View a markdown version of this page

Manage workforce members - Amazon Account Management
Services or capabilities described in Amazon Web Services documentation might vary by Region. To see the differences applicable to the China Regions, see Getting Started with Amazon Web Services in China (PDF).

Manage workforce members

Warning

We're currently releasing our new experience to a limited number of customers. You might not be able to access this experience yet.

After you've activated advanced features, you can invite new workforce members or remove existing workforce members. This includes adding your existing workforce to new Amazon accounts. The following information is only for Amazon organizations that use Amazon Builder ID as the identity source. If you use an external identity provider (IdP), you manage your workforce in those identity providers. If you use Identity Center directory, use the documentation described in Manage your identity source.

To invite new workforce members
  1. Open Amazon Settings at https://settings.aws.com.

  2. In the main navigation pane, choose Projects.

  3. For Actions, choose Manage team.

    This will open the IAM Identity Center. This is a task that requires root-level permission.

  4. On the Users page of the IAM Identity Center console, choose Invite new team member.

  5. For Email, enter an email address or a list of email addresses. Separate the email addresses with commas (,) or semicolons (;).

  6. Choose Send invitation.

After the workforce member accepts their invitation, you configure which Amazon accounts they have access to in Amazon Account Access Manager. For more information, see Manage access to Amazon accounts.

To remove workforce members
  1. Open Amazon Settings at https://settings.aws.com.

  2. In the main navigation pane, choose Projects.

  3. For Actions, choose Manage team.

    This will open the IAM Identity Center. This is a task that requires root-level permission.

  4. On the Users page of the IAM Identity Center console, select a team member, and then choose Remove.

  5. Confirm your choice and choose Remove.

The team member will immediately lose all access to your Amazon organization.

These steps show you how to manage your workforce members by first accessing Amazon Settings. However, you can sign into the Amazon Web Services Management Console with your delegate admin account and access the IAM Identity Center or the IAM console to manage your workforce members.