
What is the correct format for an IAM policy Principal element in a...
Which AWS service allows you to define trust relationships for...
In IAM policy evaluation, what is the default behavior when no...
What does the 'Effect' element in an IAM policy determine?
Which statement best describes the principle of least privilege?
What is the primary purpose of a permission boundary in IAM?
play-Mute sad happy unanswered_answer up-hover down-hover success oval cancel Check box square blue
Alert!