AWS Organizations now supports tagging, tag-on-create and Attribute-Based Access Control (ABAC)

AWS Organizations added new capabilities to its existing support for tagging AWS accounts in your organization. Now you can attach tags, or user-defined attributes, to Organizational Units (OUs), the organization’s root and policies thus enabling you to easily identify, classify, or categorize resources in your organization. You can also tag these resources as you create them, giving you a convenient way to ensure that all your AWS Organizations resources are always tagged.  

