Implements Just-In-Time (JIT) access provisioning to eliminate standing permissions, granting temporary time-bound access via approval workflows, auto-expiration, PAM/IGA integrations, and zero-trust alignment.
npx claudepluginhub killvxk/cybersecurity-skills-zhThis skill uses the workspace's default tool permissions.
实施即时访问(JIT)配置以消除常设权限,仅在需要时授予临时、时限访问。本技能涵盖 JIT 架构设计、审批工作流、自动过期、与 PAM 和 IGA 平台的集成,以及与零信任原则的对齐。
Implements Just-In-Time (JIT) access provisioning for temporary, time-bound access to eliminate standing privileges. Covers architecture design, approval workflows, auto-expiration, and PAM/IGA integration.
Designs and implements JIT access provisioning with approval workflows, time-bound grants, auto-expiration, and PAM integration for zero trust security.
Deploys CyberArk Secure Cloud Access for zero-standing privileges in AWS, Azure, GCP via JIT access controlled by time, entitlements, and approvals. Useful for eliminating standing privileges in multi-cloud environments.
Share bugs, ideas, or general feedback.
实施即时访问(JIT)配置以消除常设权限,仅在需要时授予临时、时限访问。本技能涵盖 JIT 架构设计、审批工作流、自动过期、与 PAM 和 IGA 平台的集成,以及与零信任原则的对齐。
| 控制项 | NIST 800-53 | 描述 |
|---|---|---|
| 临时访问 | AC-2(2) | 自动化临时账户管理 |
| 最小权限 | AC-6 | 时限最小访问 |
| 访问执行 | AC-3 | 自动化访问授权/撤销 |
| 审计 | AU-3 | 完整的 JIT 访问审计跟踪 |
| 风险评估 | RA-3 | 基于风险的审批路由 |