When you want to grant permissions for various users who were invoking your project within multi-environments. You can try this solution.
Go to the AWS Organizations
=> Click On Add an AWS Account
=> Fill necessary info
Move on IAM Identity Center
Choose Setting tab
=> Set necessary information
Choose User tab
=> Create User
Assign User into organization
=> Choose aws acounts
=> Choose Users/Groups and then you can grant permission
See the result from awsapp