- To encrypt data at rest and in transit
- To centrally manage access to multiple AWS accounts and cloud applications
- To monitor and record account activity for compliance auditing
- To protect web applications from common web exploits