Deterministic post-processing engine for IAM drift analysis and architectural risk reporting. Maps raw findings to security invariants.
-
Updated
Jan 24, 2026 - Python
Deterministic post-processing engine for IAM drift analysis and architectural risk reporting. Maps raw findings to security invariants.
GCP IAM privilege-escalation scanner that thinks in attack paths, not findings — detects tag-based IAM Conditions abuse, ranks fixes by blast radius, maps ATT&CK detection blind spots, and is JIT/time-aware.
AWS IAM Security Audit & Access Governance Toolkit designed from a SOC Analyst perspective.
GRC notes, advisory engagements, audit & compliance tooling, IAM auditing, Islamic fintech governance, and AI governance research — covering ISO 27001, NIST CSF, SOC 2, SAMA CSF, NCA ECC, GDPR, India DPDP Act, Saudi PDPL, ISO 42001, AAOIFI Shariah Standards, EU AI Act, and NIST AI RMF.
Shadow-admin discovery across AWS + Azure, scoring CyberArk SkyArk against known escalation paths
Add a description, image, and links to the iam-audit topic page so that developers can more easily learn about it.
To associate your repository with the iam-audit topic, visit your repo's landing page and select "manage topics."