Skip to content

Commit dc72c7a

Browse files
authored
Update AWS IAM Access Analyzer value prop (#22112)
* Update AWS IAM Access Analyzer value prop * But is it truly additional
1 parent 328a014 commit dc72c7a

File tree

1 file changed

+3
-0
lines changed

1 file changed

+3
-0
lines changed

iam_access_analyzer/README.md

Lines changed: 3 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -4,6 +4,8 @@
44

55
Use AWS Identity and Access Management (IAM) Access Analyzer across your Amazon account to continuously analyze IAM permissions granted with any of your account policies. Datadog integrates with Amazon IAM Access Analyzer using a Lambda function that ships its findings as logs to Datadog.
66

7+
Additionally, if you use Cloud Security, Datadog sends Amazon IAM Access Analyzer findings to [Cloud Security Identity Risks][4], so you can Access Analyzer's unused-access findings to recommend downsized policies and enrich permissions-gap detections. You can use it to extend the time frame beyond Datadog's usual permissions-gap detections, which cover 90 days, by configuring Access Analyzer to analyze more (for example, 180 or 360 days).
8+
79
## Setup
810

911
### Log collection
@@ -51,3 +53,4 @@ Need help? Contact [Datadog support][3].
5153
[1]: https://docs.datadoghq.com/logs/guide/forwarder/
5254
[2]: /logs?query=source%3Aaccess-analyzer
5355
[3]: https://docs.datadoghq.com/help
56+
[4]: https://docs.datadoghq.com/security/cloud_security_management/identity_risks/

0 commit comments

Comments
 (0)