Manage
atscale
Accounts
AWS
ReachMe@boynux.com
Twitter: @_boynux_
Scout24
Inspiring your best. We connect people, cars
and homes.
AWS Popup Loft
15.10.2018
Berlin
Credit: Thomas Peter/Reuters
Moderation is a fatal thing. Nothing
succeeds like excess.
- Oscar Wilde
How much is too much?
POP Quiz
• How many accounts we have?
1. Less than 3
2. Less than 200
3. More than 500
Shared account strategy
Team Account
Product Account
What comes in the box?
POP QUIZE
• How long it takes to create an AWS account?
1. Less than 1 minute
2. About 4 hours
3. More than a day
Let them do the job!
Image credit: http://www.clker.com
• Automation is the key!
• Some things are hard to automate
Things you should use
• Cloud Formation
• Stack sets
• Organization IDs
• Custom resources
• SSM
• S3
• Lot’s of Python code (or Go to be more trendy)
Access management
OAuth 2.0
Authorization Server
User
Access Provider (Rabbit)
AWS Console
Access Token
Security and governance
• Guard Duty
• Trusted Advisor
• Checking IAM roles
• Checking Security Groups
• Checking outdated AMIs
• S3 Bucket Policies
• Etc ….
Money, Money, Money
• Cost dashboards
• Per team
• Per segment
• RI coverage and purchase
• In payer account
• In Product accounts
Communication
• HTTPS everywhere
• Endpoint Authentication
• Streaming
• VPC Peering (not much)
Weirdos everywhere
• Billing Account
• Backup accounts
• Some shared accounts
Questions?

Managing AWS Accounts at Scale