CloudQuery Policies: Create cloud controls with AI for all your resources — every cloud, every account, every IaC or console.

Read the announcement ❯

Read the announcement ❯

Back to all blog posts
About
Jason worked as Head of Security Research and Solutions and before that was a Senior Software Engineer at CloudQuery. He specialised in application development and ensuring the scalability of our systems. He is able to break down complex technical projects into easily understood parts and has an in-depth understanding of AWS.
Security

AWS Identity Center (formerly known as AWS SSO): A Guide to Privilege Escalation and Identity and Access Management

AWS Identity Center is one way of managing access to AWS Accounts. With AWS Identity Center (previously SSO), there exists multiple pathways to privilege escalation. In this blog post, we cover Identity Center, research into the inner workings of cloud Identity and Access Management related to AWS Identity Center, how to secure AWS Identity Center, and detection with logging and monitoring.

Jason Kao

Jason Kao •