tag: Aws-Iam · 3 items
- Platform/SRE — Learn: The increased default reduces friction for roles with many attached policies and eliminates some quota-increase requests; no action required as it applies automatically to all existing roles.
- CI/CD — Skip
- Leader — Skip
- Platform/SRE — Learn: Useful capability for EU Sovereign Cloud workloads needing short-lived JWT auth to external services without long-term credentials, but no deadline or EOL pressure — evaluate if operating in the Germany Sovereign Cloud region.
- CI/CD — Skip
- Leader — Learn: Relevant context for organizations with EU data sovereignty requirements: AWS Sovereign Cloud now supports outbound identity federation, potentially reducing compliance friction for regulated workloads in Germany.
- Platform/SRE — Plan: This new GA feature unifies IAM role flexibility with IAM Identity Center federation, replacing the previous two-approach trade-off. Platform engineers managing AWS workforce access should evaluate adopting account access manager as their standard approach this quarter — no migration deadline exists, but it simplifies ongoing access architecture.
- CI/CD — Skip
- Leader — Learn: AWS now offers a third path for workforce federation that combines centralized user awareness with per-account IAM role granularity. Worth knowing as context when reviewing org-wide AWS access standards, but no licensing, pricing, or vendor-risk decision is triggered.