Announcing SCPkit!

Dustin Whited, Director of Security Engineering
Dustin Whited
Director of Security Engineering

We are proud to announce another open-source project from Aquia: SCPkit. This tool aids in the management of service control policies (SCP) in Amazon Web Services (AWS). SCPs are a form of guardrail that enforce permissions in AWS accounts.

What are SCPs?

Service Control Policies are managed in AWS Organizations and define the permission capability in member accounts.

SCPs are often used to restrict and enforce security controls and are an important part of a mature AWS security program. You can learn more about SCPs in the AWS Organizations documentation. Examples of SCPs are also available from AWS.

How does SCPkit Help?

SCPs have a current limit of five total per entity and a size limit on each of 5120 bytes. This tool will merge selected SCPs into the fewest amount of policies, and optionally remove whitespaces characters. This results in a denser policy document and enables more guardrails to be implemented per entity.

The code for this open-source project can be found on Aquia’s Github. The repository also contains instructions for use.

Aquia

Securing The Digital Transformation ®

Aquia is a cloud and cybersecurity digital services firm and “2024 Service-Disabled, Veteran-Owned Small Business (SDVOSB) of the Year” awardee. We empower mission owners in the U.S. government and public sector to achieve secure, efficient, and compliant digital transformation.

As strategic advisors and engineers, we help our customers develop and deploy innovative cloud and cybersecurity technologies quickly, adopt and implement digital transformation initiatives effectively, and navigate complex regulatory landscapes expertly. We provide multi-cloud engineering and advisory expertise for secure software delivery; security automation; SaaS security; cloud-native architecture; and governance, risk, and compliance (GRC) innovation.

Founded in 2021 by United States veterans, we are passionate about making our country digitally capable and secure, and driving transformational change across the public and private sectors. Aquia is an Amazon Web Services (AWS) Advanced Tier partner and member of the Google Cloud Partner Advantage Program.

Previous
Previous

Hack The Box Precious Walkthrough

Next
Next

SaaS Governance - A Critical Industry Need