Admin Role Assigned to Non-Human Identity

Detects when a non-human identity (NHI) is assigned an administrator role, which can indicate malicious activity or unauthorized elevated privileges.

Recommended Actions

Ensure the admin assignment for the given NHI(s) is legitimate. If the target should not be an administrator or should not be assigned that role, remove the permissions from the account, revoke it's access, and open a ticket to start an investigation.

Compatibility

Okta, GitHub, Microsoft Entra ID, Duo

Last updated