taleliyahu / startup-aws-iam-roles Goto Github PK
View Code? Open in Web Editor NEWA list of typical positions in a startup and their policies for IAM AWS.
A list of typical positions in a startup and their policies for IAM AWS.
Business, Tech and Ops policy groups for all set of roles for any size startup.
With current policy structure, there is no deny statement when a user is not using MFA which means that if another policy gets attached (like administrator for example), they will be able to modify resources in AWS without MFA.
Using a deny when the MFA is not present will overrule any Allow
statements.
Fine tuning required for few * wide open roles
To control who in the organization has permission to create and manage security groups and network ACLs (NACL). We need to Isolate the responsibilities and roles for better defense. For example, we can give only network administrators or security admin the permission to manage the security groups and restrict other roles.
API like below should be restricted to prevent any mishappening:
ec2:StopInstances,
ec2:TerminateInstances, etc.
Creating 3 different groups for startups with 4 people, 12 people and 40+ (current one designed for 40+ people startup)
A declarative, efficient, and flexible JavaScript library for building user interfaces.
๐ Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
An Open Source Machine Learning Framework for Everyone
The Web framework for perfectionists with deadlines.
A PHP framework for web artisans
Bring data to life with SVG, Canvas and HTML. ๐๐๐
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
Some thing interesting about web. New door for the world.
A server is a program made to process requests and deliver data to clients.
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
Some thing interesting about visualization, use data art
Some thing interesting about game, make everyone happy.
We are working to build community through open source technology. NB: members must have two-factor auth.
Open source projects and samples from Microsoft.
Google โค๏ธ Open Source for everyone.
Alibaba Open Source for everyone
Data-Driven Documents codes.
China tencent open source team.