IAM & access
Achilles heel #1.
Audit of roles, policies, MFA, key rotation. Detection of excessive privileges (`*:*`, AdministratorAccess on non-admin roles). Least-privilege recommendations with generated policies. SSO, SCP, AWS OUs, Boundary Permissions.