AWS Organizations now applies account departure security controls by default for new organizations created via AWS Organizations console

AWS Organizations Security Controls Update
AWS Organizations now automatically applies security controls by default when you create a new organization via the AWS Organizations console, simplifying initial security configuration. This approach safeguards multi-account environments by protecting against unintended member account departures from your organization.
When you create a new organization using the AWS Organizations console, the service automatically applies service control policies (SCPs) that prevent member accounts from leaving the organization or closing themselves. These controls help enterprises migrating to AWS or starting a new organization establish strong governance patterns without requiring deep security expertise.
What to do
- Review the automatically applied security controls.
- Modify or disable these settings at any time if needed.
This feature is available in US East (N. Virginia), AWS GovCloud (US-East), AWS GovCloud (US-West), China (Beijing), and China (Ningxia). To learn more, visit the AWS Organizations documentation.
Source: AWS release notes
If you need further guidance on AWS, our experts are available at AWS@westloop.io. You may also reach us by submitting the Contact Us form.



