SailPoint CIEM Authorization Posture Analysis on Amazon Bedrock and Bedrock AgentCore Informs Governance Risk Analytics
Commons Draft CandidateAgent-researchedInteroperabilityProduct to ProductSystems Integration Runbook
Endpoints: SailPoint CIEM + Amazon Bedrock
Mechanism: SailPoint CIEM effective-access/access-path analysis (read, write, administrative privilege) on Bedrock and AgentCore resources, applied as input to governance risk analytics
SailPoint CIEM ingests and displays effective access and access paths for human identities to Amazon Bedrock and Amazon Bedrock AgentCore resources, including read, write, and administrative privileges. This authorization-posture information can be used as an input to enterprise governance risk analytics concerning the appropriateness, excessiveness, and rightsizing of access to those named Amazon AI services.
Linked Evidence
SupportsApproved evidenceAgent-researched
CIEM's posture data explicitly supports rightsizing-oriented analysis (removal of unneeded permissions, adjustment of excessive access) for Bedrock/AgentCore.
Enhancement: CIEM Support for AWS Bedrock and Bedrock AgentCore as a Cloud Resource — SailPoint Developer CommunitySupportsApproved evidenceAgent-researched
Product documentation describing the technical collection and analysis capability underlying the posture data used as input to governance risk analytics.
AWS Permission Sets — SailPoint Identity Services