We have separate AWS accounts for dev/stage/qa/prod envs. There are some third-party tools we use which each have their access keys. These don't change with the environment but we end up creating them in all accounts.
I feel that's redundant and should be avoided. How and where (/which account) do you manage such parameters in?