Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Enhance AAD privileged access including PIM for Groups and Least privilege policy check #697

Closed
1 task
ssatyapal123 opened this issue Dec 1, 2023 · 1 comment
Assignees
Labels
enhancement This issue or pull request will add new or improve existing functionality epic A high-level objective issue encompassing multiple issues instead of a specific unit of work
Milestone

Comments

@ssatyapal123
Copy link
Contributor

ssatyapal123 commented Dec 1, 2023

Description

This epic is about enhancing the ScubaGear AAD policies pertaining to highly privileged access (section 7).

AAD Policy enhancement issues:

Goal

The goal is to improve the AAD secure configuration baseline by including Microsoft functionality PIM for Groups into the baseline.

Hypothesis

By improving the set of AAD highly privileged access policies, ScubaGear can be made more usable and relevant to real-world tenants. This hypothesis can be tested by collecting feedback from agencies and running the tool internally against tenants in which these roles are implemented to support a range of users and missions.

Acceptance criteria

Criteria that are considered must have for feature launch and in-scope for this epic include:

  • All linked issues have been completed
@ssatyapal123 ssatyapal123 added epic A high-level objective issue encompassing multiple issues instead of a specific unit of work enhancement This issue or pull request will add new or improve existing functionality labels Dec 1, 2023
@ssatyapal123 ssatyapal123 added this to the Flipper - Jan 2024 milestone Dec 1, 2023
@ssatyapal123 ssatyapal123 self-assigned this Dec 18, 2023
@tkol2022 tkol2022 changed the title Refine highly privileged access policies Enhance highly privileged access policies Dec 18, 2023
@tkol2022 tkol2022 changed the title Enhance highly privileged access policies Enhance AAD privileged access including PIM for Groups and Least privilege policy check Dec 20, 2023
@ssatyapal123
Copy link
Contributor Author

Closes #697 as completed.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
enhancement This issue or pull request will add new or improve existing functionality epic A high-level objective issue encompassing multiple issues instead of a specific unit of work
Projects
None yet
Development

No branches or pull requests

1 participant