Cloud Infrastructure Entitlement Management (CIEM)
A new concept developed in the past couple of years is CIEM. Some vendors offer a combined solution of both CSPM and CIEM into a single product, which factors in a multi-cloud partner strategy.
CIEM solutions allow us to monitor and manage identities (both human and machine) and access privileges in a multi-cloud environment, from a central console, while applying the principle of least privilege access to our cloud infrastructure. When selecting a CIEM solution, look for the following capabilities:
- Support for multiple cloud providers
- An inventory of existing entitlements
- Detecting and remediating IAM misconfigurations
- The ability to control access to resources, services, and administrative accounts
- Identifying risks associated with configuration errors
- Identifying shadow admin accounts in a multi-cloud environment
- Suggestions for policy correction
- Auto-generation of access policies according...