> Security for dev accounts is not a big deal, just give each developer an individual account and set up billing alerts.
If your only focus is spending, yes.
Otherwise, a "not a big deal" dev account can quickly become the door to your whole org for hackers
It really depends on the way you set it up and use it. Raw EC2 instances are obviously the most dangerous items.
RDS databases, DynamoDB, and S3? Much less so.