AITIR 2.0: evidence-grounded, authorized identity-threat response reference architecture.
-
Updated
Sep 11, 2026 - HTML
AITIR 2.0: evidence-grounded, authorized identity-threat response reference architecture.
A "Swiss Army Knife" command-line interface (CLI) for easy human and non-human interaction with @cyberark suite of products.
A modern, extensible framework for defining and enforcing security policies across your digital infrastructure.
Source-available Active Directory & Entra ID security auditor. Over 450 checks, 9 compliance frameworks, ADCS escalation paths, attack-path analysis. Single static Go binary. FSL-1.1, converts to Apache 2.0.
Small scripts and targeted tools created by Trimarc staff to help solve common issues in Identity Security.
A PowerShell tool to identify and audit user-consented applications in Microsoft Entra ID (Azure AD), with a focus on uncovering "Shadow IT" and security risks.
Security tools for purple team, AI security, and M365/GWS. Authorized use only.
A curated collection of IAM and PAM resources, insights, best practices, and implementation guidance based on my hands-on experience.
Evidence-backed ownership and dependency assessment for Microsoft Entra service principals across Microsoft Graph, Azure RBAC, Activity Logs, and Azure Storage.
senhasegura Identity Threat Labs is a premier threat intelligence center specializing in predictive analysis of identity-focused attack vectors. Using reverse engineering, malware analysis, and threat intelligence, our lab identifies emerging threats and provides actionable reports to help organizations strengthen defenses and mitigate risks.
Cloud Identity Security Engineering — Go-based security research and tooling for AWS IAM attack-path analysis, privilege escalation detection, and CloudTrail-based detection engineering.
Extended version of Test-MdiReadiness.ps1 for Microsoft Defender for Identity: forest-wide scanning, required network port and NNR validation, sensor v3.x upgrade readiness, capacity estimation and a redesigned HTML report. Personal project, not an official Microsoft product.
Open-source Agentic Identity Fabric — IAM/IGA for the AI-agent era. Graph-native (Neo4j) blast radius, 109 ms Temporal kill switch, AWS Cedar policy-as-code. Humans + autonomous agents + machines — one policy engine.
Afterlogin: The Hunt × Helper Patrol — a cinematic identity & data-governance training game powered by real gpt-4o tool-calling agents + Foundry IQ grounding. Microsoft Agents League · Creative Apps.
Cross-tool correlation engine for the Entra ID security suite — joins findings across three scanners to surface risks no single tool detects.
Zero Standing Privilege Gateway for Azure - JIT access for AI agents, automation, and service principals
A portfolio of completed rooms, challenges, and CTFs from TryHackMe.com, showcasing hands-on experience with real-world cybersecurity scenarios — from hacking machines to investigating attacks. This collection highlights my practical skills across diverse technologies, reflecting my growth and learning through various cybersecurity learning paths.
Read-only Microsoft Entra tenant topology with security context and offline interactive exploration.
A cross‑tenant migration framework for Secret Server–compatible PAM environments. It automates the transfer of Secrets, Folders, Roles, Permissions, and metadata using schema‑aware mapping, integrity checks, and auditable workflows to deliver reliable, low‑risk enterprise migrations.
To associate your repository with the identity-security topic, visit your repo's landing page and select "manage topics."