IAM JIT integration with AWS IAM Identity center, Right sizing recommendations, signals and review

March 12, 2024

Cloudanix has spent February diligently tackling critical identity and access management (IAM) challenges that have plagued even seasoned industry leaders. Concerns like ensuring proper access controls for teams, managing granular permissions, avoiding "orphaned" access, and effectively implementing Just-in-Time (JIT) access, especially within hybrid environments using Active Directory from Microsoft, Google, etc. have caused sleepless nights. Cloudanix offers a solution, promising to alleviate these worries and ensure a good night's sleep.
Read on to see the details.

IAM JIT Integration with AWS Identity Center

Cloudanix has unleashed fine grained IAM Just In Time access control with AWS Identity Center. Cloudanix empowers it's customers using SSO who can leverage JIT to Elevate and Revoke Privileges for Cloud Users. With many levers to control the Privileges being requested like

  • Manage JIT Eligibility for Roles / Permission Sets
  • Auto Approve if Roles / Permission Sets are limited in permissions
  • Define Maximum Duration of JIT Access
  • Explore additional control features to tailor access precisely

IAM Right Sizing Recommendations

This release empowers your organization to implement granular control over cloud access permissions by leveraging the Principles of Least Privilege. We have introduced Right Sizing Recommendations based on individual user activity, and usage pattern of Cloud Users. Where in, depending on the usage of Permissions, either a new Policy should be defined or a complete removal is needed.

Streamline your review process with "Not A Risk" Status

We are excited to announce the introduction of a new review option: "Not A Risk." This feature empowers you to efficiently manage your review process by allowing you to skip evaluations for findings deemed irrelevant to your business or organization.

Extended IAM Signals

We have introduced extended IAM signals that provide deeper insights into user identities within your system. This enhancement enables you to Distinguish between human users and non-human (Service Accounts or Third Party Accounts) and highlight the owner of IAM Principals whether they are from an Internal Account or External Vendor Account.
Explore these features here

TODO:// is not an option for Cloud Security

We are also available at

Insights from Cloudanix