IAM policies, roles, service accounts, federation and privilege paths to administrative access.
Security groups, public endpoints, peering, private link and egress controls.
Storage permissions, encryption, key management and secrets in code, images and pipelines.
CloudTrail, activity logs, GuardDuty and Defender coverage, retention and alert routing.
Read-only reviewer role provisioned in each account or subscription in scope.
Automated benchmark collection followed by manual analysis of identity paths and data flows.
Exposures confirmed by hand where safe, so findings reflect real risk rather than tool output.
Findings ranked by exploitability, with infrastructure-as-code fixes where applicable.
No. A read-only role with the security audit policy is enough for the review. Validation of exposures is done from the outside or with your engineers on a call.
A 30-minute call with a SecureBlock lead to align on objectives, assets and timeline. We follow up with a written scope and fixed-fee proposal within two business days.
Prefer email? sales@secureblock.io