II.
LibraryProcess JSON
Structured · livelib-process:security-compliance--iam-access-control
iam-access-control json
Inspect the normalized record payload exactly as the atlas UI reads it.
{
"id": "lib-process:security-compliance--iam-access-control",
"_kind": "LibraryProcess",
"_file": "generated-library/processes.yaml",
"_cluster": "generated-library",
"attributes": {
"displayName": "iam-access-control",
"description": "Access Control and IAM Review - Comprehensive identity and access management security assessment covering\nRBAC/ABAC implementation, least privilege enforcement, access reviews and certification, privileged account management,\nMFA enforcement, identity lifecycle management, access governance, segregation of duties, and compliance validation\nagainst SOC2, PCI-DSS, HIPAA, and ISO27001 standards.",
"libraryPath": "library/specializations/security-compliance/iam-access-control.js",
"specialization": "security-compliance",
"references": [
"- NIST SP 800-63: Digital Identity Guidelines: https://pages.nist.gov/800-63-3/\n- CIS Controls v8: Identity and Access Management: https://www.cisecurity.org/controls/\n- OWASP Access Control Cheat Sheet: https://cheatsheetseries.owasp.org/cheatsheets/Access_Control_Cheat_Sheet.html\n- AWS IAM Best Practices: https://docs.aws.amazon.com/IAM/latest/UserGuide/best-practices.html\n- Azure AD Security Best Practices: https://docs.microsoft.com/azure/active-directory/fundamentals/security-operations-introduction\n- NIST SP 800-53: Access Control Family: https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-53r5.pdf\n- PCI-DSS Requirement 7 & 8: https://www.pcisecuritystandards.org/\n- Zero Trust Architecture (NIST SP 800-207): https://csrc.nist.gov/publications/detail/sp/800-207/final"
],
"example": "const result = await orchestrate('specializations/security-compliance/iam-access-control', {\n projectName: 'Enterprise SaaS Platform',\n environment: 'production',\n iamPlatform: 'aws-iam', // 'aws-iam', 'azure-ad', 'okta', 'auth0', 'google-workspace', 'on-premise-ad'\n accessControlModel: 'rbac', // 'rbac', 'abac', 'hybrid'\n userCount: 500,\n privilegedAccountsCount: 25,\n complianceFrameworks: ['SOC2', 'PCI-DSS', 'ISO27001', 'HIPAA'],\n enableMFA: true,\n enableAccessReviews: true,\n accessReviewFrequency: 'quarterly',\n enablePrivilegedAccessManagement: true,\n enableJustInTimeAccess: true,\n sessionTimeout: 30,\n passwordPolicy: 'strong'\n});"
},
"outgoingEdges": [
{
"from": "lib-process:security-compliance--iam-access-control",
"to": "domain:security",
"kind": "lib_applies_to_domain",
"attributes": {
"weight": 1
}
},
{
"from": "lib-process:security-compliance--iam-access-control",
"to": "workflow:vulnerability-management",
"kind": "lib_implements_workflow",
"attributes": {
"weight": 1
}
},
{
"from": "lib-process:security-compliance--iam-access-control",
"to": "workflow:access-review",
"kind": "lib_implements_workflow",
"attributes": {
"weight": 0.7
}
},
{
"from": "lib-process:security-compliance--iam-access-control",
"to": "specialization:security-compliance",
"kind": "lib_belongs_to_specialization",
"attributes": {
"weight": 0.9
}
}
],
"incomingEdges": []
}