More Info:

Ensure that no users have the KMS admin role and any one of the CryptoKey roles follows separation of duties, where no user have access to resources out of the scope of duty.

Risk Level

Critical

Address

Security

Compliance Standards

CISGCP, CBP, ISO27001

Triage and Remediation

Remediation

Using Console

Additional Reading: