Open navigation menu

AWS Step Functions

AWS

Vendor

Serverless state machine orchestration service for AWS-native workflows and automation.

Curated by Tiberiu ArvaStale

Proprietary

Strengths

  • AWS service integration
  • Serverless execution
  • Strong automation fit

Practitioner note

Strong fit for AWS-native production workflows that need explicit state, retries, and operational control rather than a higher-level AI builder UX.

Governance posture

Reviewed 2026-05-26
YesData residency

Regional service; executions and state remain in the selected AWS region.

Source
YesDeployment model

Fully managed serverless SaaS on AWS; no self-hosted option. (saas)

Source
YesAudit logging

Native execution history; Express history to CloudWatch; CloudTrail captures API calls.

Source
YesSOC 2

Explicitly in scope for AWS SOC 1/2/3.

Source
YesISO 27001

Named in the AWS ISO/IEC 27001:2022 certificate.

Source
NoISO 42001

AWS ISO 42001 scope covers Bedrock/Q Business/Textract/Transcribe only; Step Functions is not AI and not in scope.

Source
N/AEU AI Act

Serverless state-machine orchestration, not an AI system. (role: not-applicable)

YesLicense risk

Proprietary AWS service; no source access. (high)

Source

EU AI Act obligations

Risk tier: Not applicable · as of 2026-08-23

Source-backed information mapped from AWS Step Functions's tracked risk tier — not legal advice. Obligations depend on how your organisation deploys the system; see the full obligation reference and timeline.

This record's EU AI Act risk tier is marked not applicable, so no tier-specific obligations attach. Deployers embedding it in an AI system in scope of the Act should assess that system's own tier.

Explore the category

Compare this tool against the rest of its category and the cloud platform foundation layer.