<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>IAM &#8211; Noise</title>
	<atom:link href="https://noise.getoto.net/tag/iam/feed/" rel="self" type="application/rss+xml" />
	<link>https://noise.getoto.net</link>
	<description>The collective thoughts of the interwebz</description>
	<lastBuildDate>Fri, 21 Nov 2025 21:07:32 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.2</generator>
	<item>
		<title>Practical steps to minimize key exposure using AWS Security Services</title>
		<link>https://noise.getoto.net/2025/11/21/practical-steps-to-minimize-key-exposure-using-aws-security-services/</link>
		
		<dc:creator><![CDATA[Jennifer Paz]]></dc:creator>
		<pubDate>Fri, 21 Nov 2025 21:07:32 +0000</pubDate>
				<category><![CDATA[AWS IAM]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[incident response]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=760d7d36bff194f78d6ca70904be227b</guid>

					<description><![CDATA[Exposed long-term credentials continue to be the top entry point used by threat actors in security incidents observed by the AWS Customer Incident Response Team (CIRT). The exposure and subsequent use of long-term credentials or access keys by threat actors poses security risks in cloud environments. Additionally, poor key rotation practices, sharing of access keys […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Simplified developer access to AWS with ‘aws login’</title>
		<link>https://noise.getoto.net/2025/11/20/simplified-developer-access-to-aws-with-aws-login/</link>
		
		<dc:creator><![CDATA[Shreya Jain]]></dc:creator>
		<pubDate>Wed, 19 Nov 2025 22:59:42 +0000</pubDate>
				<category><![CDATA[AWS CLI]]></category>
		<category><![CDATA[AWS IAM]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[AWS Security Token Service]]></category>
		<category><![CDATA[AWS STS]]></category>
		<category><![CDATA[Developer Tools]]></category>
		<category><![CDATA[Foundational (100)]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=d6abc6089f08836186271913aa34d124</guid>

					<description><![CDATA[Getting credentials for local development with AWS is now simpler and more secure. A new AWS Command Line Interface (AWS CLI) command, aws login, lets you start building immediately after signing up for AWS without creating and managing long-term access keys. You use the same sign-in method you already use for the AWS Management Console. […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Beyond IAM access keys: Modern authentication approaches for AWS</title>
		<link>https://noise.getoto.net/2025/07/22/beyond-iam-access-keys-modern-authentication-approaches-for-aws/</link>
		
		<dc:creator><![CDATA[Mitch Beaumont]]></dc:creator>
		<pubDate>Mon, 21 Jul 2025 23:13:43 +0000</pubDate>
				<category><![CDATA[AWS IAM]]></category>
		<category><![CDATA[AWS Identity and Access Management]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[Best practices]]></category>
		<category><![CDATA[devops]]></category>
		<category><![CDATA[DevSecOps]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[IAM policies]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=e4ee7dfa2608bf03d7bf24667b2d8ec4</guid>

					<description><![CDATA[When it comes to AWS authentication, relying on long-term credentials, such as AWS Identity and Access Management (IAM) access keys, introduces unnecessary risks; including potential credential exposure, unauthorized sharing, or theft. In this post, I present five common use cases where AWS customers traditionally use IAM access keys and present more secure alternatives that you […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Building identity-first security: A guide to the Identity and Access Management track at AWS re:Inforce 2025</title>
		<link>https://noise.getoto.net/2025/06/11/building-identity-first-security-a-guide-to-the-identity-and-access-management-track-at-aws-reinforce-2025/</link>
		
		<dc:creator><![CDATA[Rahul Sahni]]></dc:creator>
		<pubDate>Tue, 10 Jun 2025 21:59:28 +0000</pubDate>
				<category><![CDATA[announcements]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[AWS re:Inforce]]></category>
		<category><![CDATA[Foundational (100)]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[Identity and Access Management]]></category>
		<category><![CDATA[Live Events]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=0c44462446d2a8d3c9953e01244a21c0</guid>

					<description><![CDATA[Join us at AWS re:Inforce 2025 from June 16 to 18 as we dive deep into identity and access management, where we’ll explore how organizations are securing identities at scale. As the traditional security perimeter continues to dissolve in our hybrid and multi-cloud world, this year’s sessions showcase how AWS customers are building comprehensive identity-centric […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Many voices, one community: Three themes from RSA Conference 2025</title>
		<link>https://noise.getoto.net/2025/06/05/many-voices-one-community-three-themes-from-rsa-conference-2025/</link>
		
