Designing a Secure and Effective AWS IAM Model
1h 26mIntermediate2024-03-28
Authors

Mayank Pandey
Course details
In this course, which builds upon the foundational knowledge presented in Designing an AWS Landing Zone for Your Enterprise, instructor Mayank Pandey covers various aspects of AWS identity and access management (IAM) setup required for an enterprise-scale environment.
Explore the fundamental skills and steps of a successful rollout including the IAM profiling process, IAM roles and identities, enforcing restrictions and managing access via service control policies (SCPs) and permissions boundaries, creating a role management strategy, approval workflow setup, and more. By the end of this course, you’ll be prepared to take your enterprise architecture skills to the next level and roll out enterprise AWS IAM in a fit-for-purpose manner.
Explore the fundamental skills and steps of a successful rollout including the IAM profiling process, IAM roles and identities, enforcing restrictions and managing access via service control policies (SCPs) and permissions boundaries, creating a role management strategy, approval workflow setup, and more. By the end of this course, you’ll be prepared to take your enterprise architecture skills to the next level and roll out enterprise AWS IAM in a fit-for-purpose manner.
Skills covered
Identity and Access ManagementNetwork SecurityAmazon Web Services (AWS)AmazonCloud ServicesCloud PlatformsCybersecurityCloud ComputingOne-Off
Concepts
0. Introduction
- 01 - Building a strong identity management model
- 02 - What you should know
1. Identity and Access Management (IAM) Framework
- 03 - IAM users vs. IAM roles
- 04 - Federating corporate identities for human access
- 05 - The root user is not for everyday tasks
2. IAM Roles via IAM Identity Center
- 06 - Permissions boundary in action
- 07 - Demonstration of permissions boundaries
- 08 - Permissions boundary vs. service control policies (SCPs)
- 09 - IAM profiling of enterprise teams
- 10 - Centrally deployed IAM roles
- 11 - Making development teams more agile
3. IAM User Management
- 12 - Managing IAM users
- 13 - Handling unapproved IAM users
- 14 - Key rotation for IAM users
Conclusion
- 15 - ABAC with permissions boundary
- 16 - Next steps