AWS IAM Identity Center (Identity Store)
Connect the IAM Identity Center Identity Store to Iru Compliance Automation to collect directory users, groups, and memberships.
Iru reads the user and group records behind your AWS access directly from Identity Store, including which identity provider assigned them and when. That gives you a paper trail for how access was actually granted, not just what's currently in place.
Key Capabilities
- Verify user and group inventory aligns with assignments actually granted
- Confirm SCIM provisioning from your identity provider is configured and running
- Track directory changes back to who made them
Evidence Collected
- User and group inventories
- Assignment alignment between directory and permission sets
- SCIM provisioning configuration
- Identity Store API calls visible in CloudTrail