

# Workforce access
<a name="aam-workforce-access"></a>

Account access manager enables you to assign AWS account access to your workforce users and groups in IAM Identity Center by mapping them to IAM roles in your AWS accounts. If you are new to IAM Identity Center, see [Set up workforce access to AWS resources](https://docs.aws.amazon.com/singlesignon/latest/userguide/manage-your-workforce-access.html) in the *AWS IAM Identity Center User Guide* for information about authentication sessions, user access management, password management, and multi-factor authentication.

## User portals
<a name="aam-user-portals"></a>

To access the AWS accounts assigned to them, your workforce users can navigate directly to the account access portal using a bookmark, or launch it from within the AWS access portal.

Your users might interact with two user portals:

**Account access portal**  
This is a portal (URL) that allows workforce users to access the AWS accounts assigned to them using account access manager. This portal (URL) can be bookmarked for direct access and is also available in the AWS access portal as an AWS managed application.

**AWS access portal**  
This is the main entry point into AWS for IAM Identity Center users. This portal displays all AWS applications that users have access to, including the account access portal.

**Tip**  
We recommend bookmarking both portals for faster navigation. If you use an external identity provider, you can also create bookmark apps for both portals there.