Summary
In this chapter, we focused on the various IAM services in AWS, Azure, and GCP.
Identity management services allow us to control access to resources and services in our cloud environment. They provide the least privileged access to resources and monitor what actions were performed using identities in our cloud environments.
We discussed everything from cloud-native identity and access management services to managed Active Directory services for connecting to/from on-premises to cloud environments in hybrid architectures.
In each section, we reviewed best practices for configuration, account management, monitoring, and auditing.
In the next chapter, we will review how to perform auditing and threat detection in the cloud.