These permissions are one of the list described here in Step 6.c
https://docs.databricks.com/administration-guide/account-api/iam-role.html
It is required because we use tags to identify the owners, and other minimum information, of clusters on AWS. It is not possible to remove these permissions.