{
   "Version":"2012-10-17",
   "Statement":[
      {
         "Sid":"DenyAccessToAdminRole",
         "Effect":"Deny",
         "Action":[
            "iam:AttachRolePolicy",
            "iam:DeleteRole",
            "iam:DeleteRolePermissionsBoundary",
            "iam:DeleteRolePolicy",
            "iam:DetachRolePolicy",
            "iam:PutRolePermissionsBoundary",
            "iam:PutRolePolicy",
            "iam:UpdateAssumeRolePolicy",
            "iam:UpdateRole",
            "iam:UpdateRoleDescription"
         ],
         "Resource":[
            "arn:aws:iam::*:role/role-to-deny"
         ]
      }
   ]
}
