AWS IAM Access Analyzer features
Overview
IAM Access Analyzer guides you toward least privilege by providing tools to set, verify, and refine permissions. As a comprehensive permissions analysis and policy validation tool, IAM Access Analyzer offers access findings, policy checks, and policy generation.
IAM Access Analyzer uses provable security to deliver comprehensive findings on external, internal and unused access, and provides custom policy checks. Provable security relies on automated reasoning technology, which is the application of mathematical logic to help answer critical questions about your infrastructure, including AWS permissions. To learn how AWS automated reasoning tools and methods provide a higher level of security assurance for the cloud, see What is Automated Reasoning?, or download the whitepaper, Formal Reasoning About the Security of Amazon Web Services.