惯性聚合 高效追踪和阅读你感兴趣的博客、新闻、科技资讯
阅读原文 在惯性聚合中打开

推荐订阅源

B
Blog
Hugging Face - Blog
Hugging Face - Blog
月光博客
月光博客
钛媒体:引领未来商业与生活新知
钛媒体:引领未来商业与生活新知
人人都是产品经理
人人都是产品经理
博客园 - Franky
让小产品的独立变现更简单 - ezindie.com
让小产品的独立变现更简单 - ezindie.com
P
Proofpoint News Feed
F
Fortinet All Blogs
H
Help Net Security
OSCHINA 社区最新新闻
OSCHINA 社区最新新闻
V
Visual Studio Blog
Jina AI
Jina AI
J
Java Code Geeks
Blog — PlanetScale
Blog — PlanetScale
S
SegmentFault 最新的问题
D
DataBreaches.Net
T
The Blog of Author Tim Ferriss
美团技术团队
博客园 - 司徒正美
宝玉的分享
宝玉的分享
Cyber Security Advisories - MS-ISAC
Cyber Security Advisories - MS-ISAC
freeCodeCamp Programming Tutorials: Python, JavaScript, Git & More
Apple Machine Learning Research
Apple Machine Learning Research

Datadog | The Monitor blog

Introducing our open source AI-native SAST Instrument and monitor Boomi integration flows with OpenTelemetry and Datadog Not all index scans are equal: How we cut query latency by over 99% Platform engineering metrics: What to measure and what to ignore Integrate Recorded Future threat intelligence with Datadog Cloud SIEM CI/CD security: threat modeling using a MITRE-style threat matrix CI/CD security: How to secure your GitHub ecosystem Ingress NGINX is EOL: A practical guide for migrating to Kubernetes Gateway API Operating agentic AI with Amazon Bedrock AgentCore and Datadog LLM Observability: Lessons from NTT DATA Introducing the Datadog Code Security MCP Capture and analyze custom heatmaps in Session Replay Understand session replays faster with AI summaries and smart chapters Monitor ClickHouse query performance with Datadog Database Monitoring How we designed empathetic alert sounds for on-call engineers Search and act across Datadog to resolve issues faster with Bits Assistant Measure the business impact of every product change with Datadog Experiments Analyzing round trip query latency Configuring JavaScript caches for better performance Introducing Bits AI Dev Agent for Code Security Datadog achieves ISO 42001 certification for responsible AI Monitor Nutanix clusters, hosts, and VMs with Datadog Monitor Juniper Mist in Datadog A new Host Map for modern infrastructure Annotate traces to improve LLM quality with Datadog LLM Observability What’s new in Cloud SIEM: AI-powered investigations, enhanced threat intelligence, and scalable security operations Explore Kubernetes with native OpenTelemetry data Monitor Oracle Fusion Cloud Applications with Datadog Announcing the Datadog Terraform provider v4.0.0 Scaling Kubernetes workloads on custom metrics How to design cloud environments for AI-powered threat analysis
Identify and remediate permission gaps in AWS with Datado...
Rajat Luthra, Kevin Cao · 2024-06-26 · via Datadog | The Monitor blog
Rajat Luthra

Rajat Luthra

Kevin Cao

Kevin Cao

Identity and access management (IAM) is one of the key security challenges in cloud environments. Because of the complexity of these systems and the large number of user accounts associated with them, managing permissions can be difficult, often leading to excessive privileges for many users and workloads.

AWS IAM Access Analyzer is a service that identifies overprivileged resources in your AWS environment and validates your IAM policies against established best practices. We’re excited to announce that Datadog Cloud Security Identity Risks now integrates with AWS IAM Access Analyzer to help you detect permission gaps in your cloud infrastructure and determine next steps for remediation.

In this post, we’ll show you how you can use Datadog Cloud Security Identity Risks to discover unused access findings from AWS IAM Access Analyzer and identify concrete steps to remediate these risks.

Datadog Cloud Security Identity Risks helps you identify and address entitlement risks across your cloud environment. It continually scans your cloud infrastructure to surface issues such as lingering administrative privileges, privilege escalations, permission gaps, large blast radii, and cross-account access. For quick remediation, it suggests downsized policies and remediation steps that utilize Datadog Workflow Automation, alongside links to cloud consoles where you can access any resources needed to take these actions.

Now, Datadog Cloud Security’s integration with AWS IAM Access Analyzer allows you to see unused access findings directly in Datadog. These findings from AWS IAM Access Analyzer surface unused roles, credentials, and permissions across your AWS organization and accounts, which can create risk in your environment by granting excessive access to sensitive cloud resources. Datadog Cloud Security Identity Risks uses this context from AWS to detect permission gaps and recommend specific downsized policies to remediate these risks.

For example, Datadog’s detection “AWS IAM user has a large permissions gap” will be triggered when AWS IAM Access Analyzer finds actions that have not been used as far back as 180 days.

Identity Risks with AWS IAM Access Analyzer insights in Datadog Cloud Security Identity Risks

When a finding is detected, Datadog Cloud Security Identity Risks then suggests a comprehensive downsized policy that incorporates all of AWS IAM Access Analyzer’s unused access detections, so you can mitigate permission gaps across your entire environment by adopting the suggested policy.

Suggested downsized permissions policy in Datadog Cloud Security Identity Risks

Start enriching your identity risk detections today

If you are already using Datadog Cloud Security Identity Risks and have AWS IAM Access Analyzer enabled, Datadog will automatically start enriching your detections with insights from Access Analyzer. If you don’t have AWS IAM Access Analyzer enabled, use these AWS instructions to get started.

Datadog Cloud Security Identity Risks’s integration with AWS IAM Access Analyzer provides comprehensive visibility into identity risks across your AWS environment. If you’re new to Datadog, you can get started today with a 14-day free trial.