My team is looking for a JIT AWS credential management tool and I’m not finding and good results on Goog.
Requirements:
- Requests for elevated access are reviewable (and deniable) before access is granted
- After a request is approved, credentials are provided by the tool automatically with an expiration date
- The access will be revoked automatically at the time of expiration
- The review process and access is auditable
- The tool isnt insanely expensive. 50USD/month/user is far too expensive.
- The tool doesnt require a second organization to be set up in AWS (https://aws-samples.github.io/iam-identity-center-team/docs/deployment/prerequisites.html)
If anyone has any suggestions, it would be super helpful! Thank you!