AWS IAM Identity Center (SSO)
Connect IAM Identity Center (SSO) to Iru Compliance Automation to collect permission sets, assignments, and SSO application metadata.
Connecting AWS IAM Identity Center lets Iru read every permission set to show exactly which accounts and applications are granted — so your access review is mostly done before you start. No more reconstructing SSO access from scratch each audit cycle.
Key Capabilities
- Confirm workforce access to AWS runs through SSO rather than long-lived credentials
- Verify permission sets are scoped per account and application
- Show that MFA is required at the identity source
Evidence Collected
- Permission set definitions
- Account and application assignments
- Identity source and MFA configuration
- Administrative changes recorded in CloudTrail