Continue Reading Securing your AWS root Account with Yubikey

Securing your AWS root Account with Yubikey

When you create an AWS account, a default sign-in identity is also created and associated to the account with full access to all of the AWSresources and services within the account. This account is known as the root user account and uses the email address along with the password you set when the account was created. Following AWS security best practices, you should use your root account to create an IAM user account following the least privileges principal and simply treat the root user account in emergency/last resort scenarios.