A hands-on workshop on the SCPs and Bedrock Policies that let your team move fast with AI, without losing control of production.
Your developers want to build with Bedrock. Your platform team wants to ship AI workloads without a six-month review cycle. And your security team wants to know that AI agents aren’t running wild in production.
The default posture in most AWS Organizations does nothing to reconcile these three initiatives. MCP servers are accessible in production accounts. Foundation models can be invoked without restriction. Claude Code and Kiro can create access keys and take actions in environments they were never meant to touch. And Bedrock Guardrails configured at the account level can be overridden by anyone with the right permissions.
We’ll go control by control through the governance mechanisms available in AWS Organizations and show you exactly how to deploy them.
What you’ll walk away with
In addition to general strategies for deploying AI on AWS, you’ll have deployable policy templates, including:
1. SCP to block MCP server activity in production OUs
2. Bedrock Policy to enforce org-level content guardrails
3. SCPs to restrict AI service availability by OU
4. SCPs to control foundation model access (deny-list and allow-list)
5. SCP to block long-term Bedrock API key creation
Meet Your Speakers
Christophe Limpalair
Founder & AWS Trainer
Cybr
Can't teach enough AWS classes
Sandy Bird
CTO & Co-Founder
Sonrai Security
The Wizard of Fredericton
Register here
- Instant confirmation email
- Bonus materials included
- No spam, unsubscribe anytime
By registering, you agree to receive webinar updates and marketing emails. You can opt-out at any time.
