Security and Compliance
Last updated
Was this helpful?
Last updated
Was this helpful?
Immuta offers several features to provide security for your users and to prove compliance and monitor for anomalies.
See the and the guides for more information about transmission of policy decision data, encryption of data in transit and at rest, and encryption key management.
The Lake Formation connection supports the following authentication methods to register a connection:
Access using AWS IAM role (recommended): Immuta will assume this role when interacting with the AWS API. This option allows you to provide Immuta with an IAM role from your AWS account that is granted a trust relationship with Immuta's IAM role. Immuta will assume this IAM role from Immuta's AWS account in order to perform any operations in your AWS account.
Access using access key and secret access key: These credentials are used temporarily by Immuta to register the connection.
The built-in Immuta IAM can be used as a complete solution for authentication and user entitlement. However, you can connect your existing identity management provider to Immuta to use that system for authentication and user entitlement instead.
Each of the supported identity providers includes a specific set of configuration options that enable Immuta to communicate with the IAM system and map the users, permissions, groups, and attributes into Immuta.
See the for a list of supported providers and details.
See the for details about user user provisioning and mapping AWS user accounts to Immuta.
Immuta provides governance reports so that data owners and governors can monitor users' access to data and detect anomalies in behavior.
Immuta governance reports allow users with the GOVERNANCE
Immuta permission to use a natural language builder to instantly create reports that delineate user activity across Immuta. These reports can be based on various entity types, including users, groups, projects, data sources, purposes, policy types, or connection types.
See the page for a list of report types and guidance.