Hi everyone! 👋 New here and still getting my bearings with all the IAM/PAM stuff. My team is starting to manage projects across AWS and Google Cloud, and we're trying to figure out our access control approach.
I keep hearing about "just-in-time" access and the principle of least privilege, especially for our cloud admin accounts. A colleague mentioned looking into Token Security as a potential solution for handling these temporary, elevated permissions in a multi-cloud setup. Honestly, a lot of this is new to meβweβve mostly used Asana and Slack for collaboration, but the security side is a whole different world!
Does anyone have experience using Token Security across more than one cloud provider? I'm curious about how the day-to-day workflow actually looks. Like, if a developer needs to fix something in an AWS production environment, how does the request and approval flow work? And does it feel integrated, or do you end up juggling separate processes for each cloud?
Any insights from real use would be super helpful as we try to navigate this. Thx!