This document describes how to create an IAM user and grant permissions. You can directly authorize an IAM user, or add an IAM user to a user group and authorize the user group, and the members of the user group will inherit the permissions of the user group:
If the current policy already meets the usage requirements, you can directly add a permissions policy for the newly created IAM user when creating an IAM user, and specify the scope of the policy.