Published on the AWS Security Blog: Automating IAM Remediation
Co-authored a solution for closing IAM Access Analyzer findings automatically — routing each one to a pull request, an issue, or a controlled decommission based on how the role was created.