Inventory and governance for non-human identities: derived state, enrichment over automation, nothing acts on its own judgment. AWS first. Phase 1, building.
-
Updated
Aug 21, 2026 - Python
Inventory and governance for non-human identities: derived state, enrichment over automation, nothing acts on its own judgment. AWS first. Phase 1, building.
Read-only Microsoft Entra ID (Azure AD) access review PowerShell scanner + Python report that scores MFA gaps, privileged roles, legacy auth, Conditional Access and PIM risks into an A–F posture report for ISO 27001 / NIS2 audits.
Identity Governance & Access Review lab demonstrating access certification, least-privilege enforcement, access remediation, audit evidence collection, and Active Directory security group management.
PowerShell-based IAM access review demonstrating identity governance, NIST control testing, remediation tracking, and Joiner-Mover-Leaver processes.
Serverless AWS access recertification engine: discover resources by owner tag, collect keep/trim/revoke decisions, and actually enforce them with scoped changes, hash-chained evidence, and rollback.
Graph-powered access intelligence for IAM, Active Directory and file server permissions. Explain who has access, why it exists and what changes before you remove it.
Manage identity and access with RBAC, ABAC, OAuth2/OIDC, approval flows, and audit logs for secure enterprise control
Detects overprivileged accounts, orphaned accounts and segregation-of-duties conflicts across synthetic AD, Azure RBAC and HR exports
Identity and Access Management mini-project covering least privilege, stale accounts, risky access and access review reporting.
Demonstrates an Identity & Access Management (IAM) governance workflow including access review procedures, evidence collection, findings, remediation tracking, and password policy hardening using a Windows lab environment.
Identity cost avoidance brief for stale Okta apps, UKG inactive workers, and license-reduction decisions.
Synthetic IAM governance and identity risk portfolio covering access reviews, privileged access, MFA gaps, service accounts, toxic role combinations, remediation tracking, dashboards, and control mapping.
Workforce role risk map for Okta role assignments, UKG job codes, and manager-safe attestations.
Offline synthetic IAM review lab comparing Entra-style identity data with HR records using deterministic governance rules and Markdown reports.
React + TypeScript control-plane for access posture, policy exceptions, remediation tracking, and executive identity governance visibility.
Operator control plane for Microsoft Entra access reviews, privileged-role decisions, stale approvals, and identity-governance remediation posture.
Simulated IAM support tickets in Microsoft Entra ID covering MFA validation, joiner access, mover cleanup, leaver cleanup, and access validation.
PHP API for entitlement requests, approval routing, access review visibility, and audit-friendly identity governance workflows.
Privilege exception router for Okta elevated access tied to UKG workforce status.
IAM governance project demonstrating access reviews, RBAC simulation, privileged access analysis, and identity governance workflows using Microsoft Entra ID.
Add a description, image, and links to the access-review topic page so that developers can more easily learn about it.
To associate your repository with the access-review topic, visit your repo's landing page and select "manage topics."