AWS Glue Data Catalog now supports delegating encryption permissions to an IAM role. Customers can configure an IAM role with Glue Data Catalog to manage KMS key permissions on behalf of calling users. Delegating the configured IAM role simplifies the management of the KMS key permissions used to encrypt the Glue Data Catalog and reduces the number of grants needed to allow users to access their catalog.
Source:: Amazon AWS