Amazon Web Services
In this AWS re:Invent 2023 session, Ujjwal and Jeremiah from the IAM Access Analyzer team discuss new features that help organizations achieve least privilege access in their AWS environments. They explain how IAM Access Analyzer assists in setting, verifying, and refining permissions throughout the permissions lifecycle. Key highlights include custom policy checks for automating policy reviews, unused access findings for identifying and removing broad permissions, and demonstrations of these features in action. The speakers emphasize that least privilege is an ongoing journey rather than a destination, and show how IAM Access Analyzer's tools can streamline this process for both security teams and developers.