🔶

AWS Organizations

  • Global service for centrally managing and governing multiple AWS accounts.
  • The management account (formerly master account) controls the organization and its policies.
  • Member accounts are linked accounts within the organization; each can belong to only one organization at a time.
  • Consolidated Billing allows all accounts to share a single payment method and receive one combined invoice.
  • Aggregates usage for volume discounts (e.g., EC2, S3) and shares Reserved Instances and Savings Plans discounts across accounts.
  • Provides an API for automating account creation, invitations, and policy management.
 
🔷
AWS Organizations – Hierarchy
🔷
AWS Organizations – Advantages and Security
🔷
Service Control Policies (SCP)
🟢
AWS Tag Policies