Access Control Identity Audit

Audits identity and access management—least privilege, RBAC, MFA, privileged access, joiner-mover-leaver—for SOC 2 CC6.1–CC6.8, HIPAA §164.312(a), and PCI Req 7/8. Trigger when reviewing IAM policies, agent/MCP service accounts, access certifications, or admin console permissions. Do not use for network firewall segmentation (use pci-dss-network-segmentation) or tamper-evident logging design (use audit-logging-integrity).

vaquarkhan 82535be 7.1 KB Updated

File contents

vaquarkhan/compliance-agent-skills/tree/main/skills/access-control-identity-audit commit 82535bea59

Frequently asked questions

npx skillmds@latest add vaquarkhan/access-control-identity-audit