iiRecord
Agentic AI Atlas · iam-access-control
lib-process:security-compliance--iam-access-controla5c.ai
II.
LibraryProcess JSON

lib-process:security-compliance--iam-access-control

Structured · live

iam-access-control json

Inspect the normalized record payload exactly as the atlas UI reads it.

File · generated-library/processes.yamlCluster · generated-library
Record JSON
{
  "id": "lib-process:security-compliance--iam-access-control",
  "_kind": "LibraryProcess",
  "_file": "generated-library/processes.yaml",
  "_cluster": "generated-library",
  "attributes": {
    "displayName": "iam-access-control",
    "description": "Access Control and IAM Review - Comprehensive identity and access management security assessment covering\nRBAC/ABAC implementation, least privilege enforcement, access reviews and certification, privileged account management,\nMFA enforcement, identity lifecycle management, access governance, segregation of duties, and compliance validation\nagainst SOC2, PCI-DSS, HIPAA, and ISO27001 standards.",
    "libraryPath": "library/specializations/security-compliance/iam-access-control.js",
    "specialization": "security-compliance",
    "references": [
      "- NIST SP 800-63: Digital Identity Guidelines: https://pages.nist.gov/800-63-3/\n- CIS Controls v8: Identity and Access Management: https://www.cisecurity.org/controls/\n- OWASP Access Control Cheat Sheet: https://cheatsheetseries.owasp.org/cheatsheets/Access_Control_Cheat_Sheet.html\n- AWS IAM Best Practices: https://docs.aws.amazon.com/IAM/latest/UserGuide/best-practices.html\n- Azure AD Security Best Practices: https://docs.microsoft.com/azure/active-directory/fundamentals/security-operations-introduction\n- NIST SP 800-53: Access Control Family: https://nvlpubs.nist.gov/nistpubs/SpecialPublications/NIST.SP.800-53r5.pdf\n- PCI-DSS Requirement 7 & 8: https://www.pcisecuritystandards.org/\n- Zero Trust Architecture (NIST SP 800-207): https://csrc.nist.gov/publications/detail/sp/800-207/final"
    ],
    "example": "const result = await orchestrate('specializations/security-compliance/iam-access-control', {\n  projectName: 'Enterprise SaaS Platform',\n  environment: 'production',\n  iamPlatform: 'aws-iam', // 'aws-iam', 'azure-ad', 'okta', 'auth0', 'google-workspace', 'on-premise-ad'\n  accessControlModel: 'rbac', // 'rbac', 'abac', 'hybrid'\n  userCount: 500,\n  privilegedAccountsCount: 25,\n  complianceFrameworks: ['SOC2', 'PCI-DSS', 'ISO27001', 'HIPAA'],\n  enableMFA: true,\n  enableAccessReviews: true,\n  accessReviewFrequency: 'quarterly',\n  enablePrivilegedAccessManagement: true,\n  enableJustInTimeAccess: true,\n  sessionTimeout: 30,\n  passwordPolicy: 'strong'\n});"
  },
  "outgoingEdges": [
    {
      "from": "lib-process:security-compliance--iam-access-control",
      "to": "domain:security",
      "kind": "lib_applies_to_domain",
      "attributes": {
        "weight": 1
      }
    },
    {
      "from": "lib-process:security-compliance--iam-access-control",
      "to": "workflow:vulnerability-management",
      "kind": "lib_implements_workflow",
      "attributes": {
        "weight": 1
      }
    },
    {
      "from": "lib-process:security-compliance--iam-access-control",
      "to": "workflow:access-review",
      "kind": "lib_implements_workflow",
      "attributes": {
        "weight": 0.7
      }
    },
    {
      "from": "lib-process:security-compliance--iam-access-control",
      "to": "specialization:security-compliance",
      "kind": "lib_belongs_to_specialization",
      "attributes": {
        "weight": 0.9
      }
    }
  ],
  "incomingEdges": []
}