This Week’s Featured IAM Resource This week we are highlighting The Director’s Guide: IAM Security at Scale by Kyle Chrzanowski (Mandiant | Google Cloud) because it offers a concise, implementation-focused guide to architecting IAM at scale. The article defines...
k9 now reports entitlements to Amazon Bedrock APIs
k9 Security now reports IAM principals’ access entitlements to the Amazon Bedrock APIs. The Bedrock APIs allow customers to manage generative AI data resources and create AI-enabled services and agents. k9 reports whether IAM principals may administer, change, or read...
How to test a Python app uses an HTTP proxy to connect to AWS
Some organizations require that all outbound application traffic run through an HTTP proxy so that traffic can be inspected and limited to certain allowlisted domains. But how do you test your application to verify your client libraries have all been configured to use...
The most usable cloud access spreadsheet
Spreadsheets take a lot of flack but they’re often the right tool for the job. When the job is starting to clean up that ‘dirty kitchen sink’ AWS account or ad-hoc IAM permission analysis, a spreadsheet is often the right tool. Now that analysis is easier with k9’s IAM...
k9 now analyzes access to AWS Account APIs
k9 Security now analyzes principals’ access to the AWS Account APIs. The Account (account) APIs manage important global configurations, including what regions are enabled, contacts for the account, and even enable closing the account. k9 reports whether IAM principals...
