AWS IAM group has administrative privileges

このページは日本語には対応しておりません。随時翻訳に取り組んでいます。翻訳に関してご質問やご意見ございましたら、お気軽にご連絡ください。

Description

Confirm there are no IAM Groups with administrative privileges for your AWS account.

Rationale

An IAM group with administratative privileges can access all services and resources in an AWS account. Any groups with IAM users that should not have access can potentially, whether unknowingly or purposefully, cause security issues or data leaks.

Remediation

Determine the proper permissions needed for the group and modify the IAM policy to better match that need.

PREVIEWING: may/unit-testing