<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"
	xmlns:content="http://purl.org/rss/1.0/modules/content/"
	xmlns:wfw="http://wellformedweb.org/CommentAPI/"
	xmlns:dc="http://purl.org/dc/elements/1.1/"
	xmlns:atom="http://www.w3.org/2005/Atom"
	xmlns:sy="http://purl.org/rss/1.0/modules/syndication/"
	xmlns:slash="http://purl.org/rss/1.0/modules/slash/"
	>

<channel>
	<title>policies &#8211; Noise</title>
	<atom:link href="https://noise.getoto.net/tag/policies/feed/" rel="self" type="application/rss+xml" />
	<link>https://noise.getoto.net</link>
	<description>The collective thoughts of the interwebz</description>
	<lastBuildDate>Fri, 19 Sep 2025 17:50:10 +0000</lastBuildDate>
	<language>en-US</language>
	<sy:updatePeriod>
	hourly	</sy:updatePeriod>
	<sy:updateFrequency>
	1	</sy:updateFrequency>
	<generator>https://wordpress.org/?v=6.8.2</generator>
	<item>
		<title>Unlock new possibilities: AWS Organizations service control policy now supports full IAM language</title>
		<link>https://noise.getoto.net/2025/09/19/unlock-new-possibilities-aws-organizations-service-control-policy-now-supports-full-iam-language/</link>
		
		<dc:creator><![CDATA[Swara Gandhi]]></dc:creator>
		<pubDate>Fri, 19 Sep 2025 17:50:10 +0000</pubDate>
				<category><![CDATA[announcements]]></category>
		<category><![CDATA[AWS IAM]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[AWS Organizations]]></category>
		<category><![CDATA[policies]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=7cc3502e0d2eb27589875592059f6c18</guid>

					<description><![CDATA[Amazon Web Service (AWS) recently announced that AWS Organizations now offers full AWS Identity and Access Management (IAM) policy language support for service control policies (SCPs). With this feature, you can use conditions, individual resource Amazon Resource Names (ARNs), and the NotAction element with Allow statements. Additionally, you can now use wildcards at the beginning or middle of […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Refine permissions for externally accessible roles using IAM Access Analyzer and IAM action last accessed</title>
		<link>https://noise.getoto.net/2023/11/01/refine-permissions-for-externally-accessible-roles-using-iam-access-analyzer-and-iam-action-last-accessed/</link>
		
		<dc:creator><![CDATA[Nini Ren]]></dc:creator>
		<pubDate>Wed, 01 Nov 2023 18:51:27 +0000</pubDate>
				<category><![CDATA[Access management]]></category>
		<category><![CDATA[Amazon DynamoDB]]></category>
		<category><![CDATA[AWS IAM]]></category>
		<category><![CDATA[AWS IAM Access Analyzer]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[IAM roles]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[least privilege]]></category>
		<category><![CDATA[policies]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=4185671b8c05efc692a62d9e54459559</guid>

					<description><![CDATA[When you build on Amazon Web Services (AWS) across accounts, you might use an AWS Identity and Access Management (IAM) role to allow an authenticated identity from outside your account—such as an IAM entity or a user from an external identity provider—to access the resources in your account. IAM roles have two types of policies […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Use IAM Access Analyzer policy generation to grant fine-grained permissions for your AWS CloudFormation service roles</title>
		<link>https://noise.getoto.net/2022/10/07/use-iam-access-analyzer-policy-generation-to-grant-fine-grained-permissions-for-your-aws-cloudformation-service-roles/</link>
		
		<dc:creator><![CDATA[Joel Knight]]></dc:creator>
		<pubDate>Fri, 07 Oct 2022 19:19:32 +0000</pubDate>
				<category><![CDATA[Access management]]></category>
		<category><![CDATA[Advanced (300)]]></category>
		<category><![CDATA[AWS CloudTrail]]></category>
		<category><![CDATA[AWS IAM]]></category>
		<category><![CDATA[AWS Lambda]]></category>
		<category><![CDATA[least privilege]]></category>
		<category><![CDATA[policies]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=66af7307dc311d91b394cfd379abf6fe</guid>

					<description><![CDATA[AWS Identity and Access Management (IAM) Access Analyzer provides tools to simplify permissions management by making it simpler for you to set, verify, and refine permissions. One such tool is IAM Access Analyzer policy generation, which creates fine-grained policies based on your AWS CloudTrail access activity—for example, the actions you use with Amazon Elastic Compute […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>IAM Access Analyzer makes it simpler to author and validate role trust policies</title>
		<link>https://noise.getoto.net/2022/10/04/iam-access-analyzer-makes-it-simpler-to-author-and-validate-role-trust-policies/</link>
		
		<dc:creator><![CDATA[Mathangi Ramesh]]></dc:creator>
		<pubDate>Mon, 03 Oct 2022 22:43:21 +0000</pubDate>
				<category><![CDATA[Access management]]></category>
		<category><![CDATA[AWS CloudTrail]]></category>
		<category><![CDATA[AWS IAM]]></category>
		<category><![CDATA[AWS IAM Access Analyzer]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[AWS Lambda]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[least privilege]]></category>
		<category><![CDATA[policies]]></category>
		<category><![CDATA[security]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Technical How-to]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=56e945541f595b15cdb506d6651b96e5</guid>

					<description><![CDATA[AWS Identity and Access Management (IAM) Access Analyzer provides many tools to help you set, verify, and refine permissions. One part of IAM Access Analyzer—policy validation—helps you author secure and functional policies that grant the intended permissions. Now, I’m excited to announce that AWS has updated the IAM console experience for role trust policies to […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Get more out of service control policies in a multi-account environment</title>
		<link>https://noise.getoto.net/2022/06/06/get-more-out-of-service-control-policies-in-a-multi-account-environment/</link>
		
		<dc:creator><![CDATA[Omar Haq]]></dc:creator>
		<pubDate>Mon, 06 Jun 2022 19:03:18 +0000</pubDate>
				<category><![CDATA[AWS Organizations]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[policies]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[service control policies]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=1f0249567d946dc368e06f67244eb820</guid>

					<description><![CDATA[Many of our customers use AWS Organizations to manage multiple Amazon Web Services (AWS) accounts. There are many benefits to using multiple accounts in your organization, such as grouping workloads with a common business purpose, complying with regulatory frameworks, and establishing strong isolation barriers between applications based on ownership. Customers are even using distinct accounts […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>Use IAM Access Analyzer to generate IAM policies based on access activity found in your organization trail</title>
		<link>https://noise.getoto.net/2021/08/26/use-iam-access-analyzer-to-generate-iam-policies-based-on-access-activity-found-in-your-organization-trail/</link>
		
		<dc:creator><![CDATA[Mathangi Ramesh]]></dc:creator>
		<pubDate>Thu, 26 Aug 2021 20:33:49 +0000</pubDate>
				<category><![CDATA[Access management]]></category>
		<category><![CDATA[Amazon CloudTrail]]></category>
		<category><![CDATA[Amazon DynamoDB]]></category>
		<category><![CDATA[Amazon EC2]]></category>
		<category><![CDATA[Amazon S3]]></category>
		<category><![CDATA[Amazon Simple Storage Services (S3)]]></category>
		<category><![CDATA[AWS IAM]]></category>
		<category><![CDATA[AWS IAM Access Analyzer]]></category>
		<category><![CDATA[AWS Lambda]]></category>
		<category><![CDATA[Intermediate (200)]]></category>
		<category><![CDATA[least privilege]]></category>
		<category><![CDATA[policies]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=2cdfd0f94867b7aa06ac9e9ec198b00d</guid>

					<description><![CDATA[In April 2021, AWS Identity and Access Management (IAM) Access Analyzer added policy generation to help you create fine-grained policies based on AWS CloudTrail activity stored within your account. Now, we’re extending policy generation to enable you to generate policies based on access activity stored in a designated account. For example, you can use AWS […]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
		<item>
		<title>New IAMCTL tool compares multiple IAM roles and policies</title>
		<link>https://noise.getoto.net/2020/10/06/new-iamctl-tool-compares-multiple-iam-roles-and-policies/</link>
		
		<dc:creator><![CDATA[Sudhir Reddy Maddulapally]]></dc:creator>
		<pubDate>Tue, 06 Oct 2020 16:08:53 +0000</pubDate>
				<category><![CDATA[AWS CLI]]></category>
		<category><![CDATA[AWS IAM]]></category>
		<category><![CDATA[AWS Identity and Access Management (IAM)]]></category>
		<category><![CDATA[Drift]]></category>
		<category><![CDATA[Expert (400)]]></category>
		<category><![CDATA[Governance]]></category>
		<category><![CDATA[policies]]></category>
		<category><![CDATA[roles]]></category>
		<category><![CDATA[Security Blog]]></category>
		<category><![CDATA[Security, Identity & Compliance]]></category>
		<category><![CDATA[Trust policy]]></category>
		<guid isPermaLink="false">http://noise.getoto.net/?guid=f1739086439ab1ab4bb14f72c43dd521</guid>

					<description><![CDATA[If you have multiple Amazon Web Services (AWS) accounts, and you have AWS Identity and Access Management (IAM) roles among those multiple accounts that are supposed to be similar, those roles can deviate over time from your intended baseline due to manual actions performed directly out-of-band called drift. As part of regular compliance checks, you [&#8230;]]]></description>
		
		
		<enclosure url="" length="0" type="" />

			</item>
	</channel>
</rss>

<!--
Performance optimized by W3 Total Cache. Learn more: https://www.boldgrid.com/w3-total-cache/

Object Caching 43/174 objects using Memcached
Page Caching using Disk: Enhanced 
Lazy Loading (feed)
Database Caching using Memcached

Served from: noise.getoto.net @ 2025-12-05 00:29:06 by W3 Total Cache
-->