Yes. Security was designed into CloudOptimo from the beginning. We follow AWS best practices for cross-account access by utilizing cross-account IAM roles that only have the minimum required permissions. This role is setup by a Cloud Formation template during the signup process. Once in place, AWS will enforce that only the CloudOptimo account can assume this role, and only when a predetermined ExternalId generated during the signup process is provided. All access is also recorded and audit-able via Cloud Trail. For more details, on this process and how secure it is, please review the following