		<dc:creator><![CDATA[Anne Grahn]]></dc:creator>
		<pubDate>Thu, 05 Jun 2025 20:09:13 +0000</pubDate>
				<category><![CDATA[announcements]]></category>
		<category><![CDATA[Application Security]]></category>
		<category><![CDATA[artificial intelligence]]></category>
		<category><![CDATA[cloud security]]></category>
		<category><![CDATA[Collaboration]]></category>
		<category><![CDATA[Cryptography]]></category>
		<category><![CDATA[cybersecurity]]></category>
		<category><![CDATA[Foundational (100)]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[rsa]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=3b5583f49dd7b89dcd8c8ad6634f1190</guid>

					<description><![CDATA[RSA Conference (RSAC) 2025 drew 730 speakers, 650 exhibitors, and 44,000 attendees from across the globe to the Moscone Center in San Francisco, California from April 28 through May 1. The keynote lineup was eclectic, with 37 presentations featuring speakers ranging from NBA Hall of Famer Earvin “Magic” Johnson to public and private-sector luminaries such as former […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Planning for your IAM Roles Anywhere deployment</title>
		<link>https://noise.getoto.net/2025/04/02/planning-for-your-iam-roles-anywhere-deployment/</link>
		
		<dc:creator><![CDATA[Liam Wadman]]></dc:creator>
		<pubDate>Wed, 02 Apr 2025 18:59:08 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[IAM Roles Anywhere]]></category>
		<category><![CDATA[M2M]]></category>
		<category><![CDATA[Machine to machine]]></category>
		<category><![CDATA[PKI]]></category>
		<category><![CDATA[Public key infrastructure]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=d6aec034b66844f96a58d3821fa635d8</guid>

					<description><![CDATA[IAM Roles Anywhere is a feature of AWS Identity and Access Management (IAM) that enables you to use X.509 certificates from your public key infrastructure (PKI) to request temporary Amazon Web Services (AWS) security credentials. By using IAM Roles Anywhere, your workloads, applications, containers, or devices that run external to AWS can access AWS resources and perform tasks like […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Use AWS service reference information to automate policy management workflows</title>
		<link>https://noise.getoto.net/2025/03/24/use-aws-service-reference-information-to-automate-policy-management-workflows/</link>
		
		<dc:creator><![CDATA[Ramesh Rajan]]></dc:creator>
		<pubDate>Mon, 24 Mar 2025 16:03:17 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[AWS IAM]]></category>
		<category><![CDATA[AWS IAM Access Analyzer]]></category>
		<category><![CDATA[AWS IAM policies]]></category>
		<category><![CDATA[AWS Identity and Access Management]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[Best practices]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[IAM Access Analyzer]]></category>
		<category><![CDATA[IAM policies]]></category>
		<category><![CDATA[least privilege]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=5b8657de13178c1445a7c667f74b5b75</guid>

					<description><![CDATA[Amazon Web Services (AWS) provides service reference information in JSON format to help you automate policy management workflows. With the service reference information, you can access available actions across AWS services from machine-readable files. The service reference information helps to address a key customer need: keeping up with the ever-growing list of services and actions […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Four ways to grant cross-account access in AWS</title>
		<link>https://noise.getoto.net/2025/02/24/four-ways-to-grant-cross-account-access-in-aws/</link>
		
		<dc:creator><![CDATA[Anshu Bathla]]></dc:creator>
		<pubDate>Mon, 24 Feb 2025 20:01:05 +0000</pubDate>
				<category><![CDATA[AWS IAM]]></category>
		<category><![CDATA[AWS IAM policies]]></category>
		<category><![CDATA[AWS Identity and Access Management]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[Best practices]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[IAM policies]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[least privilege]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=d82532a151928554776de736af601f0f</guid>

					<description><![CDATA[As your Amazon Web Services (AWS) environment grows, you might develop a need to grant cross-account access to resources. This could be for various reasons, such as enabling centralized operations across multiple AWS accounts, sharing resources across teams or projects within your organization, or integrating with third-party services. However, granting cross-account access requires careful consideration […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Connect your on-premises Kubernetes cluster to AWS APIs using IAM Roles Anywhere</title>
		<link>https://noise.getoto.net/2025/02/24/connect-your-on-premises-kubernetes-cluster-to-aws-apis-using-iam-roles-anywhere/</link>
		
		<dc:creator><![CDATA[Varun Sharma]]></dc:creator>
		<pubDate>Mon, 24 Feb 2025 16:25:01 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[authentication]]></category>
		<category><![CDATA[authorization]]></category>
		<category><![CDATA[EKS]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[IAM Roles Anywhere]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security token service]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<category><![CDATA[X.509 certificate]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=13538fb61a99518e62926adb5496f817</guid>

					<description><![CDATA[Many customers want to seamlessly integrate their on-premises Kubernetes workloads with AWS services, implement hybrid workloads, or migrate to AWS. Previously, a common approach involved creating long-term access keys, which posed security risks and is no longer recommended. While solutions such as Kubernetes secrets vault and third-party options exist, they fail to address the underlying […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>How to implement IAM policy checks with Visual Studio Code and IAM Access Analyzer</title>
		<link>https://noise.getoto.net/2025/01/14/how-to-implement-iam-policy-checks-with-visual-studio-code-and-iam-access-analyzer/</link>
		
		<dc:creator><![CDATA[Anshu Bathla]]></dc:creator>
		<pubDate>Tue, 14 Jan 2025 17:02:04 +0000</pubDate>
				<category><![CDATA[AWS IAM]]></category>
		<category><![CDATA[AWS IAM Access Analyzer]]></category>
		<category><![CDATA[AWS IAM policies]]></category>
		<category><![CDATA[AWS Identity and Access Management]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[IAM Access Analyzer]]></category>
		<category><![CDATA[IAM policies]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[least privilege]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=e65bb63588f35d018d106aeaff490e5c</guid>

					<description><![CDATA[In a previous blog post, we introduced the IAM Access Analyzer custom policy check feature, which allows you to validate your policies against custom rules. Now we’re taking a step further and bringing these policy checks directly into your development environment with the AWS Toolkit for Visual Studio Code (VS Code). In this blog post, […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Customize the scope of IAM Access Analyzer unused access analysis</title>
		<link>https://noise.getoto.net/2025/01/08/customize-the-scope-of-iam-access-analyzer-unused-access-analysis/</link>
		
		<dc:creator><![CDATA[Stéphanie Mbappe]]></dc:creator>
		<pubDate>Wed, 08 Jan 2025 17:35:14 +0000</pubDate>
				<category><![CDATA[AWS IAM]]></category>
		<category><![CDATA[AWS IAM Access Analyzer]]></category>
		<category><![CDATA[AWS IAM policies]]></category>
		<category><![CDATA[AWS Identity and Access Management]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[IAM Access Analyzer]]></category>
		<category><![CDATA[IAM policies]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[least privilege]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=48e65569ea7a4ab0d9f412e9d81950b1</guid>

					<description><![CDATA[AWS Identity and Access Management Access Analyzer simplifies inspecting unused access to guide you towards least privilege. You can use unused access findings to identify over-permissive access granted to AWS Identity and Access Management (IAM) roles and users in your accounts or organization. From a delegated administrator account for IAM Access Analyzer, you can use the dashboard […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Using Amazon Detective for IAM investigations</title>
		<link>https://noise.getoto.net/2024/09/18/using-amazon-detective-for-iam-investigations/</link>
		
		<dc:creator><![CDATA[Ahmed Adekunle]]></dc:creator>
		<pubDate>Wed, 18 Sep 2024 16:06:31 +0000</pubDate>
				<category><![CDATA[Amazon Detective]]></category>
		<category><![CDATA[Amazon GuardDuty]]></category>
		<category><![CDATA[AWS IAM]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=21b03bd06fb8b1a132dc112dcf88c81e</guid>

					<description><![CDATA[Uncovering  AWS Identity and Access Management (IAM) users and roles potentially involved in a security event can be a complex task, requiring security analysts to gather and analyze data from various sources, and determine the full scope of affected resources. Amazon Detective includes Detective Investigation, a feature that you can use to investigate IAM users […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Cloud infrastructure entitlement management in AWS</title>
		<link>https://noise.getoto.net/2024/08/14/cloud-infrastructure-entitlement-management-in-aws/</link>
		
		<dc:creator><![CDATA[Mathangi Ramesh]]></dc:creator>
		<pubDate>Tue, 13 Aug 2024 21:22:32 +0000</pubDate>
				<category><![CDATA[AWS IAM Access Analyzer]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[Best practices]]></category>
		<category><![CDATA[Foundational (100)]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=0f8e1ecac462e7b6598e83a28fb2f415</guid>

					<description><![CDATA[Customers use Amazon Web Services (AWS) to securely build, deploy, and scale their applications. As your organization grows, you want to streamline permissions management towards least privilege for your identities and resources. At AWS, we see two customer personas working towards least privilege permissions: security teams and developers. Security teams want to centrally inspect permissions […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>How to use AWS managed applications with IAM Identity Center</title>
		<link>https://noise.getoto.net/2024/05/13/how-to-use-aws-managed-applications-with-iam-identity-center/</link>
		
