Establish AWS IAM Policy #60
Labels
draft
feature: AWS IAM
feature: security
role: Site Reliability Engineer
aka Infrastructure Engineer
size: 1pt
Can be done in 4-6 hours
Milestone
Overview
Establish an IAM policy for AWS with best security practices and take corrective actions to be compliant with the policy.
Action Items
First thing is to create an IAM Policy framework to follow. Then the following would happen. Adjustments to tasks can be made as needed.
Create a gap analysis of the current IAM setup to the new IAM policy.
Assess the use of the AWS tenant, teams, and AWS resources.
Create a plan to address the implementation of the IAM policy without affecting current workloads.
Create groups with granular permissions based on needs.
Remove/Disable inactive users.
Select a scope of users for testing access with new groups and permissions.
Assign the scope of users to the new groups to check functionality and permissions are working as designed.
Assign remaining users in waves.
Resources/Instructions
Use this for reference:
https://docs.aws.amazon.com/iam/index.html
The text was updated successfully, but these errors were encountered: