Security Center
Continuous security posture telemetry, FedRAMP AC-2 access reviews, and Incident Response strict mode controls.
Access Denied: Caller lacks required permission (
security.audit_read) to inspect security posture.
Incident Response Strict Mode
NORMAL
When activated during a detected anomaly or breach drill, API rate limits are tightened by 50% across sensitive endpoints and staff account creation is strictly frozen.
Continuous Compliance & Posture Telemetry
MFA Coverage
100%
FIDO2 WebAuthn + TOTP enforced
Stale Staff Accounts
1
No login in >30 days
Unused Roles
2
Catalog roles with 0 grants
Lockouts (24h)
0
Brute-force protection intact
TLS Certificate Lifespan
84 Days
ECDSA P-384 / TLS 1.3 Strict
Admin IP Boundary
ENFORCED
FedRAMP Enclave Allowlist Active
KEK Envelope Source
FIPS-140-3-HSM
Sealed Hardware Cryptographic Module
Database Transport
REQUIRE_TLS_1_3
Triad mTLS Transport Security
Continuous Backup Proof
PASS (12:00)
Automated drill verified intact
Audit Hash-Chain Status
VERIFIED
100% Cryptographic Integrity Sealed
CSP Violations (24h)
0
Zero content security policy breaks
Access Review Campaigns (FedRAMP AC-2)
Periodic role recertification and uncertified grant deprovisioning workbench.
| Campaign ID & Name | Target Role | Due Date | Reviewed Grants | Expired Grants | Status | Actions |
|---|---|---|---|---|---|---|
| Loading access review campaigns... | ||||||