Company
Date Published
Author
Rajat Luthra, Max Gebhardt
Word count
705
Language
English
Hacker News points
None

Summary

Datadog has introduced Cloud Security Identity Risks, an updated Cloud Infrastructure Entitlement Management solution designed to proactively identify and mitigate identity and access risks in AWS environments, with future support for other cloud providers. This tool helps manage the growing complexity of identity and access management (IAM) systems, which are often mismanaged, leading to breaches and insider threats. By leveraging current IAM configurations, resource usage data, and industry best practices, it can automatically detect and prioritize various identity risks, including administrative privileges, permissions gaps, and cross-account access. The solution provides detailed insights and suggested remediation steps for each identified risk, supporting the principle of least privilege by recommending the removal of unused permissions. Datadog also offers Workflow Automation to streamline the remediation process, with pre-configured blueprints for addressing IAM-related risks. Cloud Security Identity Risks is now generally available for AWS users, with resources and documentation provided for onboarding and further exploration.