# AWS IAM

## AWS Identity Access Management (IAM)

As cloud security professionals, it's imperative that we understand how identity and access is managed within AWS.

### Theory

Learn the theory of the AWS IAM Service — how Users/Groups/Roles authenticate to AWS and are authorized to perform actions within the account.

{% embed url="<https://www.youtube.com/watch?v=mfQ1cd1dIK0>" %}

### Hands-On

Time to get hands-on with IAM! Let's create Users, Groups, and Roles and learn how to set up and use them.&#x20;

{% embed url="<https://www.youtube.com/watch?v=WcCtyUXXpPw>" %}

***

## AWS Identity Center

AWS Identity Center expands on the IAM service by providing the ability to centrally manage identity and access across an AWS Organization (all the accounts!).

### Theory

Learn the theory of AWS Identity Center — how we integrate with AWS Organizations and centrally manage all of our users and permissions across all of our AWS accounts.&#x20;

{% embed url="<https://www.youtube.com/watch?v=pegqX2pLceg>" %}

### Hands-On

Coming soon!

Time to get hands-on with IAM Identity Center! We'll learn how to setup and configure AWS Identity Center in an Organization. Then we'll create and deploy identities and permissions to a member AWS account!


---

# Agent Instructions: Querying This Documentation

If you need additional information that is not directly available in this page, you can query the documentation dynamically by asking a question.

Perform an HTTP GET request on the current page URL with the `ask` query parameter:

```
GET https://www.techwithtyler.dev/academy/aws-security-cookbook-by-tyler/aws-iam.md?ask=<question>
```

The question should be specific, self-contained, and written in natural language.
The response will contain a direct answer to the question and relevant excerpts and sources from the documentation.

Use this mechanism when the answer is not explicitly present in the current page, you need clarification or additional context, or you want to retrieve related documentation sections.
