Hacker News new | ask | show | jobs
by giaour 1223 days ago
No one has access to literally everything. I work for a cloud provider with hundreds of products, tens of regions, and multiple isolated "clouds"; the "full access to production" you allude to only exists at companies too new to have developed formal access policies and too small to have gotten the attention of regulators.

Each team that owns a service has access to the prod environment(s) for said service (including the cloud console, a shell on a prod machine with admin privileges, etc) provided they get peer approval for the access they need.