		<dc:creator><![CDATA[Liam Wadman]]></dc:creator>
		<pubDate>Mon, 13 May 2024 19:55:00 +0000</pubDate>
				<category><![CDATA[AWS IAM Identity Center]]></category>
		<category><![CDATA[Foundational (100)]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[IAM Identity Center]]></category>
		<category><![CDATA[Identity]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=6bef4d63b568b844c832953dc4d1b65d</guid>

					<description><![CDATA[AWS IAM Identity Center is the preferred way to provide workforce access to Amazon Web Services (AWS) accounts, and enables you to provide workforce access to many AWS managed applications, such as Amazon Q Developer (Formerly known as Code Whisperer). As we continue to release more AWS managed applications, customers have told us they want […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Best practices for managing Terraform State files in AWS CI/CD Pipeline</title>
		<link>https://noise.getoto.net/2024/02/19/best-practices-for-managing-terraform-state-files-in-aws-ci-cd-pipeline/</link>
		
		<dc:creator><![CDATA[Arun Kumar Selvaraj]]></dc:creator>
		<pubDate>Mon, 19 Feb 2024 19:50:44 +0000</pubDate>
				<category><![CDATA[*Post Types]]></category>
		<category><![CDATA[Amazon CodeBuild]]></category>
		<category><![CDATA[Amazon DynamoDB]]></category>
		<category><![CDATA[Amazon S3]]></category>
		<category><![CDATA[Amazon Simple Storage Service (S3)]]></category>
		<category><![CDATA[AWS CodeBuild]]></category>
		<category><![CDATA[AWS CodeCommit]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[AWS Lambda]]></category>
		<category><![CDATA[AWS Professional Services]]></category>
		<category><![CDATA[Best practices]]></category>
		<category><![CDATA[CICD Pipeline]]></category>
		<category><![CDATA[Developer Tools]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[Infrastructure as Code]]></category>
		<category><![CDATA[python]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<category><![CDATA[Terraform]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=73d09ea4e56c8005ba870919d4573d4f</guid>

					<description><![CDATA[Introduction Today customers want to reduce manual operations for deploying and maintaining their infrastructure. The recommended method to deploy and manage infrastructure on AWS is to follow Infrastructure-As-Code (IaC) model using tools like AWS CloudFormation, AWS Cloud Development Kit (AWS CDK) or Terraform. One of the critical components in terraform is managing the state file which […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>IAM Access Analyzer simplifies inspection of unused access in your organization</title>
		<link>https://noise.getoto.net/2023/12/04/iam-access-analyzer-simplifies-inspection-of-unused-access-in-your-organization/</link>
		
		<dc:creator><![CDATA[Achraf Moussadek-Kabdani]]></dc:creator>
		<pubDate>Mon, 04 Dec 2023 20:24:46 +0000</pubDate>
				<category><![CDATA[announcements]]></category>
		<category><![CDATA[AWS IAM]]></category>
		<category><![CDATA[AWS Identity and Access Management]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[IAM Access Analyzer]]></category>
		<category><![CDATA[IAM policies]]></category>
		<category><![CDATA[Identity and Access Management]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=80cd8e366ec2c959b45d46d0f9b1ddce</guid>

					<description><![CDATA[AWS Identity and Access Management (IAM) Access Analyzer offers tools that help you set, verify, and refine permissions. You can use IAM Access Analyzer external access findings to continuously monitor your AWS Organizations organization and Amazon Web Services (AWS) accounts for public and cross-account access to your resources, and verify that only intended external access […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Security at multiple layers for web-administered apps</title>
		<link>https://noise.getoto.net/2023/11/28/security-at-multiple-layers-for-web-administered-apps/</link>
		
		<dc:creator><![CDATA[Guy Morton]]></dc:creator>
		<pubDate>Tue, 28 Nov 2023 14:26:37 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[Amazon CloudFront]]></category>
		<category><![CDATA[Amazon GuardDuty]]></category>
		<category><![CDATA[Amazon Virtual Private Cloud (Amazon VPC)]]></category>
		<category><![CDATA[Amazon VPC]]></category>
		<category><![CDATA[AWS GuardDuty]]></category>
		<category><![CDATA[AWS IAM]]></category>
		<category><![CDATA[AWS VPC]]></category>
		<category><![CDATA[Best practices]]></category>
		<category><![CDATA[Elastic Load Balancing]]></category>
		<category><![CDATA[GuardDuty]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[VPC]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=2f247f1df2ae5bc9939bae8a0304267e</guid>

