AWS Cloud Operations Blog
Enforcing enterprise-wide preventive controls with AWS Organizations
When managing multiple AWS accounts in AWS Organizations organization, it’s important to implement central access controls that govern both identities and resources. These controls are essential for ensuring security, compliance, and scalability across your environment. AWS Organizations service control policies (SCPs), resource control policies (RCPs), and declarative policies enable you to centrally configure and manage […]
Streamlining AWS Organizations Cleanup Strategies
AWS Organizations provides capabilities for AWS customers to centrally manage accounts in their multi-account environment. As the business landscape evolves, customers may need to close multiple AWS accounts or an entire organization. This could take place during mergers and acquisitions, to support cleanup efforts which reduce cost from unused resources, or decommissioning a venture or […]
Identity Guide – Preventive controls with AWS Identity – SCPs
September 30, 2025: This post was updated to reflect that AWS Organizations now offers full IAM policy language support for service control policies (SCPs). Details of this new feature are outlined in this post. AWS Identity offers a set of features that let customers apply preventive controls to their AWS environment. This includes AWS Organizations […]
