AWS Identity and Access Management (IAM) now provides the ability to easily identify the user responsible for an AWS action performed while assuming an IAM role. By setting the new source identity attribute , which gets logged in AWS CloudTrail for most actions, you can easily find out who is responsible for actions performed using IAM roles.