A company's development team is designing an application using AWS Lambda and Amazon Elastic Container Service (Amazon ECS). The development team needs to create IAM roles to support these systems. The company's security team wants to allow the developers to build IAM roles directly, but the security team wants to retain control over the permissions the developers can delegate to those roles. The development team needs access to more permissions than those required for application's AWS services. The solution must minimize management overhead.
How should the security team prevent privilege escalation for both teams?
kiev
Highly Voted 3 years, 7 months agoideoignus
3 years, 4 months agoJohn129087
3 years, 6 months agoBalki
2 years, 6 months agoSmartphone
2 years, 4 months agojtzt2003
Highly Voted 3 years, 7 months agoRaphaello
Most Recent 1 year, 3 months agoRaphaello
1 year, 3 months agoyorkicurke
1 year, 5 months agopal40sg
2 years agocloud_collector
2 years, 8 months agoCuLeBrO
2 years, 9 months agolotfi50
2 years, 11 months agoChief123
3 years, 1 month agohk436
3 years, 7 months agoDhipakkumaran
3 years, 7 months agoTollaMS
3 years, 8 months agofais1985
3 years, 8 months agostamford
3 years, 8 months agodumma
3 years, 8 months agosantosar
3 years, 8 months ago