The presentation discusses a solution to address the "visibility gap" faced by security teams when conducting red team engagements or penetration testing assessments for large organizations with hundreds of AWS accounts. The speakers, Nick Gilbert and Damian, introduce a tool built using Kiro, an AI-powered IDE, to automate the process of identifying high-value targets, enumerating cross-account access, prioritizing roles by impact, and detecting common security misconfigurations at scale.
The IAM scanner tool built using Kiro includes the following key features: