AWS Cloud Operations Blog
Category: Enterprise governance and control
Provision sandbox accounts with budget limits to reduce costs using AWS Control Tower
Many Amazon Web Services (AWS) customers struggle to keep cloud costs under control while allowing employees to innovate and develop their AWS skills. We talk to technology leaders every day who rank controlling cloud spend among their top concerns. Those same leaders don’t want to stifle innovation or restrict employee’s ability to learn AWS. Using […]
Import existing AWS Control Tower accounts to Account Factory for Terraform
AWS Control Tower Account Factory for Terraform (AFT) allows customers to provision and customize their account in AWS Control Tower using Terraform. AFT can also import existing AWS Control Tower managed accounts into AFT management, allowing you to manage the global and account-specific customization at scale using Terraform. We hear from customers that they want […]
Use AWS Systems Manager for VMware Cloud on AWS (VMC) operations management
A hybrid cloud strategy creates management and governance challenges for our customers. These challenges include maintaining consistent cloud security and compliance policies across hybrid VMC and cloud environments, providing a single pane of glass for visualizing and acting on operational data, and providing deployment automation and control of cloud infrastructure across multiple cloud environments. VMware […]
Learn how the Flexibility of AWS Opens New Doors for Business Continuity
A guide for IT practitioners The “criticality” of technology that impacts our day to day lives is more pertinent and broader reaching than ever before. Nowadays, we’ve become accustomed to reliability and always on systems and can see the impact on our lives when things go wrong. Therefore, to meet customer expectations in the face […]
Build a resilience reporting dashboard with AWS Resilience Hub and Amazon QuickSight
You might have heard the phrase “10,000 foot view” at some point during your career. This typically refers to having a broad, high-level understanding of a system or organization’s technology infrastructure and how all its components fit together. It is a way of looking at the big picture without getting bogged down in the details. […]
License management using Delegated Administrator feature of AWS License Manager
Learn with Shree on how to offload license management activities using Delegated Administrator feature of AWS License Manager.
Customize AWS Config resource tracking in AWS Control Tower environment
[Update on Nov/24/2025] Based on customer feedback account inclusion option has been added to the solution, several bug fixes and enhancements made and documented in the changelog, This blog has been slightly updated to align with those changes. [Update on Sep/21/2024] AWS Config recorder has recently provided support for periodic recording, this captures the latest […]
Resizing volumes and instances using ServiceNow and AWS
The AWS Service Management Connector for ServiceNow enables ServiceNow end users to provision, manage, and operate AWS resources natively through ServiceNow. This lets our customers connect a technical operation with a business workflow, perhaps requiring approvals from management or other teams. The key in all of this is empowering and enabling end-users, thereby removing manual […]
Integrating existing AWS CloudTrail configurations when launching AWS Control Tower
[Update] AWS Control Tower 3.0 now allows you to either select organization-level CloudTrail trails or opt out of Control Tower-managed trails, eliminating the need for the workaround mentioned in this blog. For additional details, refer to the Release notes. The customers that we work with often use multiple AWS accounts to meet their business needs. […]
AWS Organizations now provides a simple, scalable and more secure way to close your member accounts
Today, you can centrally close member accounts in your AWS organization enabling easier and more efficient account management of your AWS environment. This means you’re able to close member accounts from your organization’s management account without needing to login to each member account individually with root credentials. You can also ensure that only authorized IAM […]







