AWS IAM group has administrative privileges

This page is not yet available in Spanish. We are working on its translation.
If you have any questions or feedback about our current translation project, feel free to reach out to us!

Description

Confirm there are no IAM Groups with administrative privileges for your AWS account.

Rationale

An IAM group with administratative privileges can access all services and resources in an AWS account. Any groups with IAM users that should not have access can potentially, whether unknowingly or purposefully, cause security issues or data leaks.

Remediation

Determine the proper permissions needed for the group and modify the IAM policy to better match that need.