GitGuardian Now Flags Admin and Overprivileged Identities Across AWS, Entra, and Okta
Blog post from GitGuardian
GitGuardian's latest NHI Governance release enhances the management of non-human identities (NHIs) by introducing privilege context as a primary signal, allowing security teams to better assess and prioritize risks associated with these identities, particularly those with admin-level access. The system now identifies machine identities with admin rights, highlights those with excessive permissions, and escalates the severity of incidents involving high-impact identities, thereby optimizing the remediation queue to reflect the actual potential damage, or "blast radius," of each finding. By mapping permissions and assigning an "Identity level: Admin" badge to NHIs in AWS, Microsoft Entra, and Okta, the platform enables teams to quickly identify and act on high-risk incidents, such as leaked secrets or improper offboarding, that could compromise entire systems. This release addresses the challenge of overprivileged identities, which accumulate more permissions than necessary, pushing organizations to adopt a least-privileged access model. The platform's updated severity model ensures that incidents affecting admin NHIs are prioritized, helping to streamline response efforts and reduce vulnerabilities in critical systems.