Audit and Review User Access

Generate comprehensive access reports, identify security risks, ensure compliance, and prepare for audits.

Quarterly Access Review Workflow

Step 1: Get Complete User List

Bash
Copy

Export to spreadsheet for review.

Step 2: Check Each User's Access

Bash
Copy

Step 3: Identify Issues

Red Flags:

  • Users with no groups (direct role assignments)
  • Users with admin access who shouldn't have it
  • Inactive users (last login >90 days)
  • Contractors with permanent employee access
  • Users in too many groups (>5)

Step 4: Generate Report

Report Template:

UserEmailGroupsRolesLast LoginIssues
user-123sarah@...Data Engviewer2024-12-05OK
user-124old@...8 groupsadmin2024-06-01Inactive, Too many groups

Step 5: Take Action

Bash
Copy

APIs Used

  1. GET /admin/api/users/list - All users with details
  2. GET /authz/api/v1/users/:userId/roles - User roles
  3. GET /authz/api/v1/users/permissions - Effective permissions
  4. GET /admin/api/users/count - Total user count
Type to search, ESC to discard
Type to search, ESC to discard
Type to search, ESC to discard