Attack surface & identity

Analyze cloud identity permissions with CIEM

Run a Secorvia entitlement analysis and inspect administrative identities, attached policies, external trust, and identity findings.

Reviewed

Before you start

Connect a cloud account with permissions sufficient for identity inventory. The analysis is scoped to the account you select.

Choose the account

Open CIEM. Under Run Entitlement Analysis, select the Cloud Account you want to assess. Confirm the environment before starting the operation.

Run entitlement analysis

Start the analysis and wait for Analysis in Progress to finish. The summary includes Identities, Administrative Identities, External Trust Relationships, and Critical/High Findings.

Investigate an identity

Search by name or ARN and open Identity Detail. Inspect administrative status, findings, watched actions, attached policies, and trust relationships. An unresolved policy means the record needs further context; it does not establish that no permission exists.

Validate least-privilege changes

Work with the identity owner to determine which permissions are required, then review changes through your normal approval process. Run entitlement analysis again and inspect the same identity and its related findings.

Where you are now

You can trace an identity risk to its policies and trust relationships in the selected account.

WHEN SOMETHING LOOKS OFF

A few things to check

No identities discovered

Run an entitlement analysis for a connected account and check that collection completed.

Unresolved policy

Check the available policy data and connection permissions before making a permission-removal decision.

PUT IT INTO PRACTICE

Make your next move in Secorvia.

Open the app and follow along with your own organization.

Open Secorvia