AWS Access Managed Quick
Use Cases and Deployment Scope
We use a number of services at AWS including S3, EC2, RDS, RedShift, Route53, and more. In order to safely secure these services. We use AWS Identity & Access Management to create service roles with the minimum needed access for all applications we run on these services. Additionally, we use AWS SSO to manage user access to these services.
Pros
- Customized access per key to limit scope
- Safely distributes access keys
- Provides access audits
Cons
- Better integration with roles and policies so you don't need three windows open to create a new IAM user
- Display recommended configurations based on services being used
- Easier options to base config on existing users
Return on Investment
- Without IAM, it would be difficult to use AWS across services. Increased ROI
Alternatives Considered
Microsoft Azure Active Directory
Other Software Used
AWS Backup, AWS Elastic Beanstalk, AWS Lambda