					<description><![CDATA[In this post, I will show you how to apply security at multiple layers of a web application hosted on AWS. Apply security at all layers is a design principle of the Security pillar of the AWS Well-Architected Framework. It encourages you to apply security at the network edge, virtual private cloud (VPC), load balancer, […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Introducing IAM Access Analyzer custom policy checks</title>
		<link>https://noise.getoto.net/2023/11/27/introducing-iam-access-analyzer-custom-policy-checks/</link>
		
		<dc:creator><![CDATA[Mitch Beaumont]]></dc:creator>
		<pubDate>Mon, 27 Nov 2023 14:00:04 +0000</pubDate>
				<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[announcements]]></category>
		<category><![CDATA[Automated reasoning]]></category>
		<category><![CDATA[AWS IAM]]></category>
		<category><![CDATA[AWS Identity and Access Management]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[devops]]></category>
		<category><![CDATA[DevSecOps]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[IAM Access Analyzer]]></category>
		<category><![CDATA[IAM policies]]></category>
		<category><![CDATA[Identity and Access Management]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=54c32ffaf84455d5492a7febba6ffcf3</guid>

					<description><![CDATA[AWS Identity and Access Management (IAM) Access Analyzer was launched in late 2019. Access Analyzer guides customers toward least-privilege permissions across Amazon Web Services (AWS) by using analysis techniques, such as automated reasoning, to make it simpler for customers to set, verify, and refine IAM permissions. Today, we are excited to announce the general availability […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Writing IAM Policies: Grant Access to User-Specific Folders in an Amazon S3 Bucket</title>
		<link>https://noise.getoto.net/2023/11/14/writing-iam-policies-grant-access-to-user-specific-folders-in-an-amazon-s3-bucket/</link>
		
		<dc:creator><![CDATA[Dylan Souvage]]></dc:creator>
		<pubDate>Tue, 14 Nov 2023 18:06:18 +0000</pubDate>
				<category><![CDATA[Amazon Simple Storage Service (S3)]]></category>
		<category><![CDATA[AWS IAM Identity Center]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[Best of]]></category>
		<category><![CDATA[Best practices]]></category>
		<category><![CDATA[How-to guides]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[IAM principals]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[S3]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[storage]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<category><![CDATA[Top Posts*]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=db6ef07e0fd5df62ac0e834df61579c2</guid>

					<description><![CDATA[November 14, 2023: We’ve updated this post to use IAM Identity Center and follow updated IAM best practices. In this post, we discuss the concept of folders in Amazon Simple Storage Service (Amazon S3) and how to use policies to restrict access to these folders. The idea is that by properly managing permissions, you can […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Get the full benefits of IMDSv2 and disable IMDSv1 across your AWS infrastructure</title>
		<link>https://noise.getoto.net/2023/09/28/get-the-full-benefits-of-imdsv2-and-disable-imdsv1-across-your-aws-infrastructure/</link>
		
		<dc:creator><![CDATA[Saju Sivaji]]></dc:creator>
		<pubDate>Thu, 28 Sep 2023 19:38:56 +0000</pubDate>
				<category><![CDATA[Amazon EC2]]></category>
		<category><![CDATA[AWS Organizations]]></category>
		<category><![CDATA[Data perimeters]]></category>
		<category><![CDATA[EC2]]></category>
		<category><![CDATA[IAM]]></category>
		<category><![CDATA[IMDS]]></category>
		<category><![CDATA[IMDSV1]]></category>
		<category><![CDATA[IMDSV2]]></category>
		<category><![CDATA[Instance profiles]]></category>
		<category><![CDATA[Instance Role]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[Network Perimeter]]></category>
		<category><![CDATA[Resource Policy]]></category>
		<category><![CDATA[SCP]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[service control policy]]></category>
		<category><![CDATA[SSRF]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=e474a43d1a9c4291c95ea2d14be39861</guid>

					<description><![CDATA[The Amazon Elastic Compute Cloud (Amazon EC2) Instance Metadata Service (IMDS) helps customers build secure and scalable applications. IMDS solves a security challenge for cloud users by providing access to temporary and frequently-rotated credentials, and by removing the need to hardcode or distribute sensitive credentials to instances manually or programmatically. The Instance Metadata Service Version 2 (IMDSv2) […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 81/478 objects using Memcached
Page Caching using Disk: Enhanced 
Lazy Loading (feed)
Database Caching using Memcached

Served from: noise.getoto.net @ 2025-12-07 23:45:18 by W3 Total Cache
-->