Attack surface & identity
Analyze cloud identity permissions with CIEM
Run a Secorvia entitlement analysis and inspect administrative identities, attached policies, external trust, and identity findings.
Reviewed
Before you start
Connect a cloud account with permissions sufficient for identity inventory. The analysis is scoped to the account you select.
Choose the account
Open CIEM. Under Run Entitlement Analysis, select the Cloud Account you want to assess. Confirm the environment before starting the operation.
Run entitlement analysis
Start the analysis and wait for Analysis in Progress to finish. The summary includes Identities, Administrative Identities, External Trust Relationships, and Critical/High Findings.
Investigate an identity
Search by name or ARN and open Identity Detail. Inspect administrative status, findings, watched actions, attached policies, and trust relationships. An unresolved policy means the record needs further context; it does not establish that no permission exists.
Validate least-privilege changes
Work with the identity owner to determine which permissions are required, then review changes through your normal approval process. Run entitlement analysis again and inspect the same identity and its related findings.
Where you are now
You can trace an identity risk to its policies and trust relationships in the selected account.
WHEN SOMETHING LOOKS OFF
A few things to check
No identities discovered
Run an entitlement analysis for a connected account and check that collection completed.
Unresolved policy
Check the available policy data and connection permissions before making a permission-removal decision.
PUT IT INTO PRACTICE
Make your next move in Secorvia.
Open the app and follow along with your own organization.