Skip to main content
Definition

AWS Landing Zone

Definition

AWS Landing Zone

An AWS Landing Zone is a pre-configured, multi-account AWS environment built on AWS Control Tower and AWS Organizations. It provides a governed foundation with security guardrails, centralised logging, and automated account provisioning.

In detail

Many AWS environments grow faster than their governance. One account becomes ten, ten become thirty, without consistent policies, without central visibility, without audit evidence. A landing zone prevents this drift by enforcing structure from the start.

A well-designed landing zone includes an OU hierarchy, Service Control Policies, centralised CloudTrail logging, Security Hub aggregation, and an Account Factory for self-service provisioning.

How Tallence helps

Tallence builds and operates AWS landing zones through the Cloud Governance Accelerator and Tallence Cloud Foundation managed service.

Learn more about Landing Zone operations