In this lab, you will configure AWS Organizations to effectively manage and secure a multi-account environment. The lab focuses on creating a new organization and using Service Control Policies (SCPs) to enforce security baselines across all accounts. You'll learn how to set up AWS Control Tower for streamlined account provisioning and governance. By the end of this lab, you will have hands-on experience deploying and managing secure AWS accounts at scale, an essential skill for real-world AWS environments.
A growing online retail company, "ShopCo", is expanding its AWS usage and needs to implement robust security controls to manage its multiple AWS accounts efficiently. ShopCo's requirements include centralized billing, strict access controls, and compliance monitoring across its accounts. As the lead AWS architect, your task is to implement AWS Organizations and Control Tower to address these needs, ensuring compliance and security are maintained as the organization scales.