Leadership asks whether AWS Config aggregators and Security Hub delegated administration belong in the baseline multi-account governance model. What is the correct stance?
Select an answer to reveal the explanation.
Short Explanation
Citywide building codes are not a weekend craft project. Config aggregation and Security Hub delegated admin belong in the landing-zone blueprint from day one, not as an afterthought when something burns down.
Full Explanation
Centralized configuration and security posture management are core to multi-account governance. Config aggregators and Security Hub delegated administrator patterns give the security or audit account organization-wide visibility. Treating them as optional, sandbox-only, or laptop-local undermines continuous compliance and incident awareness expected at professional scope.