Detect AWS IAM Users

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Content Index


The policy detects IAM users across your AWS accounts, a practice that should be kept only for a small number of accounts. This is a default definition by Authomize and can be updated using the edit modal.

Attribute Value
Type Analytic Rule
Solution Authomize
ID 077eb06a-c011-47f7-8d92-dfc2b1e1d71b
Severity High
Status Available
Kind Scheduled
Tactics PrivilegeEscalation
Techniques T1078
Required Connectors Authomize
Source View on GitHub

Tables Used

This content item queries data from the following tables:

Table Transformations Ingestion API Lake-Only
Authomize_v2_CL 🔶 ? ?

Browse: 🏠 · Solutions · Connectors · Methods · Tables · Content · Parsers · ASIM Parsers · ASIM Products · 📊

Back to Analytic Rules · Back to Authomize