Account factory

Spin up new multi-account team setups in no time

DevOps Foundations includes a robust, secure, customizable account factory which gives your teams best-practices multi-account structures using AWS Organizations, all based on official AWS recommendations.

  • https://a-us.storyblok.com/f/1018157/215x110/62fb1ab9dd/adobe.png
  • https://a-us.storyblok.com/f/1018157/66x55/9a09a2ba05/cisco.png
  • https://a-us.storyblok.com/f/1018157/286x110/65e5b78709/dropbox.png
  • https://a-us.storyblok.com/f/1018157/185x110/45b2fdabd1/hertz.png
  • https://a-us.storyblok.com/f/1018157/245x110/0743f88049/maxar.png
  • https://a-us.storyblok.com/f/1018157/199x110/f7874ae61f/nasdaq.png
  • https://a-us.storyblok.com/f/1018157/311x110/f35f08bfb9/mercedes.png

Control Tower Integration

Gruntwork Account Factory integrates seamlessly with AWS Control Tower, giving you the benefits of IaC and the convenience of AWS console controls.

  • Managed as code. Integrate accounts created with Control Tower with your Terraform-managed infrastructure.

  • Account lifecycle notices. Gruntwork Pipelines provides support for adding, updating, and deleting accounts, and gives notifies you at every step.

  • Apply controls. Apply controls and guard rails (SCPs, AWS Config Rules) to your account in Control Tower.

Instrumental Logo

Out-of-the-box everything

  • Security baselines. Establish secure, CIS Foundations Benchmark compliant baselines in every new account, and customize them to meet your needs.

  • SSO. Give your teams easy secure access to their new accounts.

  • Modern networking. Include a production-ready VPC in each account, optionally with an inspection VPC pattern for added control [enterprise only].

  • Enforce guard rails. Fill in the gaps not supported by Control Tower, with GuardDuty, Macie, IAM Access Analyzer, and more.

  • GitOps Ready. All new accounts come with Gruntwork Pipelines installed, so teams can

Instrumental Logo

Empower your app teams

  • Module catalog. Leverage our library to populate your approved catalog of modules.

  • Infrastructure Scaffolding. Scaffold new Terraform modules from a customizable collection of templates.

  • GitOps Ready. All new accounts come with Gruntwork Pipelines installed, so teams can.

  • Secure. Your prod AWS credentials are kept isolated from developers so the blast radius of any changes is kept to a minimum.

Instrumental Logo

Keep all your accounts up-to-date

  • Automatic Updates

  • Promotion workflows.

Instrumental Logo
Case studies

Join a community of thousands of developers

INFRASTRUCTURE AS CODE STRUCTURE

Gruntwork proves instrumental in Instrumental’s growth

Gruntwork Account Factory integrates seamlessly with AWS Control Tower, giving you the benefits of IaC and the convenience of AWS console controls.

Grunty Arm
“It was fantastic to see how Gruntwork delivered our awesome AWS + Terraform infrastructure on time and well under budget.”
Testimonial Profile Image

Erem Boto

Senior Software Engineer

Testimonial Profile Image

How we compare

It has been our privilege to work with software teams of all sizes. Meet some of the members of the Gruntwork Community:

Do it yourself (DIY)

Consultant

Starting point

Leverage battle-tested code and tooling proven in prod

From scratch

From scratch

Incentives

Maximize product utility from a reusable library of code

Minimize investment of time

Maximize billable hours

Scope of work

End-to-end, modular architecture that fulfills the production-grade checklist

Varies depending on team knowledge and time available

Varies depending on consultant knowledge and budget available

Time to launch

~1 week

(highly predictable)

3 – 12 months

(highly variable)

3 – 12 months

(highly variable)

Lay your new DevOps Foundations today.

Chat with a DevOps expert and see how our integrated solution can meet the needs of your business and your teams.

Grunty