A company's security team wants to implement access restrictions for specific services or actions across all of the company's AWS accounts. These accounts are part of a larger organization within AWS Organizations. The solution should be scalable and allow for centralized management of permissions. What should a solutions architect do to accomplish this?