💼 1.16 Ensure IAM policies that allow full ":" administrative privileges are not attached (Automated)
- ID:
/frameworks/cis-aws-v4.0.1/01/16
Description
IAM policies are the means by which privileges are granted to users, groups, or roles. It is recommended and considered standard security advice to grant least privilege—that is, granting only the permissions required to perform a task. Determine what users need to do, and then craft policies for them that allow the users to perform only those tasks, instead of granting full administrative privileges.
Similar
- Sections
/frameworks/cis-aws-v5.0.0/01/15
/frameworks/cis-aws-v4.0.0/01/16
Similar Sections (Take Policies From)
Similar Sections (Give Policies To)
Sub Sections
| Section | Sub Sections | Internal Rules | Policies | Flags | Compliance |
|---|
Policies (1)