Mods
AWS

IAM Role: AWS/IoT/Admin

PermissionGrant
iam:PassRoleAdmin
iot:AcceptCertificateTransferAdmin
iot:AddThingToBillingGroupAdmin
iot:AttachPolicyAdmin
iot:AttachSecurityProfileAdmin
iot:CancelAuditMitigationActionsTaskAdmin
iot:CancelAuditTaskAdmin
iot:CancelCertificateTransferAdmin
iot:CancelJobExecutionAdmin
iot:ClearDefaultAuthorizerAdmin
iot:ConfirmTopicRuleDestinationAdmin
iot:ConnectAdmin
iot:CreateAuthorizerAdmin
iot:CreateBillingGroupAdmin
iot:CreateCertificateFromCsrAdmin
iot:CreateDomainConfigurationAdmin
iot:CreateDynamicThingGroupAdmin
iot:CreateKeysAndCertificateAdmin
iot:CreateMitigationActionAdmin
iot:CreateOTAUpdateAdmin
iot:CreateParticipantConnectionAdmin
iot:CreatePolicyAdmin
iot:CreatePolicyVersionAdmin
iot:CreateProvisioningClaimAdmin
iot:CreateProvisioningTemplateAdmin
iot:CreateProvisioningTemplateVersionAdmin
iot:CreateRoleAliasAdmin
iot:CreateScheduledAuditAdmin
iot:CreateSecurityProfileAdmin
iot:CreateStreamAdmin
iot:CreateThingAdmin
iot:CreateThingGroupAdmin
iot:CreateThingTypeAdmin
iot:CreateTopicRuleAdmin
iot:CreateTopicRuleDestinationAdmin
iot:DeleteAccountAuditConfigurationAdmin
iot:DeleteAuthorizerAdmin
iot:DeleteBillingGroupAdmin
iot:DeleteCACertificateAdmin
iot:DeleteCertificateAdmin
iot:DeleteConnectionAdmin
iot:DeleteDomainConfigurationAdmin
iot:DeleteDynamicThingGroupAdmin
iot:DeleteJobExecutionAdmin
iot:DeleteMitigationActionAdmin
iot:DeleteOTAUpdateAdmin
iot:DeletePolicyAdmin
iot:DeletePolicyVersionAdmin
iot:DeleteProvisioningTemplateAdmin
iot:DeleteProvisioningTemplateVersionAdmin
iot:DeleteRegistrationCodeAdmin
iot:DeleteRoleAliasAdmin
iot:DeleteScheduledAuditAdmin
iot:DeleteSecurityProfileAdmin
iot:DeleteStreamAdmin
iot:DeleteThingAdmin
iot:DeleteThingGroupAdmin
iot:DeleteThingShadowAdmin
iot:DeleteThingTypeAdmin
iot:DeleteTopicRuleAdmin
iot:DeleteTopicRuleDestinationAdmin
iot:DeleteV2LoggingLevelAdmin
iot:DeprecateThingTypeAdmin
iot:DetachPolicyAdmin
iot:DetachPrincipalPolicyAdmin
iot:DetachSecurityProfileAdmin
iot:DisconnectParticipantAdmin
iot:GetThingShadowAdmin
iot:PostToConnectionAdmin
iot:PublishAdmin
iot:ReceiveAdmin
iot:RegisterCACertificateAdmin
iot:RegisterCertificateAdmin
iot:RegisterThingAdmin
iot:RejectCertificateTransferAdmin
iot:RemoveThingFromBillingGroupAdmin
iot:RemoveThingFromThingGroupAdmin
iot:ReplaceTopicRuleAdmin
iot:SetDefaultAuthorizerAdmin
iot:SetDefaultPolicyVersionAdmin
iot:SetLoggingOptionsAdmin
iot:SetV2LoggingLevelAdmin
iot:SetV2LoggingOptionsAdmin
iot:SubscribeAdmin
iot:TransferCertificateAdmin
iot:UpdateAccountAuditConfigurationAdmin
iot:UpdateAuthorizerAdmin
iot:UpdateBillingGroupAdmin
iot:UpdateCACertificateAdmin
iot:UpdateCertificateAdmin
iot:UpdateDomainConfigurationAdmin
iot:UpdateDynamicThingGroupAdmin
iot:UpdateEventConfigurationsAdmin
iot:UpdateIndexingConfigurationAdmin
iot:UpdateJobExecutionAdmin
iot:UpdateMitigationActionAdmin
iot:UpdateProvisioningTemplateAdmin
iot:UpdateRoleAliasAdmin
iot:UpdateScheduledAuditAdmin
iot:UpdateSecurityProfileAdmin
iot:UpdateStreamAdmin
iot:UpdateThingAdmin
iot:UpdateThingGroupAdmin
iot:UpdateThingGroupsForThingAdmin
iot:UpdateThingShadowAdmin
iot:UpdateTopicRuleDestinationAdmin
iot:ValidateSecurityProfileBehaviorsAdmin
iotdata:DeleteThingShadowAdmin
iotdata:GetThingShadowAdmin
iotdata:PublishAdmin
iotdata:UpdateThingShadowAdmin
iot-jobs-data:StartNextPendingJobExecutionOperator
iot-jobs-data:UpdateJobExecutionOperator
iot:AddThingToThingGroupOperator
iot:AssociateTargetsWithJobOperator
iot:AttachPrincipalPolicyOperator
iot:AttachThingPrincipalOperator
iot:CancelJobOperator
iot:CloseTunnelOperator
iot:CreateJobOperator
iot:DeleteJobOperator
