Which solution will meet these requirements?

1 Comment

  1. Maria
    Author

    I conclude that the answer is:
    Create an SCP that includes a Deny statement for changes to the auditing application’s IAM role. Include a condition that allows the trusted administrator IAM role to make changes. Attach the SCP to the root of the organization.

Leave a Reply

Your email address will not be published. Required fields are marked *

two × 3 =