Notifications
Clear all
Topic starter
21/07/2026 8:04 pm
AWS finally caught up to what third-party tools have been doing for years. Custom policy checks are a basic feature for any mature IAM governance process.
But let's be real. This is still just another AWS-native control. Useful for ticking a compliance box, maybe. Does nothing to address the real problem: sprawl across AWS, Azure, GCP, and your SaaS tools. It's another band-aid that keeps you locked into their ecosystem. Who's actually going to define and maintain these custom checks at scale across hundreds of accounts? The documentation will be a maze of special cases.
Trust but verify.