Security Center

Continuous security posture telemetry, FedRAMP AC-2 access reviews, and Incident Response strict mode controls.

Incident Response Strict Mode NORMAL
When activated during a detected anomaly or breach drill, API rate limits are tightened by 50% across sensitive endpoints and staff account creation is strictly frozen.
Rate Limit: Normal (100%) Staff Creation: Allowed
Continuous Compliance & Posture Telemetry
MFA Coverage 100% FIDO2 WebAuthn + TOTP enforced
Stale Staff Accounts 1 No login in >30 days
Unused Roles 2 Catalog roles with 0 grants
Lockouts (24h) 0 Brute-force protection intact
TLS Certificate Lifespan 84 Days ECDSA P-384 / TLS 1.3 Strict
Admin IP Boundary ENFORCED FedRAMP Enclave Allowlist Active
KEK Envelope Source FIPS-140-3-HSM Sealed Hardware Cryptographic Module
Database Transport REQUIRE_TLS_1_3 Triad mTLS Transport Security
Continuous Backup Proof PASS (12:00) Automated drill verified intact
Audit Hash-Chain Status VERIFIED 100% Cryptographic Integrity Sealed
CSP Violations (24h) 0 Zero content security policy breaks

Access Review Campaigns (FedRAMP AC-2)

Periodic role recertification and uncertified grant deprovisioning workbench.

Campaign ID & Name Target Role Due Date Reviewed Grants Expired Grants Status Actions
Loading access review campaigns...