Many-faced threats to Serverless security
Yan Cui

While the IAM policy is not versioned with a Lambda, the role is, so when a policy change is needed, the role can be changed. I agree it’s a situation that needs to be better supported by AWS, though.

