{"slug":"iam-aws-glue","cloud":"aws","service":"glue","title":"AWS Glue (IAM)","description":"A fully managed extract, transform, and load (ETL) service that makes it easy to prepare and load data for analytics.","category":"analytics","common_permissions":["glue:GetJob","glue:GetJobs","glue:GetJobRun","glue:GetJobRuns","glue:GetTable","glue:GetTables","glue:GetDatabase"],"least_privilege_example":"{\n  \"Version\": \"2012-10-17\",\n  \"Statement\": [\n    {\n      \"Effect\": \"Allow\",\n      \"Action\": [\n        \"glue:GetJob\",\n        \"glue:GetJobs\",\n        \"glue:GetJobRun\",\n        \"glue:GetJobRuns\",\n        \"glue:GetTable\",\n        \"glue:GetTables\",\n        \"glue:GetDatabase\"\n      ],\n      \"Resource\": \"*\"\n    }\n  ]\n}","warnings":["Avoid glue:* — grants full control including creating, updating, and deleting jobs, crawlers, and data catalogs.","Avoid glue:DeleteJob — allows deletion of ETL jobs, causing data processing failures."],"docs":"https://servicereference.us-east-1.amazonaws.com/v1/glue/glue.json","tags":["iam","aws"],"last_verified":"2026-06-14T00:00:00.000Z","next_check":"2026-12-11T00:00:00.000Z","created_at":"2026-06-14T04:49:18.300Z","updated_at":"2026-06-14T04:49:18.300Z"}