iot:DetachThingPrincipalOperator
iot:DisableTopicRuleOperator
iot:EnableTopicRuleOperator
iot:GetTopicRuleOperator
iot:OpenTunnelOperator
iot:SearchIndexOperator
iot:SendEventOperator
iot:SendMessageOperator
iot:StartAuditMitigationActionsTaskOperator
iot:StartNextPendingJobExecutionOperator
iot:StartOnDemandAuditTaskOperator
iot:StartThingRegistrationTaskOperator
iot:StopThingRegistrationTaskOperator
iot:TagResourceOperator
iot:TestAuthorizationOperator
iot:TestInvokeAuthorizerOperator
iot:UntagResourceOperator
iot:UpdateJobOperator
cloudwatch:GetMetricStatisticsMetadata
iot-jobs-data:DescribeJobExecutionMetadata
iot-jobs-data:GetPendingJobExecutionsMetadata
iot:DescribeAccountAuditConfigurationMetadata
iot:DescribeAuditFindingMetadata
iot:DescribeAuditMitigationActionsTaskMetadata
iot:DescribeAuditTaskMetadata
iot:DescribeAuthorizerMetadata
iot:DescribeBillingGroupMetadata
iot:DescribeCACertificateMetadata
iot:DescribeCertificateMetadata
iot:DescribeDefaultAuthorizerMetadata
iot:DescribeDomainConfigurationMetadata
iot:DescribeEndpointMetadata
iot:DescribeEventConfigurationsMetadata
iot:DescribeIndexMetadata
iot:DescribeJobMetadata
iot:DescribeJobExecutionMetadata
iot:DescribeMitigationActionMetadata
iot:DescribeProvisioningTemplateMetadata
iot:DescribeProvisioningTemplateVersionMetadata
iot:DescribeRoleAliasMetadata
iot:DescribeScheduledAuditMetadata
iot:DescribeSecurityProfileMetadata
iot:DescribeStreamMetadata
iot:DescribeThingMetadata
iot:DescribeThingGroupMetadata
iot:DescribeThingRegistrationTaskMetadata
iot:DescribeThingTypeMetadata
iot:DescribeTunnelMetadata
iot:GetCardinalityMetadata
iot:GetConnectionMetadata
iot:GetEffectivePoliciesMetadata
iot:GetIndexingConfigurationMetadata
iot:GetJobDocumentMetadata
iot:GetLoggingOptionsMetadata
iot:GetOTAUpdateMetadata
iot:GetPendingJobExecutionsMetadata
iot:GetPercentilesMetadata
iot:GetPolicyMetadata
iot:GetPolicyVersionMetadata
iot:GetRegistrationCodeMetadata
iot:GetStatisticsMetadata
iot:GetTopicRuleDestinationMetadata
iot:GetTranscriptMetadata
iot:GetV2LoggingOptionsMetadata
iot:ListActiveViolationsMetadata
iot:ListAttachedPoliciesMetadata
iot:ListAuditFindingsMetadata
iot:ListAuditMitigationActionsExecutionsMetadata
iot:ListAuditMitigationActionsTasksMetadata
iot:ListAuditTasksMetadata
iot:ListAuthorizersMetadata
iot:ListBillingGroupsMetadata
iot:ListCACertificatesMetadata
iot:ListCertificatesMetadata
iot:ListCertificatesByCAMetadata
iot:ListDomainConfigurationsMetadata
iot:ListIndicesMetadata
iot:ListJobExecutionsForJobMetadata
iot:ListJobExecutionsForThingMetadata
iot:ListJobsMetadata
iot:ListMitigationActionsMetadata
iot:ListOTAUpdatesMetadata
iot:ListOutgoingCertificatesMetadata
iot:ListPoliciesMetadata
iot:ListPolicyPrincipalsMetadata
iot:ListPolicyVersionsMetadata
iot:ListPrincipalPoliciesMetadata
iot:ListPrincipalThingsMetadata
iot:ListProvisioningTemplateVersionsMetadata
iot:ListProvisioningTemplatesMetadata
iot:ListRoleAliasesMetadata
iot:ListScheduledAuditsMetadata
iot:ListSecurityProfilesMetadata
iot:ListSecurityProfilesForTargetMetadata
iot:ListStreamsMetadata
iot:ListTagsForResourceMetadata
iot:ListTargetsForPolicyMetadata
iot:ListTargetsForSecurityProfileMetadata
iot:ListThingGroupsMetadata
iot:ListThingGroupsForThingMetadata
iot:ListThingPrincipalsMetadata
iot:ListThingRegistrationTaskReportsMetadata
iot:ListThingRegistrationTasksMetadata
iot:ListThingTypesMetadata
iot:ListThingsMetadata
iot:ListThingsInBillingGroupMetadata
iot:ListThingsInThingGroupMetadata
iot:ListTopicRuleDestinationsMetadata
iot:ListTopicRulesMetadata
iot:ListTunnelsMetadata
iot:ListV2LoggingLevelsMetadata
iot:ListViolationEventsMetadata