Terminology Index

Glossary

1801 terms

Open concept maps

Showing 801-832 of 1801 terms

H
3
I
29

IAM Threat Detection

Detecting attacks against identity and access systems, anomalous logins, privilege escalation, suspicious entitlement changes, and credential abuse, since identity is a primary target and effective perimeter in modern environments.

Because attackers increasingly target identity, valid credentials, privilege escalation, and access abuse rather than malware alone, IAM threat detection focuses on spotting malicious activity in identity systems: impossible-travel or anomalous sign-ins, unexpected privilege grants, risky entitlement changes, dormant-account use, and federation abuse. An IAM engineer builds these detections on identity telemetry so identity-based intrusions are caught, a critical capability given identity's central role in security.

Introduced in: IAM Engineer Fundamentals

Examples

  • Detecting an impossible-travel sign-in indicating credential theft.
  • Alerting on an unexpected privilege grant or role assumption.
  • Flagging suspicious changes to a user's entitlements.

No related terms linked yet.