Home icon

How to centrally manage secrets with AWS Secrets Manager

Security Blog



This article explains how to centrally manage secrets like passwords, API keys, and other credentials using AWS Secrets Manager and AWS Key Management Service (AWS KMS) in a centralized AWS account.

Specifically, the article covers:

  • Creating database secrets in the centralized security account
  • Deploying Lambda rotation functions for automatic secret rotation
  • Setting up networking for Lambda to reach Secrets Manager
  • Deploying VPC peering between the centralized account and member accounts
  • Setting up resource-based policies for cross-account secret access
  • Challenges and potential solutions for a large-scale deployment


Go to article

The AWS News Feed is currently looking for gold sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.

Related articles

Jul 22
2024
How to use the AWS Secrets Manager Agent
Nov 19
2025
AWS Secrets Manager announces managed external secrets
Jan 9
2024
How to use AWS Secrets Manager and ABAC for enhanced secrets management in Amazon EKS
Nov 25
2025
AWS Secrets Manager launches Managed External Secrets for Third-Party Credentials

The AWS News Feed is currently looking for silver sponsors. If you want to support the AWS community and reach a large audience of AWS professionals, consider sponsoring the AWS News Feed.