aws-iam-best-practices - AWS IAM Security Hardening & Least Privilege
Review and harden IAM policies following AWS security best practices and least privilege principles.
Tags
Updated: 2026-06-30Capabilities
Typical Inputs
Typical Outputs
What this skill does
- list overly permissive IAM policies
- find users without MFA
- find old access keys
- rotate access keys
- list unused IAM roles
- find roles with external trust
- simulate IAM policy permissions
- generate least privilege policy templates
- generate MFA-required policy templates
- generate IAM hardening report
- create virtual MFA devices
Inputs
- AWS credentials with IAM access
- IAM policy ARNs
- AWS account ID
Outputs
- IAM security audit report
- IAM policy templates
- list of security findings
Requirements
- AWS CLI installed and configured
- AWS credentials with IAM read access
- Python 3 with boto3 installed
