IAM Questions and Correct Answers
Which of the following is NOT a feature of IAM?
A. Centralized control of your AWS account
B. Fine-grained access control to AWS resources
C. Allows you to set up biometric authentication, so that no
passwords are required
D. Integrates with existing your Active Directory account allowing
single sign on Ans: C. Allows you to set up biometric
authentication, so that no passwords are required
AWS recommends that EC2 instances have credentials stored on
them so that the instances can access other resources (such as S3
buckets).
A. False
B. True Ans: A. False
Which statement best describes IAM?
A. IAM allows you to manage permissions for AWS resources only.
© 2025 All rights reserved
, 2 | Page
B. IAM allows you to manage users, groups, and roles and their
corresponding level of access to the AWS Platform.
C. IAM allows you to manage users' passwords only. AWS staff
must create new users for your organization. This is done by
raising a ticket.
D. IAM stands for Improvised Application Management, and it
allows you to deploy and manage applications in the AWS Cloud.
Ans: B. IAM allows you to manage users, groups, and roles and
their corresponding level of access to the AWS Platform.
Which IAM entity can you use to delegate access to your AWS
resources to users, groups or services?
A. IAM User
B. IAM Role
C. IAM Web Identity Federation
D. IAM Group Ans: B. IAM Role
Which is the best way to enable your EC2 instance to read files in
an S3 bucket?
© 2025 All rights reserved