AWS IAM Permissions Guardrails

AWS IAM Permissions Guardrails https://aws-samples.github.io/aws-iam-permissions-guardrails/

View project on GitHub

AWS Budgets

Identifier Guardrail Rationale Remediation References IAM Actions
IAM-BUDGETS-1 Check that the ability to modify or update AWS Budgets options are only assumable to authorized principals. In all AWS environments, ensure that only Budget administrators and authorized principals should be able to update or modify AWS Budgets options. Unauthorized modifications could affect your cost and usage budgets For unauthorized principals, either remove the associated IAM Actions https://docs.aws.amazon.com/awsaccountbilling/latest/aboutv2/budgets-managing-costs.html

budgets:ModifyBudget